IP Library › Granted Patent US 12,301,702
Granted Patent B2
US 12,301,702 · App. 18/637,064 · Granted May 13, 2025

System and method for distribution of key generation data in a secure network

Inventors: Manfred Von Willich (Kanata, CA); Mattia Montagna (Toronto, CA); Hoi-Kwong Lo (Toronto, CA); Paul O'Leary (Kanata, CA)
Assignee: QUANTUM BRIDGE TECHNOLOGIES INC.
H04L9/0819H04L9/085
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,301,702
App. No.
18/637,064
Granted
May 13, 2025
Kind
B2
Abstract

There is provided a system, method, and computing device for distribution of cryptographic key generation data in a secure network, the secure network comprising a security server and one or more clients. The method including: receiving or generating indexed random data; communicating at least a portion of the indexed random data to one of the clients; and receiving or communicating the indices of the portions of the indexed random data shared with the client, a portion of the indexed random data is used for cryptographic key generation for encrypted communication between the client and another client. In some cases, the above is repeated for each client, wherein the indexed random data is unique for each client.

Claims (26)

1. A method for distribution of cryptographic key generation data in a secure network, the secure network comprising one or more distributors, a security server, and clients, the method comprising:

receiving or generating indexed random data by a particular distributor of the one or more distributors, the indexed random data shared with the security server;

communicating to the security server or receiving from the security server, by the particular distributor, indexes of at least a portion of the indexed random data, the portion of the indexed random data to be used for cryptographic key generation; and

communicating, by the particular distributor or the security server, the portion of the indexed random data to one of the clients, the client in receipt of the portion of the indexed random data generates a cryptographic key using the portion of the indexed random data and uses the cryptographic key for encrypted communication with another client.

2. The method of claim 1 , wherein each distributor in the one or more distributors communicates with a respective set of the clients.

3. The method of claim 2 , wherein each distributor in the one or more distributors has a unique set of indexed random data shared with the security server.

4. The method of claim 1 , further comprising deleting, by the particular distributor, the portion of the indexed random data shared with the client after the portion is used for the encrypted communication.

5. The method of claim 1 , further comprising marking as used, by the particular distributor, the portion of the indexed random data shared with the client after the portion is used for the encrypted communication.

6. The method of claim 1 , wherein the particular distributor only shares the indexed random data with the security server where the security server is in an associated security hub.

7. The method of claim 1 , wherein receiving the indexed random data by the particular distributor from the security server comprises physical delivery of hardware, quantum key distribution, symmetric encryption using a pre-shared key, or asymmetric encryption, and wherein communicating the portion of the indexed random data by the particular distributor to one of the clients comprises physical delivery of hardware, quantum key distribution, symmetric encryption using a pre-shared key, or asymmetric encryption.

8. The method of claim 1 , wherein the indexed random data communicated by the particular distributor to each client is unique for each respective client.

9. The method of claim 1 , wherein communication, by the particular distributor, of the indexes of to the security server occurs over an unsecured channel using a secure protocol.

10. The method of claim 1 , wherein for a new client, the particular distributor communicates a portion of the indexed random data with the new client.

11. A computing device for distribution of cryptographic key generation data in a secure network, the computing device operating as a distributor in the secure network, the secure network further comprising a security server and client computing devices, the computing device comprising a processor and a memory, the memory having stored thereon computer instructions which when executed by the processor cause the processor to:

receive or generate indexed random data, the indexed random data shared with the security server;

communicating indexes of at least a portion of the indexed random data from or to the security server, the portion of the indexed random data to be used for cryptographic key generation; and

communicating the portion of the indexed random data to one of the clients, the client in receipt of the portion of the indexed random data generates a cryptographic key using the portion of the indexed random data and uses the cryptographic key for encrypted communication with another client.

12. The system of claim 11 , wherein the computing device, operating as the distributor, communicates with a respective set of the clients that are distinct from sets of clients communicated to by other distributors.

13. The system of claim 12 , wherein the computing device, operating as the distributor, has a set of indexed random data shared with the security server that is unique from sets of indexed random data shared with the security server by other distributors.

14. The system of claim 11 , wherein the portion of the indexed random data shared with the client is deleted after the portion is used for the encrypted communication.

