IP Library Granted Patent US 10,693,531
Granted Patent B2
US 10,693,531 · App. 16/176,946 · Granted Jun 23, 2020

Secure end-to-end transport through intermediary nodes

Inventors: Lee R. Boynton (Lake Oswego, OR); Trevor A. Fiatal (Fremont, CA); Scott M. Burke (Mountain View, CA); Mark Sikes (Ben Lomond, CA)
Assignee: Seven Networks, LLC
H04B7/0417H04B7/04H04B7/0617H04L51/38H04L63/029H04L63/0272H04L63/0428H04L63/0464H04L63/0471H04L63/08H04L63/0807H04L67/04H04W12/001H04W52/0261H04W4/12H04W88/06Y02D10/174Y02D70/142
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,693,531
App. No.
16/176,946
Granted
Jun 23, 2020
Kind
B2
Abstract

A communication network encrypts a first portion of a transaction associated with point-to-point communications using a point-to-point encryption key. A second portion of the transaction associated with end-to-end communications is encrypted using an end-to-end encryption key.

Claims (35)

1. A non-transitory computer-readable storage medium storing instructions to be implemented by a first computer having a processor, wherein the instructions, when executed by the processor, cause the first computer to perform steps comprising:

receiving a token from an intermediary server; and

transmitting a transaction message comprising payload data to the intermediary server, wherein the payload data is transmitted to a second computer by the intermediary server based on the token and the intermediary server is coupled to the second computer over a mobile network.

2. The non-transitory computer-readable storage medium of claim 1 , wherein the payload data has a first security association that is not known to the intermediary server.

3. The non-transitory computer-readable storage medium of claim 2 , wherein the transaction message further comprises control data having a second security association.

4. The non-transitory computer-readable storage medium of claim 3 , wherein the control data comprises the token.

5. The non-transitory computer-readable storage medium of claim 4 , wherein the intermediary server identifies and authenticates the transaction message based on the token.

6. The non-transitory computer-readable storage medium of claim 5 , wherein the token provides transaction routing information to the intermediary server.

7. The non-transitory computer-readable storage medium of claim 1 , wherein the token is issued by the intermediary server and the token is associated with a registration of a user to the intermediary server.

8. The non-transitory computer-readable storage medium of claim 7 , wherein the registration comprises authenticating a received username and password by the intermediary server to a user database.

9. The non-transitory computer-readable storage medium of claim 1 , wherein the second computer is a mobile device.

10. The non-transitory computer-readable storage medium of claim 1 , wherein mobile network provides an Internet protocol (IP) infrastructure of a wireless service provider.

11. A method implemented on a first computer, the method comprising:

receiving a token from an intermediary server; and

transmitting a transaction message comprising payload data to the intermediary server, wherein the payload data is transmitted to a second computer by the intermediary server based on the token and the intermediary server is coupled to the second computer over a mobile network.

12. The method of claim 11 , wherein the payload data has a first security association that is not known to the intermediary server.

13. The method of claim 12 , wherein the transaction message further comprises control data having a second security association.

14. The method of claim 13 , wherein the control data comprises the token.

15. The method of claim 14 , wherein the intermediary server identifies and authenticates the transaction message based on the token.

16. The method of claim 11 , wherein the token provides transaction routing information to the intermediary server.

17. The method of claim 11 , wherein the token is issued by the intermediary server and the token is associated with a registration of a user to the intermediary server.

18. The method of claim 17 , wherein the registration comprises authenticating a received username and password by the intermediary server to a user database.

19. The method of claim 11 , wherein the second computer is a mobile device.

20. A first computer having a processor configured for:

receiving a token from an intermediary server; and

transmitting a transaction message comprising payload data to the intermediary server, wherein the payload data is transmitted to a second computer by the intermediary server based on the token and the intermediary server is coupled to the second computer over a mobile network.

21. The first computer of claim 20 , wherein the payload data has a first security association that is not known to the intermediary server.

22. The first computer of claim 21 , wherein the transaction message further comprises control data having a second security association.

23. The first computer of claim 22 , wherein the control data comprises the token.

24. The first computer of claim 23 , wherein the intermediary server identifies and authenticates the transaction message based on the token.

25. The first computer of claim 24 , wherein the token provides transaction routing information to the intermediary server.

26. The first computer of claim 20 , wherein the token is issued by the intermediary server and the token is associated with a registration of a user to the intermediary server.

27. The first computer of claim 26 , wherein the registration comprises authenticating a received username and password by the intermediary server to a user database.

28. The first computer of claim 20 , wherein the second computer is a mobile device.

29. The first computer of claim 20 , wherein mobile network provides an Internet protocol (IP) infrastructure of a wireless service provider.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 26, 2018
From: BOYNTON, LEE R.; FIATAL, TREVOR A.; BURKE, SCOTT M.; SIKES, MARK
To: SEVEN NETWORKS, INC.
Reel/Frame 047579/0341 →
ENTITY CONVERSION Recorded Nov 26, 2018
From: SEVEN NETWORKS, INC.
To: SEVEN NETWORKS, LLC
Reel/Frame 048172/0340 →