IP Library › Granted Patent US 11,664,996
Granted Patent B2
US 11,664,996 · App. 17/221,100 · Granted May 30, 2023

Authentication in ubiquitous environment

Inventor: Unho Choi (Toronto, CA)
H04L9/3231G06F21/32G06F21/33G06F21/34H04L9/3263H04L63/0823H04L63/0861
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,664,996
App. No.
17/221,100
Granted
May 30, 2023
Kind
B2
Abstract

A method of registering a person as an authorized user of a portable device includes acquiring biometric data or a combination of pieces of biometric data of a person, encrypting the acquired biometric data or the combination of pieces of biometric data of the person, generating a code from the encrypted biometric data or the combination of pieces of biometric data of the person, inserting the code in an extension field of a public key certificate stored in the portable device, generating a private key and a public key that corresponds to the private key, based on the public key certificate, wherein the private key contains the code, transmitting the public key to a remote entity that is in communication with the portable device, thereby enabling the remote entity to register the person as an authorized user of the portable device, and modifying the public key to generate a modified public key configured to be used in case that the remote entity is disconnected from a service providing server.

Claims (64)

1. A method comprising:

acquiring, by a portable device, biometric data or a combination of pieces of biometric data of a person;

encrypting, by the portable device, the acquired biometric data or the combination of pieces of biometric data of the person;

generating, by the portable device, a code from the encrypted biometric data or the combination of pieces of biometric data of the person;

inserting, by the portable device, the code in an extension field of a public key certificate stored in the portable device;

generating, by the portable device, a private key and a public key that corresponds to the private key, based on the public key certificate, wherein the private key contains the code;

transmitting, by the portable device, the public key to a remote entity that is in communication with the portable device, thereby enabling a service providing server communicatively connected with the remote entity to register the person as an authorized user of the portable device;

modifying, by the service providing server, the public key to generate a modified public key configured to be used in case that the remote entity is disconnected from the service providing server; and

transmitting, by the service providing server, the modified public key to the portable device,

wherein when the modified public key is used, the remote entity provides a predetermined set of services that is less than the services that the remote entity provides when the modified key is not used, and

wherein the method further comprises:

storing, by the remote entity, transaction information;

transmitting, by the remote entity in response to the remote entity connecting to the service providing server, the stored transaction information to the service providing server; and

settling, by the service providing server, the transaction information.

2. The method according to claim 1 , further comprising:

acquiring, by the portable device, unique identity data of an Internet of Things (IoT) device;

generating, by the portable device, an IoT device code from the acquired unique identity data of the IoT device; and

inserting, by the portable device, the IoT device code in the extension field of the public key certificate.

3. The method according to claim 2 , further comprising encrypting, by the portable device, the acquired unique identity data of the IoT device, wherein the IoT device code is generated from the encrypted unique identity data of the IoT device.

4. The method according to claim 2 , wherein the remote entity is implemented as a central controller for an Internet of Things (IoT) device, a server of an IoT service provider, a server of an IoT device vender, or any combination thereof.

5. The method according to claim 1 , wherein the portable device is implemented as a smartcard, a dongle, a watch, glasses, a ring, or a mobile communication terminal.

6. The method according to claim 1 , wherein the extension field of the public key certificate further contains information on electronic money of the person, information on an electronic wallet of the person, information on a cryptographic hash function that represents a value or an address of digital currency belonging to the person, information on a coupon belonging to the person, information on a uniform resource locator (URL) of the remote entity, or information on any combination thereof.

7. The method according to claim 1 , wherein the extension field of the public key certificate further contains information on a resident registration number of the person, information on a driver's license of the person, information on a medical card of the person, information on a social security number of the person, information on a passport of the person, information on voter registration of the person, or information on any combination thereof.

