IP Library Granted Patent US 7,716,139
Granted Patent B2
US 7,716,139 · App. 10/975,988 · Granted May 11, 2010

System and method for verifying digital signatures on certificates

Assignee: Research In Motion Limited
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,716,139
App. No.
10/975,988
Granted
May 11, 2010
Kind
B2
Abstract

A system and method for verifying a digital signature on a certificate, which may be used in the processing of encoded messages. In one embodiment, when a digital signature is successfully verified in a signature verification operation, the public key used to verify that digital signature is cached. When a subsequent attempt to verify the digital signature is made, the public key to be used to verify the digital signature is compared to the cached key. If the keys match, the digital signature can be successfully verified without requiring that a signature verification operation in which some data is decoded using the public key be performed.

Claims (46)

1. A method of verifying a digital signature on a certificate on a computing device, the method comprising:

a processor of the computing device performing a first signature verification operation on the digital signature using a first public key associated with an issuer of the certificate;

said processor successfully verifying the digital signature in the first signature verification operation;

said processor storing the first public key in a memory store after successfully verifying the digital signature in the first signature verification operation;

said processor receiving a request to perform a second signature verification operation on the digital signature using a second public key associated with an issuer of the certificate;

said processor comparing the second public key with the first public key stored in the memory store;

said processor determining that the first and second public keys match based on said comparing; and

said processor indicating, as a response to the request to perform the second signature verification operation, successful verification of the digital signature in lieu of performing the second signature verification operation.

2. The method of claim 1 , further comprising:

said processor storing a result indicating that the digital signature is successfully verified in the first signature verification operation;

wherein said indicating is performed after the result indicating that the digital signature is successfully verified in the first signature verification operation is stored.

3. The method of claim 2 , wherein said result is used by said processor to successfully verify the digital signature in the first signature verification operation within a limited duration.

4. The method of claim 1 , wherein the computing device comprises a mobile device.

5. The method of claim 1 , wherein the first public key stored in the memory store is used by said processor in subsequent comparisons with the second public key within a limited duration.

6. The method of claim 1 , further comprising said processor deleting the first public key from the memory store.

7. The method of claim 1 , further comprising said processor marking the first public key stored as stale.

8. The method of claim 1 , further comprising said processor performing validation operations comprising verifying that the first public key stored in the memory store is not stale.

9. A computer-readable medium comprising a plurality of instructions, executable on a computing device, for performing acts comprising:

performing a first signature verification operation on a digital signature on a certificate on the computing device using a first public key associated with an issuer of the certificate;

successfully verifying the digital signature in the first signature verification operation;

storing the first public key in a memory store after successfully verifying the digital signature in the first signature verification operation;

receiving a request to perform a second signature verification operation on the digital signature using a second public key associated with an issuer of the certificate;

comparing the second public key with the first public key stored in the memory store;

determining that the first and second public keys match based on said comparing; and

indicating, as a response to the request to perform the second signature verification operation, successful verification of the digital signature in lieu of performing the second signature verification operation.

10. The computer-readable medium of claim 9 , said acts further comprising:

storing a result indicating that the digital signature is successfully verified in the first signature verification operation;

wherein said indicating is performed after the result indicating that the digital signature is successfully verified in the first signature verification operation is stored.

11. The system of claim 10 , wherein said result is used by said processor to successfully verify the digital signature in the first signature verification operation within a limited duration.

12. The computer-readable medium of claim 9 , wherein the computing device comprises a mobile device.

13. A system for verifying a digital signature on a certificate comprising at least one computing device, the at least one computing device comprising a processor and a memory, wherein the processor is configured to:

perform a first signature verification operation on the digital signature using a first public key associated with an issuer of the certificate;

successfully verify the digital signature in the first signature verification operation;

store the first public key in a memory store after successfully verifying the digital signature in the first signature verification operation;

receive a request to perform a second signature verification operation on the digital signature using a second public key associated with an issuer of the certificate;

compare the second public key with the first public key stored in the memory store;

determine that the first and second public keys match based on a comparison of the second public key with the first public key stored in the memory store; and

indicate, as a response to the request to perform the second signature verification operation, successful verification of the digital signature in lieu of performing the second signature verification operation.

14. The system of claim 13 , said processor further configured to:

store a result indicating that the digital signature is successfully verified in the first signature verification operation;

wherein successful verification is indicated after the result indicating that the digital signature is successfully verified in the first signature verification operation is stored.

15. The system of claim 13 , wherein said at least one computing device comprises a mobile device.

16. The system of claim 13 , wherein the first public key stored in the memory store is used by said processor in subsequent comparisons with the second public key within a limited duration.

17. The system of claim 13 , said processor further configured to delete the first public key from the memory store.

18. The system of claim 13 , said processor further configured to mark the first public key stored as stale.

19. The system of claim 13 , said processor further configured to perform validation operations comprising verifying that the first public key stored in the memory store is not stale.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE ADDED PATENT NUMBER TO REMOVE PATENT NO. 8,873,407 AT PREVIOUSLY RECORDED ON REEL 64066 FRAME 1. ASSIGNOR(S) HEREBY CONFIRMS THE NUNC PRO TUNC ASSIGNMENT EFFECTIVE DATE MARCH 20, 2023. Recorded Feb 2, 2026
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 074921/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT 12817157 APPLICATION NUMBER PREVIOUSLY RECORDED AT REEL: 064015 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064807/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE COVER SHEET AT PAGE 50 TO REMOVE 12817157 PREVIOUSLY RECORDED ON REEL 063471 FRAME 0474. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064806/0669 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064066/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 063471/0474 →
CHANGE OF NAME Recorded Nov 3, 2014
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 034150/0483 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 18, 2005
From: BROWN, MICHAEL K.; BROWN, MICHAEL S.
To: RESEARCH IN MOTION LIMITED
Reel/Frame 016167/0753 →
Continuity (1)
Related Publication 20060095388A1 · May 4, 2006