IP Library Granted Patent US 11,943,372
Granted Patent B2
US 11,943,372 · App. 17/635,879 · Granted Mar 26, 2024

Use right information processing device, use right information processing system, and use right information processing method, based on smart contract

Inventors: Hideyoshi Moriya (Tokyo, JP); Hiroyuki Tachibana (Tokyo, JP)
Assignee: A42 Inc.
H04L9/3252H04L9/0825H04L9/3213H04L9/50
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,943,372
App. No.
17/635,879
Granted
Mar 26, 2024
Kind
B2
Abstract

A use right information processing apparatus securely manages a use right without using an authentication server and appropriately allowing a valid user to use a device. The apparatus performs processing related to authentication and authorization for a user to use a device to be controlled using a smart contract. The apparatus stores authentication data shared with a user terminal used by the user and having a different value for each process, receives signature data generated in the user terminal by signing the authentication data using a secret key corresponding to the user, derives a public key corresponding to the secret key from the signature data and the authentication data using an elliptic curve digital signature algorithm, and obtains, using the public key or corresponding identification information, information regarding a use right of the device of the user recorded in advance in association with the public key or the identification information.

Claims (56)

1. A use right information processing apparatus for performing processes related to authentication and authorization for a user to use a device to be controlled using a smart contract that functions with a computer executing a code recorded on a blockchain, the use right information processing apparatus comprising:

a storage unit that stores authentication data shared with a user terminal used by the user and having a different value for each of the processes;

a receiving unit that receives, from the user terminal, signature data generated in the user terminal by signing the authentication data with a predetermined signature algorithm using a secret key corresponding to the user;

a deriving unit that derives, using the predetermined signature algorithm, a public key corresponding to the secret key from the authentication data and the signature data received by the receiving unit;

an acquisition unit that obtains, using the public key or identification information corresponding to the public key, information regarding a use right of the device of the user recorded in advance in association with the public key or the identification information in the smart contract;

a token generation unit that generates an access token and transmits the access token to the user terminal in a case where the user is determined to be allowed to use the device on a basis of the information regarding the use right obtained by the acquisition unit; and

a validity confirmation unit that receives an access token from the device that has received the access token together with a control instruction from the user terminal, determines whether or not the access token received from the device is same as the access token generated by the token generation unit, and in a case of being the same, transmits information indicating that the access token is valid to the device.

2. The use right information processing apparatus according to claim 1 , further comprising:

an authentication data generation unit that generates the authentication data on a basis of a request from the user terminal used by the user and transmits the generated authentication data to the user terminal to cause the authentication data to be shared with the user terminal.

3. The use right information processing apparatus according to claim 1 , further comprising:

a determination unit that determines whether or not the user is allowed to use the device on a basis of the information regarding the use right obtained by the acquisition unit.

4. The use right information processing apparatus according to claim 1 , wherein

the predetermined signature algorithm is an elliptic curve digital signature algorithm capable of deriving the public key from the signature data and the authentication data.

5. The use right information processing apparatus according to claim 1 , wherein

the identification information is address information that can be uniquely derived from the public key.

6. The use right information processing apparatus according to claim 1 , wherein

information regarding an available time is recorded as the information regarding the use right of the device in association with the public key or the identification information in the smart contract.

7. The use right information processing apparatus according to claim 1 , wherein

information regarding a number of available times is recorded as the information regarding the use right of the device in association with the public key or the identification information in the smart contract.

8. The use right information processing apparatus according to claim 1 , wherein

the access token is data uniquely generated for each of the processes, and includes information regarding a use period.

9. A use right information processing system comprising:

the use right information processing apparatus according to claim 1 ; and

a user terminal to be used by a user, wherein

the user terminal is configured to:

transmit a request for using the device to the use right information processing apparatus on a basis of an instruction from the user; and

generate signature data by signing authentication data shared with the use right information processing apparatus with an elliptic curve digital signature algorithm using a secret key corresponding to the user, and transmit the generated signature data to the use right information processing apparatus.

