IP Library Granted Patent US 12,244,696
Granted Patent B2
US 12,244,696 · App. 18/602,866 · Granted Mar 4, 2025

Ecdhe key exchange for server authentication and a key server

Inventor: John A Nix (Evanston, IL)
Assignee: IoT and M2M Technologies, LLC
H04L9/0841H04L9/006H04L9/0662H04L9/0825H04L9/085H04L9/14H04L9/3066
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,244,696
App. No.
18/602,866
Granted
Mar 4, 2025
Kind
B2
Abstract

A server can receive a device public key and forward the device public key to a key server. The key server can perform a first elliptic curve Diffie-Hellman (ECDH) key exchange using the device public key and a network private key to derive a secret X1. The key server can send the secret X1 to the server. The server can derive an ECC PKI key pair and send to the device the server public key. The server can conduct a second ECDH key exchange using the derived server secret key and the device public key to derive a secret X2. The server can perform an ECC point addition using the secret X1 and secret X2 to derive a secret X3. The device can derive the secret X3 using (i) the server public key, a network public key, and the device private key and (ii) a third ECDH key exchange.

Claims (22)

1. A method for a device to authenticate with a server over a wireless network, the method performed by the device, the method comprising:

a) storing, in a memory, (i) a first point on an elliptic curve, and (ii) a shared key, wherein the shared key is received by the server;

b) generating a value from a secure hash of at least the shared key;

c) selecting a first integer as a first subset of the value;

d) receiving, from the server via a radio connected to the wireless network, (i) a random number and (ii) a second point on the elliptic curve, the second point comprising a public key for the server;

e) deriving a device private key and corresponding device public key for the elliptic curve;

f) deriving a shared secret comprising an elliptic curve point addition of (i) the first integer multiplied by the first point and (ii) the device private key multiplied by the public key for the server;

g) deriving a symmetric ciphering key from a key derivation function with the shared secret;

h) generating a ciphertext by encrypting with the symmetric key (i) a device digital signature for at least the random number, and (ii) a device certificate; and

i) transmitting, to the server via the radio connected to the wireless network, the ciphertext.

2. The method of claim 1 , wherein the elliptic curve comprises a named curve secp256r1 (p256).

3. The method of claim 1 , wherein the first integer comprises a second value N2.

4. The method of claim 1 , wherein the symmetric ciphering key comprises a third value K1.

5. The method of claim 1 , wherein the server mutually derives the shared secret and the symmetric ciphering key using the first point, the shared secret, the first integer, the device public key, and a server private key corresponding to the server public key.

6. The method of claim 1 , further comprising after step e) and before step i), transmitting, to the server via the radio connected to the wireless network, the device public key.

7. The method of claim 1 , further comprising in step f) deriving a message authentication code (MAC) key from the key derivation function with the shared secret and in step h) generating a MAC value for the ciphertext with the MAC key.

8. The method of claim 1 , further comprising step j) receiving, from the server via the radio connected to the wireless network, a second ciphertext comprising a server certificate, wherein the device decrypts the second ciphertext using the symmetric key.

9. The method of claim 1 , further comprising in step h), generating the device digital signature using an elliptic curve digital signature algorithm (ECDSA).

