IP Library Granted Patent US 10,812,467
Granted Patent B2
US 10,812,467 · App. 15/578,895 · Granted Oct 20, 2020

Method for managing a secure channel between a server and a secure element

Inventors: Gil Bernabeu (Gemenos, FR); Olivier Potonniee (Gemenos, FR); HongQian Karen Lu (Gemenos, FR)
Assignee: THALES DIS FRANCE SA
H04L63/0823H04L9/0844H04L9/3013H04L9/3242H04L63/0428H04L63/0853H04L63/166H04W12/003H04W12/06H04W12/00407
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,812,467
App. No.
15/578,895
Granted
Oct 20, 2020
Kind
B2
Abstract

The invention is a method for managing a secure channel between a server and a secure element embedded in a first device, wherein a user agent embedded in a second device establishes a HTTPS session with the server and retrieves a web application from the server, the method comprising the steps: the server sends to the web application an application certificate which is linked to a specific data reflecting the identity of the server, the secure element gets the application certificate and the specific data, the secure element checks the validity of the application certificate and that the application certificate is consistently linked to the specific data, in case of successful checks, the secure element and the server generate an ephemeral session key and use it for opening a secure channel.

Claims (35)

1. A method comprising:

managing a secure channel between an application server and a secure element embedded in a first device, wherein a user agent embedded in a second device establishes a HyperText Transfer Protocol secure (HTTPS) session with the application server and retrieves a web application from the application server, wherein a full application includes both the web application and another part located in the application server, said full application being designed to interact with an applet located in the secure element;

wherein said managing comprises the steps:

sending by the application server, to the web application, a certificate of the full application, said certificate of the full application containing a value generated from a specific data reflecting the identity of the application server;

getting, by the secure element, the certificate of the full application and the specific data;

checking, by the secure element, the validity of the certificate of the full application and checking, by the secure element, that the certificate of the full application contains the value generated from the specific data; and

in case of successful checks, generating, by the secure element and the application server, an ephemeral session key and opening, by the secure element and the application server, a secure channel using the ephemeral session key

wherein the ephemeral session key is generated using an authenticated key exchange protocol requiring parameters, wherein a signature of said parameters is computed using a private key associated with the certificate of the full application and sent to the secure element by the application server and wherein the secure element verifies the signature.

2. The method according to claim 1 , wherein the certificate contains a hash of the specific data.

3. The method according to claim 1 , wherein the authenticated key exchange protocol is based on Diffie-Hellman.

4. The method according to claim 1 , wherein the specific data is a Transport Layer Security (TLS) server certificate used to establish the HTTPS session between the application server and the user agent.

5. The method according to claim 1 , wherein the specific data is the origin of the application server as defined by the World Wide Web Consortium (W3C®).

6. The method according to claim 1 , wherein the certificate of the full application has been partly generated by applying an XOR function to the specific data.

7. An application server comprising:

a hardware processing unit; and

instructions which cause the application server to:

establish a HyperText Transfer Protocol secure (HTTPS) session with a user agent embedded in a second device,

send a web application to the user agent, wherein a full application includes both the web application and another part located in the application server,

provide, to the web application, a certificate of the full application, said certificate of the full application containing a value generated from a specific data reflecting the identity of the application server, said full application being designed to interact with an applet located in a secure element embedded in a first device, wherein, when running in the user agent, the web application is configured to provide the secure element with the certificate of the full application and the specific data,

receive, from the web application, a request reflecting that the secure element successful checked both the validity of the certificate of the full application and that the certificate of the full application contains the value generated from the specific data,

generate an ephemeral session key with the secure element, and

open a secure channel with the secure element using the ephemeral session key only if the application server has received said request,

wherein the application server is configured to generate the ephemeral session key using an authenticated key exchange protocol requiring parameters, wherein the application server is configured to compute a signature of said parameters using a private key associated with the certificate of the full application and to send the signature to the secure element, and wherein the secure element verifies the signature.

8. The application server according to claim 7 , wherein the application server is configured to add a hash of the specific data in the certificate of the full application.

9. A secure element comprising:

a hardware processing unit;

an applet; and

instructions which cause the secure element to:

receive, from a user agent embedded in a second device, a certificate of a full application and a specific data reflecting the identity of an application server, wherein the secure element is embedded in a first device, wherein the user agent establishes a HyperText Transfer Protocol secure (HTTPS) session with the application server and retrieves a web application from the application server, wherein the full application includes both the web application and another part located in the application server, said full application being designed to interact with the applet,

check the validity of the certificate of the full application, and check that the certificate of the full application contains a value generated from the specific data,

send to the user agent, in case of successful checks, a result reflecting the successful checks,

generate an ephemeral session key with the application server, and

open a secure channel with the application server using the ephemeral session key,

wherein the ephemeral session key is generated using an authenticated key exchange protocol requiring parameters, wherein a signature of said parameters is computed using a private key associated with the certificate of the full application and received by the secure element from the application server, and wherein the secure element is configured to verify the signature.

10. The secure element according to claim 9 , wherein the secure element is configured to verify the signature of said parameters computed using a public key associated with the certificate of the full application.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 28, 2023
From: THALES DIS FRANCE SA
To: THALES DIS FRANCE SAS
Reel/Frame 064730/0238 →
CHANGE OF NAME Recorded Sep 4, 2020
From: GEMALTO SA
To: THALES DIS FRANCE SA
Reel/Frame 053780/0731 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2017
From: BERNABEU, GIL; POTONNIEE, OLIVIER
To: GEMALTO SA
Reel/Frame 044275/0090 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2017
From: LU, HONGQIAN KAREN
To: GEMALTO, INC.
Reel/Frame 044275/0258 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2017
From: GEMALTO, INC.
To: GEMALTO SA
Reel/Frame 044275/0632 →
Priority Claims (1)
EP 15305845 · Jun 2, 2015 · regional
Continuity (1)
Related Publication 20180176211A1 · Jun 21, 2018