10. The use right information processing system according to claim 9 , further comprising:

a device to be controlled, wherein

the user terminal is configured to:

receive the access token generated by the token generation unit of the use right information processing apparatus from the use right information processing apparatus; and

receive a control instruction for controlling the device from the user and transmit the control instruction to the device together with the access token received from the use right information processing apparatus, and

the device is configured to:

transmit the access token received from the user terminal to the use right information processing apparatus; and

execute control corresponding to the control instruction in a case of having received information indicating that the access token is valid from the validity confirmation unit of the use right information processing apparatus.

11. A use right information processing method for performing processes related to authentication and authorization for a user to use a device to be controlled using a smart contract that functions with a computer executing a code recorded on a blockchain, the use right information processing method comprising:

a step (a) of storing authentication data shared with a user terminal used by the user and having a different value for each of the processes;

a step (b) of receiving, from the user terminal, signature data generated in the user terminal by signing the authentication data with a predetermined signature algorithm using a secret key corresponding to the user;

a step (c) of deriving, using the predetermined signature algorithm, a public key corresponding to the secret key from the authentication data and the signature data received in the step (b);

a step (d) of obtaining, using the public key or identification information corresponding to the public key, information regarding a use right of the device of the user recorded in advance in association with the public key or the identification information in the smart contract;

a step (e) of generating an access token and transmitting the access token to the user terminal in a case where the user is determined to be allowed to use the device on a basis of the information regarding the use right obtained in the step (d); and

a step (f) of receiving an access token from the device that has received the access token together with a control instruction from the user terminal, determining whether or not the access token received from the device is same as the access token generated in the step (e), and in a case of being the same, transmitting information indicating that the access token is valid to the device.

12. A use right information processing apparatus for performing processes related to authentication and authorization for a user to use a device to be controlled using a smart contract that functions with a computer executing a code recorded on a blockchain, the use right information processing apparatus comprising:

a storage unit that stores authentication data shared with a user terminal used by the user and having a different value for each of the processes;

a receiving unit that receives, from the user terminal, signature data generated in the user terminal by signing the authentication data with a predetermined signature algorithm using a secret key corresponding to the user;

a deriving unit that derives, using the predetermined signature algorithm, a public key corresponding to the secret key from the authentication data and the signature data received by the receiving unit; and

an acquisition unit that obtains, using the public key or identification information corresponding to the public key, information regarding a use right of the device of the user recorded in advance in association with the public key or the identification information in the smart contract, wherein

the receiving unit further receives a control instruction to the device from the user terminal, and

the use right information processing apparatus further comprising a device control unit that transmits the control instruction to the device in a case where the user is determined to be allowed to use the device on a basis of the information regarding the use right obtained by the acquisition unit.

13. A use right information processing method for performing processes related to authentication and authorization for a user to use a device to be controlled using a smart contract that functions with a computer executing a code recorded on a blockchain, the use right information processing method comprising:

a step (a) of storing authentication data shared with a user terminal used by the user and having a different value for each of the processes;

a step (b) of receiving, from the user terminal, signature data generated in the user terminal by signing the authentication data with a predetermined signature algorithm using a secret key corresponding to the user;

a step (c) of deriving, using the predetermined signature algorithm, a public key corresponding to the secret key from the authentication data and the signature data received in the step (b); and

a step (d) of obtaining, using the public key or identification information corresponding to the public key, information regarding a use right of the device of the user recorded in advance in association with the public key or the identification information in the smart contract, wherein

the step (b) further includes a step of receiving a control instruction to the device from the user terminal, and

the use right information processing method further comprising a step (g) of transmitting the control instruction to the device in a case where the user is determined to be allowed to use the device on a basis of the information regarding the use right obtained in the step (d).

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 16, 2022
From: MORIYA, HIDEYOSHI; TACHIBANA, HIROYUKI
To: A42 INC.
Reel/Frame 059028/0308 →
Priority Claims (1)
JP 2019-225375 · Dec 13, 2019 · national
Continuity (1)
Related Publication 20220294642A1 · Sep 15, 2022