15. The system of claim 11 , wherein the portion of the indexed random data shared with the client is marked as used after the portion is used for the encrypted communication.

16. The system of claim 11 , wherein the indexed random data is only shared with the security server where the security server is in an associated security hub.

17. The system of claim 11 , wherein receiving the indexed random data from the security server comprises physical delivery of hardware, quantum key distribution, symmetric encryption using a pre-shared key, or asymmetric encryption, and wherein communicating the portion of the indexed random data to one of the clients comprises physical delivery of hardware, quantum key distribution, symmetric encryption using a pre-shared key, or asymmetric encryption.

18. The system of claim 11 , wherein the indexed random data communicated to each client is unique for each respective client.

19. The system of claim 11 , wherein communication of the indexes of to the security server occurs over an unsecured channel using a secure protocol.

20. The system of claim 11 , wherein for a new client, the computing device, operating as the distributor, communicates a portion of the indexed random data with the new client.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 16, 2024
From: VON WILLICH, MANFRED; MONTAGNA, MATTIA; LO, HOI-KWONG; O'LEARY, PAUL
To: QUANTUM BRIDGE TECHNOLOGIES INC.
Reel/Frame 067441/0380 →
Continuity (4)
Continuation 18491415 · Oct 20, 2023
Provisional Application 63384324 · Nov 18, 2022
Provisional Application 63383813 · Nov 15, 2022
Related Publication 20240267203A1 · Aug 8, 2024
References Cited (61)
US 5982896A · Cordery · 1999 [cited by examiner]
US 8568224B1 · Itkis · 2013 [cited by examiner]
US 11177950B2 · Lo et al. · 2021 [cited by applicant]
US 20040030932A1 · Juels et al. · 2004 [cited by applicant]
US 20060205388A1 · Semple et al. · 2006 [cited by applicant]
US 20080307110A1 · Wainner et al. · 2008 [cited by applicant]
US 20090067629A1 · Kraszewski · 2009 [cited by examiner]
US 20100211787A1 · Bukshpun et al. · 2010 [cited by applicant]
US 20100246811A1 · Sadler · 2010 [cited by applicant]
US 20120204032A1 · Wilkins et al. · 2012 [cited by applicant]
US 20130159731A1 · Furukawa · 2013 [cited by applicant]
US 20130262858A1 · Neuman et al. · 2013 [cited by applicant]
US 20140369498A1 · Hammersmith · 2014 [cited by applicant]
US 20150134947A1 · Varcoe et al. · 2015 [cited by applicant]
US 20150142836A1 · Borges et al. · 2015 [cited by applicant]
US 20150220751A1 · Syben · 2015 [cited by applicant]
US 20150295907A1 · Abrahamson · 2015 [cited by applicant]
US 20170180117A1 · Tomkow · 2017 [cited by applicant]
US 20170250796A1 · Samid · 2017 [cited by applicant]
US 20170338951A1 · Fu et al. · 2017 [cited by applicant]
US 20180109372A1 · Fu · 2018 [cited by applicant]
US 20180150647A1 · Naqvi et al. · 2018 [cited by applicant]
US 20180219677A1 · Nair et al. · 2018 [cited by applicant]
US 20180367298A1 · Wright et al. · 2018 [cited by applicant]
US 20190044923A1 · Thompson et al. · 2019 [cited by applicant]
US 20190089687A1 · Fiske · 2019 [cited by applicant]
US 20200320227A1 · Sadjadpour · 2020 [cited by applicant]
US 20200328886A1 · Newton et al. · 2020 [cited by applicant]
US 20210099296A1 · Lo et al. · 2021 [cited by applicant]
US 20210232702A1 · Gelbard · 2021 [cited by applicant]
US 20220021521A1 · Shamai · 2022 [cited by examiner]
CA 3078558A1 · 2019 [cited by applicant]
CA 3107237C · 2022 [cited by applicant]
JP 2012147341A · 2012 [cited by applicant]
WO 2019069103A1 · 2019 [cited by applicant]
WO 2019076737A1 · 2019 [cited by applicant]
Combined Search and Examination Report for UK application No. GB1917748.4, UKIPO, date of search: Aug. 11, 2020, date of report: Aug. 19, 2020. [cited by applicant]
