IP Library Granted Patent US 10,657,233
Granted Patent B1
US 10,657,233 · App. 15/718,772 · Granted May 19, 2020

Extending electronic ID information

Inventors: Anders Wallbom (Taeby, SE); Philip Hoyer (Richmond, GB); Uwe Schnabel (Erfurt, DE); Adrian Meads (Hampshire, GB)
Assignee: ASSA ABLOY AB
G06F21/31G06Q20/38215H04L9/0825H04L9/32H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,657,233
App. No.
15/718,772
Granted
May 19, 2020
Kind
B1
Abstract

Maintaining a plurality of different sets of data groups for virtualized credentials of a holder includes storing a first subset of the data groups according to a standard for storing data groups, where the standard verifies each data group in the first subset of data groups, storing a second subset of the data groups as a plurality of auxiliary data elements that are separate from the first subset, where auxiliary data elements are not directly accessible using the standard, providing at least one custom data group in the first subset that verifies each of the auxiliary data elements, and verifying at least one of the auxiliary data elements using the custom data group and verifying the custom data group using the standard. The standard may be ISO 18013. The digital signature may be provided by a party that is trusted by a relying party that receives data from the holder.

Claims (33)

1. A method of maintaining a plurality of different sets of data groups for virtualized credentials of a holder, comprising:

storing a first subset of the data groups according to a standard for storing data groups, wherein the standard verifies each data group in the first subset of data groups;

storing a second subset of the data groups as a plurality of auxiliary data elements that are separate from the first subset, wherein the auxiliary data elements are not directly accessible using the standard;

providing a custom data group in the first subset that verifies each of the auxiliary data elements; and

verifying at least one of the auxiliary data elements using the custom data group and verifying the custom data group using the standard.

2. The method, according to claim 1 , wherein using the standard includes providing a data group of the first subset of the data groups having a plurality of digitally signed hash values and wherein each of the values corresponds to other data groups of the first subset of the data groups.

3. The method, according to claim 2 , wherein the standard is ISO 18013.

4. The method, according to claim 2 , wherein the digital signature is provided by a party that is trusted by a relying party that receives data from the holder.

5. The method, according to claim 1 , wherein the auxiliary data elements are provided to a relying party according to a role of the relying party.

6. The method, according to claim 5 , wherein information indicating a role of the relying party is stored with the auxiliary data elements.

7. The method, according to claim 5 , wherein role information provided by the relying party is provided in a verifiable format.

8. The method, according to claim 7 , wherein the role information is one of: digitally signed or securely derived and determined by a mutual authentication algorithm between the relying party and the holder.

9. The method, according to claim 1 , wherein data for the custom data group includes a list of all of the auxiliary data elements and a hash of each of the auxiliary data elements.

10. The method, according to claim 1 , wherein at least some data that is common to a plurality of the auxiliary data elements is stored with the custom data group.

11. The method, according to claim 1 , wherein at least a portion of the virtualized credentials are stored in a license holder device.

12. The method, according to claim 11 , wherein the license holder device includes at least one of: a battery-powered fob, a smartcard, an SD memory, and a USB memory.

13. A non-transitory computer readable medium containing software that maintains a plurality of different sets of data groups for virtualized credentials of a holder, the software comprising:

executable code that stores a first subset of the data groups according to a standard for storing data groups, wherein the standard verifies each data group in the first subset of data groups;

executable code that stores a second subset of the data groups as a plurality of auxiliary data elements that are separate from the first subset, wherein the auxiliary data elements are not directly accessible using the standard;

executable code that provides a custom data group in the first subset that verifies each of the auxiliary data elements; and

executable code that verifies at least one of the auxiliary data elements using the custom data group and verifying the custom data group using the standard.

14. The non-transitory computer readable medium, according to claim 13 , wherein using the standard includes providing a data group of the first subset of the data groups having a plurality of digitally signed hash values and wherein each of the values corresponds to other data groups of the first subset of the data groups.

15. The non-transitory computer readable medium, according to claim 14 , wherein the standard is ISO 18013.

16. The non-transitory computer readable medium, according to claim 14 , wherein the digital signature is provided by a party that is trusted by a relying party that receives data from the holder.

17. The non-transitory computer readable medium, according to claim 13 , wherein the auxiliary data elements are provided to a relying party according to a role of the relying party.

18. The non-transitory computer readable medium, according to claim 17 , wherein information indicating a role of the relying party is stored with the auxiliary data elements.

19. The non-transitory computer readable medium, according to claim 17 , wherein role information provided by the relying party is provided in a verifiable format.

20. The non-transitory computer readable medium, according to claim 19 , wherein the role information is one of:

digitally signed or securely derived and determined by a mutual authentication algorithm between the relying party and the holder.

21. The non-transitory computer readable medium, according to claim 13 , wherein data for the custom data group includes a list of all of the auxiliary data elements and a hash of each of the auxiliary data elements.

22. The non-transitory computer readable medium, according to claim 13 , wherein at least some data that is common to a plurality of the auxiliary data elements is stored with the custom data group.

23. The non-transitory computer readable medium, according to claim 13 , wherein at least a portion of the virtualized credentials are stored in a license holder device.

24. The non-transitory computer readable medium, according to claim 23 , wherein the license holder device includes at least one of: a battery-powered fob, a smartcard, an SD memory, and a USB memory.

Assignments (3)
CHANGE OF NAME Recorded Oct 23, 2025
From: HID GLOBAL CID SAS
To: TOPPAN SECURITY SAS
Reel/Frame 073225/0558 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 6, 2023
From: ASSA ABLOY AB
To: HID GLOBAL CID SAS
Reel/Frame 065779/0601 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 10, 2019
From: WALLBOM, ANDERS; HOYER, PHILIP; SCHNABEL, UWE; MEADS, ADRIAN
To: ASSA ABLOY AB
Reel/Frame 049423/0330 →
Continuity (4)
Provisional Application 62437727 · Dec 22, 2016
Provisional Application 62414340 · Oct 28, 2016
Provisional Application 62401969 · Sep 30, 2016
Provisional Application 62402285 · Sep 30, 2016
Cited By (1)
US 12,701,142