IP Library › Granted Patent US 10,411,904
Granted Patent B2
US 10,411,904 · App. 15/164,911 · Granted Sep 10, 2019

Method of authenticating devices using certificates

Inventors: Manabu Maeda (Osaka, JP); Natsume Matsuzaki (Osaka, JP); Motoji Ohmori (Osaka, JP); Hideki Matsushima (Osaka, JP); Tomoyuki Haga (Nara, JP); Yuji Unagami (Osaka, JP); Yoshihiro Ujiie (Osaka, JP)
Assignee: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
H04L9/3268H04L9/006H04L9/3297H04L63/0823H04L63/0853
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,411,904
App. No.
15/164,911
Granted
Sep 10, 2019
Kind
B2
Abstract

A first device, upon detecting participation in an authentication system, transmits new and old identification information of a first certificate revocation list that the first device manages to a second device. In a case where the new and old identification information of a second certificate revocation list that the second device manages is older than the new and old identification information of the received first certificate revocation list, the second device transmits a transmission request for the first certificate revocation list to the first device. Upon receiving the transmission request for the first certificate revocation list from the second device, the first device transmits the first certificate revocation list to the second device. the second device updates the second certificate revocation list using the received first certificate revocation list.

Claims (22)

1. A method for execution in an authentication system, the method comprising:

receiving, by a second device of the authentication system and from a first device of the authentication system, first version information of a first certificate revocation list, the first device managing a list of revoked certificates as the first certificate revocation list including the first version information, the first device being added to the authentication system after the second device and after a third device of the authentication system, wherein one or more devices from the first device, the second device and the third device comprises a home appliance or a housing facility device;

comparing, by the second device, second version information of a second certificate revocation list with the first version information of the first certificate revocation list, the second device managing a list of revoked certificates as the second certificate revocation list including the second version information;

updating, by the second device, the second certificate revocation list using the first certificate revocation list, in a first case where the second version information of the second certificate revocation list is older than the first version information of the first certificate revocation list;

performing, by the second device and in response to determining that the third device is registered in the updated second certificate revocation list, batch transmission of an identifier of the third device to a plurality of devices of the authentication system; and

deleting, by the second device and in response to determining that the third device is registered in the updated second certificate revocation list, registration of the third device from the authentication system.

2. The method according to claim 1 , further comprising:

transmitting, by the second device and in the first case where the second version information of the second certificate revocation list is older than the first version information of the first certificate revocation list, a transmission request for the first certificate revocation list to the first device; and

transmitting, by the first device and in response to a receipt of the transmission request for the first certificate revocation list from the second device, the first certificate revocation list to the second device.

3. The method according to claim 1 , further comprising:

performing, by the second device in a second case where the second version information of the second certificate revocation list is newer than the first version information of the first certificate revocation list, batch transmission of the second version information of the second certificate revocation list to the plurality of devices and the first device;

comparing, by the first device, the first version information of the first certificate revocation list with the second version information of the second certificate revocation list; and

updating, by the first device and in the second case where the first version information of the first certificate revocation list is older than the second version information of the second certificate revocation list, the first certificate revocation list using the second certificate revocation list.

4. An authentication device capable of participation in an authentication system where authentication processing is performed using certificates, the authentication device comprising:

one or more memories; and

circuitry, which in operation,

receives, from a first device that is added to the authentication system after the authentication device and a third device, a first certificate revocation list including a list of revoked certificates and first version information, wherein the first device manages the first certificate revocation list and one or more devices from the first device, the authentication device and the third device comprise a home appliance or a housing facility device;

manages a second certificate revocation list including a list of revoked certificates and second version information;

compares the first version information of the first certificate revocation list with the second version information of the second certificate revocation list,

updates the second certificate revocation list using the first certificate revocation list received from the first device, in a case where the second version information of the second certificate revocation list is older than the first version information of the first certificate revocation list, and

performs batch transmission of an identifier of the third device to a plurality of devices of the authentication system, in response to determining that the third device is registered in the updated second certificate revocation list; and

deletes, in response to determining that the third device is registered in the updated second certificate revocation list, registration of the third device from the authentication system.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 9, 2020
From: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
To: PANASONIC INTELLECTUAL PROPERTY CORPORATION OF AMERICA
Reel/Frame 053728/0440 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 6, 2016
From: MAEDA, MANABU; MATSUZAKI, NATSUME; OHMORI, MOTOJI; MATSUSHIMA, HIDEKI; HAGA, TOMOYUKI; UNAGAMI, YUJI; UJIIE, YOSHIHIRO
To: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
Reel/Frame 038822/0926 →
Continuity (3)
Continuation PCTJP2014005627 · Nov 10, 2014
Provisional Application 61916570 · Dec 16, 2013
Related Publication 20160277195A1 · Sep 22, 2016