Examination Report for UK application No. GB2102574.7, UKIPO, dated: Jun. 22, 2021. [cited by applicant]
Extended European Search Report for EU application No. 20872410.4, EPO, dated: Oct. 19, 2023. [cited by applicant]
International Search Report for PCT application No. PCT/CA2020/051307, CIPO, search completed: Nov. 17, 2020, mailed: Nov. 25, 2020. [cited by applicant]
International Search Report for PCT application No. PCT/CA2023/051400, CIPO, search completed: Dec. 21, 2023, mailed: Jan. 5, 2024. [cited by applicant]
Notice of Allowability for U.S. Appl. No. 18/491,415, USPTO, dated: Feb. 22, 2024. [cited by applicant]
Notice of Allowance for Canadian application No. 3,107,237, CIPO, dated: Apr. 8, 2021. [cited by applicant]
Notice of Allowance for U.S. Appl. No. 17/038,819, USPTO, dated: Aug. 23, 2021. [cited by applicant]
Notice of Allowance for U.S. Appl. No. 18/491,415, USPTO, dated: Jan. 17, 2024. [cited by applicant]
Office Action for Israeli application No. 291804, Israel Patent Office, dated: Jun. 23, 2024. [cited by applicant]
Office Action for Japanese application No. 2022-519684, Japan Patent Office, dated: May 21, 2024. [cited by applicant]
Office Action for Japanese application No. 2022-519684, Japan Patent Office, drafted: Dec. 8, 2023, mailed: Dec. 12, 2023. [cited by applicant]
Office Action for U.S. Appl. No. 17/038,819, USPTO, dated: Dec. 23, 2020. [cited by applicant]
Office Action for U.S. Appl. No. 17/038,819, USPTO, dated: Apr. 7, 2021. [cited by applicant]
Office Action for U.S. Appl. No. 17/500,199, USPTO, dated: Feb. 9, 2024. [cited by applicant]
Written Opinion of the International Searching Authority for PCT application No. PCT/CA2020/051307, CIPO, opinion completed: Nov. 23, 2020, mailed: Nov. 25, 2020. [cited by applicant]
Written Opinion of the International Searching Authority for PCT application No. PCT/CA2023/051400, CIPO, opinion completed: Jan. 4, 2024, mailed: Jan. 5, 2024. [cited by applicant]
“BCC Research Quantum Patent Review”, BCC Research LLC, IFT179A, Chap 7, pp. 176-192, 2019., 2019, 177-192. [cited by applicant]
Cavaiani, Charles , et al., “Mutual authenticating protocol with key distribution in client/server environment”, XRDS: Crossroads, The ACM Magazine for Students, vol. 2, Issue 4Mar. 1996, pp. 17-22 (Year: 1996). [cited by applicant]
Chan, Haowen , et al., “Random key predistribution schemes for sensor networks”, 2003 Symposium on Security and Privacy, 2003., Berkeley, CA, USA, 2003, pp. 197-213, doi: 10.1109/SECPRI.2003.1199337. [cited by applicant]
Curty, Marcos , et al., “Foiling covert channels and malicious classical post-processing units in quantum key distribution”, npj Quantum Information 5, 14 (2019). https://doi.org/10.1038/s41534-019-0131-5 ., 2019. [cited by applicant]
McWilliams, Andrew , “Quantum Computing: Technologies and Global Markets to 2022”, BCC Research LLC, Report Code: IFT149A, Aug. 2018, ISBN: 978-1-62296-813-8, Aug. 2018. [cited by applicant]
Siegel, David A. , et al., “Dealing with key challenges in international usability and user research”, CHI EA '07: CHI '07 Extended Abstracts on Human Factors in Computing Systems. Apr. 2007, pp. 2145-2148 (Year: 2007). [cited by applicant]
Wei, Min , et al., “A mutual authentication scheme with key agreement for industrial wireless network”, ICUIMC '11: Proceedings of the 5th International Conference on Ubiquitous Information Management and Communication.… [cited by applicant]
Xu, Feihu , et al., “Secure quantum key distribution with realistic devices”, Rev. Mod. Phys. 92, 025002 (2020), arXiv:1903.09051v3 [quant-ph] Feb. 19, 2020. [cited by applicant]
Cited By (1)
US 12,640,915