10. The method of claim 1 , wherein the server verifies the digital signature using the device certificate.

11. The method of claim 1 , wherein multiplication in step f) comprises elliptic curve point multiplication.

12. The method of claim 1 , wherein the device comprises the radio.

13. The method of claim 1 , wherein the wireless network comprises a Wi-Fi network.

Assignments (5)
CHANGE OF ADDRESS Recorded Sep 10, 2025
From: NETWORK-1 TECHNOLOGIES, INC.
To: NETWORK-1 TECHNOLOGIES, INC.
Reel/Frame 072827/0540 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 7, 2025
From: IOT AND M2M TECHNOLOGIES, LLC
To: NETWORK-1 TECHNOLOGIES, INC.
Reel/Frame 070752/0719 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 4, 2025
From: VOBAL TECHNOLOGIES, LLC
To: IOT AND M2M TECHNOLOGIES, LLC
Reel/Frame 070736/0052 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 2, 2025
From: NIX, JOHN
To: IOT AND M2M TECHNOLOGIES, LLC
Reel/Frame 070715/0645 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 12, 2024
From: NIX, JOHN A.
To: IOT AND M2M TECHNOLOGIES, LLC
Reel/Frame 066737/0827 →
Continuity (4)
Continuation 18210776 · Jun 16, 2023
Continuation 17253111
Provisional Application 62687411 · Jun 20, 2018
Related Publication 20240267206A1 · Aug 8, 2024
References Cited (29)
US 8761401B2 · Sprunk et al. · 2014 [cited by applicant]
US 8782774B1 · Pahl et al. · 2014 [cited by applicant]
US 9553856B2 · Pahl et al. · 2017 [cited by applicant]
US 9628268B2 · Kiang et al. · 2017 [cited by applicant]
US 10129224B2 · Pahl et al. · 2018 [cited by applicant]
US 11184157B1 · Gueron et al. · 2021 [cited by applicant]
US 20070009103A1 · Zhu · 2007 [cited by examiner]
US 20080260153A1 · Almeida · 2008 [cited by examiner]
US 20090068985A1 · Nguyen · 2009 [cited by examiner]
US 20140010371A1 · Khazan et al. · 2014 [cited by applicant]
US 20150067338A1 · Gero · 2015 [cited by examiner]
US 20150372811A1 · Le Saint · 2015 [cited by examiner]
US 20160014114A1 · Pahl et al. · 2016 [cited by applicant]
US 20170111179A1 · Gero et al. · 2017 [cited by applicant]
US 20170237571A1 · Pahl et al. · 2017 [cited by applicant]
US 20180026784A1 · Ward et al. · 2018 [cited by applicant]
Alka Sawlikar, Point Multiplication method for Elliptic Curve Cryptography, Jan. 2012, International Journal of Engineering and Innovative Technology. (Year: 2012), pp. 1-4. [cited by applicant]
Blake-Wilson et al., “Key Agreement Protocols and their Security Analysis”, Sept. 9, 1997, Sixth IMA International Conference on Cryptography and Coding, pp. 1-35. [cited by applicant]
European Technical Standards Institute (ETSI), “Meeting #81 document SCP(17)000188”, Dec. 5, 2017, pp. 1-10. [cited by applicant]
GSM Association, “iUICC POC Group Primary Platform requirements”, Release 1.0, May 17, 2017, pp. 1-43. [cited by applicant]
Mark Wolfe, What is HMAC Authentication and why is it useful?, Oct. 20, 2012 (Year: 2012), pp. 1-6. [cited by applicant]
National Institute of Standards and Technology (NIST) document “NIST SP 800-56A, Recommendation for Pair-Wise Key Establishment Schemes Using Discrete Logarithm Cryptography”, Mar. 2007, pp. 1-152. [cited by applicant]
PCT/US2019/037911, International Search Report, mailed Sep. 26, 2019, pp. 1-2. [cited by applicant]
Putman, “ECDH-based Authentication using Pre-Shared Asymmetric Keypairs for (Datagram) Transport Layer Security ((D)TLS) Protocol version 1.2”, IETF TLS Working Group, Nov. 30, 2017, pp. 1-12. [cited by applicant]
Turner et al, “Use of Elliptic Curve Cryptography (ECC) Algorithms in Cryptographic Message Syntax (CMS)”, IETF RFC 5753, Jan. 2010, pp. 1-61. [cited by applicant]
Vivek Kapoor, Elliptic Curve Cryptography, May 20-26, 2008, ACM Ubiquity (Year: 2008), pp. 1-8. [cited by applicant]
WiFi Alliance, Device Provisioning Protocol Specification Version 1.0, Apr. 9, 2018, pp. 1-124. [cited by applicant]
Wikipedia, “Elliptic curve point multiplication”, May 15, 2018, pp. 1-7. [cited by applicant]
Wikipedia, “Elliptic Curve Diffie-Hellman”, Mar. 9, 2018, pp. 1-2. [cited by applicant]
Cited By (1)
US 12,282,535