8. A portable device comprising:

a sensor that is disposed in the portable device and is configured to acquire biometric data or a combination of pieces of biometric data of a person;

a memory that is disposed in the portable device and is configured to store a public key certificate; and

a processor that is disposed in the portable device and is configured to cause the portable device to:

encrypt the acquired biometric data or the combination of pieces of biometric data of the person;

generate a code from the encrypted biometric data or the combination of pieces of biometric data of the person;

insert the code in an extension field of the public key certificate;

generate a private key and a public key that corresponds to the private key, based on the public key certificate, wherein the private key contains the code; and

transmit the public key to a remote entity that is in communication with the portable device, thereby enabling a service providing server communicatively connected with the remote entity to register the person as an authorized user of the portable device,

wherein the memory of the portable device further stores a modified key that is generated by modifying the public key, the modified key being configured to be used in case that the remote entity is disconnected from the service providing server,

wherein when the modified public key is used, the portable device is provided with a predetermined set of services that is less than the services that the remote entity provides when the modified key is not used, and

wherein the processor is further configured to request the service providing server to:

store, by the remote entity, transaction information;

transmit, by the remote entity in response to the remote entity connecting to the service providing server, the stored transaction information to the service providing server; and

settle, by the service providing server, the transaction information.

9. The portable device according to claim 8 , wherein the processor is further configured to cause the portable device to:

acquire unique identity data of an Internet of Things (IoT) device;

generate an IoT device code from the acquired unique identity data of the IoT device; and

insert the IoT device code in the extension field of the public key certificate.

10. The portable device according to claim 9 , wherein the processor is further configured to cause the portable device to encrypt the acquired unique identity data of the IoT device, wherein the IoT device code is generated from the encrypted unique identity date of the IoT device.

11. The portable device according to claim 9 , wherein the remote entity is implemented as a central controller for an Internet of Things (IoT) device, a server of an IoT service provider, a server of an IoT device vender, or any combination thereof.

12. The portable device according to claim 8 , wherein the portable device is implemented as a smartcard, a dongle, a watch, glasses, a ring, or a mobile communication terminal.

13. The portable device according to claim 8 , wherein the extension field of the public key certificate further contains information on electronic money of the person, information on an electronic wallet of the person, information on a cryptographic hash function that represents a value or an address of digital currency belonging to the person, information on a coupon belonging to the person, information on a uniform resource locator (URL) of the remote entity, or information on any combination thereof.

14. The portable device according to claim 8 , wherein the extension field of the public key certificate further contains information on a resident registration number of the person, information on a driver's license of the person, information on a medical card of the person, information on a social security number of the person, information on a passport of the person, information on voter registration of the person, or information on any combination thereof.

15. A method comprising:

acquiring, by a portable device of a person, biometric data or a combination of pieces of biometric data of a person;

generating, by the portable device, a biometric code from the acquired biometric data or the combination of pieces of biometric data of the person;

acquiring, by the portable device, unique identity data of an IoT device;

generating, by the portable device, an IoT device code from the acquired unique identity data of the IoT device;

inserting, by the portable device, a verification code in an extension field of a public key certificate stored in the portable device, wherein the verification code contains the biometric code and the IoT device code;

generating, by the portable device, a private key and a public key that corresponds to the private key, based on the public key certificate, wherein the private key contains the verification code;

transmitting, by the portable device, the public key to a remote entity that is in communication with the portable device, thereby enabling a service providing server communicatively connected with the remote entity to register the person as an authorized user of the IoT device;

modifying, by the service providing server, the public key to generate a modified public key configured to be used in case that the remote entity is disconnected from the service providing server; and

transmitting, by the service providing server, the modified public key to the portable device,

wherein when the modified public key is used, the remote entity provides a predetermined set of services that is less than the services that the remote entity provides when the modified key is not used, and

wherein the method further comprises:

storing, by the remote entity, transaction information;

transmitting, by the remote entity in response to the remote entity connecting to the service providing server, the stored transaction information to the service providing server; and

settling, by the service providing server, the transaction information.

16. The method according to claim 15 , further comprising encrypting, by the portable device, the acquired biometric data or the combination of pieces of biometric data of the person, wherein the biometric code is generated from the encrypted biometric data or the combination of pieces of biometric data of the person.

17. The method according to claim 15 , further comprising encrypting, by the portable device, the acquired unique identity data of the IoT device, wherein the IoT device code is generated from the encrypted unique identity data of the IoT device.

Priority Claims (1)
KR 10-2009-0110964 · Nov 17, 2009 · national
Continuity (4)
Continuation 15667024 · Aug 2, 2017
Division 14693521 · Apr 22, 2015
Continuation In Part 13510464
Related Publication 20210226797A1 · Jul 22, 2021
Cited By (3)
US 12,432,065 US 12,609,841 US 12,609,842