IP Library Granted Patent US 12,218,939
Granted Patent B2
US 12,218,939 · App. 17/989,390 · Granted Feb 4, 2025

Authentication method

Inventors: Sebastian Fach (Schwalbach a. Ts., DE); Gilles Yvars (Schwalbach a. Ts., DE); Ahmad Sabouri (Schwalbach a. Ts., DE)
Assignee: Continental Teves AG & Co. OHG
H04L63/0884B60R25/24H04L63/0442H04L63/0869
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,218,939
App. No.
17/989,390
Granted
Feb 4, 2025
Kind
B2
Abstract

An authentication method and system for mutual authentication between a first entity and a third entity via a second entity, based on an authentication protocol used by the first entity and the third entity. The second entity forwards mutual authentication messages between the first entity and the third entity. An apparatus is configured to perform an authentication method for a mutual authentication between a first entity and a third entity via a second entity, based on an authentication protocol used by the first entity and the third entity, the second entity forwards mutual authentication messages between the first entity and the third entity.

Claims (21)

1. A method to perform a mutual authentication between a first entity and a third entity via a second entity, based on an authentication protocol used by the first entity and the third entity, wherein the second entity forwards mutual authentication messages between the first entity and the third entity, the method comprising:

a) starting mutual authentication by frontloading, by the third entity, a first part of an authentication protocol to the second entity and keeping at least a missing part of the authentication protocol at the third entity, the frontloaded first part of the authentication protocol comprising a first encrypted number and generating a second encrypted number by the first entity, the second encrypted number comprising content of the first encrypted number;

b) receiving, by the third entity from the second entity, a wake-up signal to the third entity and an indication to continue the mutual authentication between the first entity and the second entity and rerouting, by the second entity, the mutual authentication messages, when the third entity woke up from Low Power Mode, the rerouting comprising transmitting the second encrypted number from the second entity to the third entity; and

c) continuing, by the third entity, the mutual authentication between the first entity and the third entity based on the missing part of the authentication protocol, continuing after receiving the second encrypted number from the second entity, the missing part of the authentication protocol comprising instructions for the third entity to derive a session key based on the second encrypted number and instructions for the first entity to derive a session key based on a third encrypted number generated and transmitted by the third entity, the third encrypted number comprising content of the second encrypted number, and using the respective session keys by the first entity and the third entity to exchange authenticated messages between the first entity and the third entity.

2. A method to perform a mutual authentication between a first entity and a third entity via a second entity, based on an authentication protocol used by the first entity and the third entity, wherein the second entity forwards mutual authentication messages between the first entity and the third entity, the method comprising:

a) receiving, by the second entity a frontloaded first part of an authentication protocol and keeping at least a missing part of the authentication protocol at the third entity, the frontloaded first part of the authentication protocol comprising a first encrypted number and the third entity, turning from a High Power Mode into a Low Power Mode after frontloading the first part of the authentication protocol;

b) starting, by the second entity, the mutual authentication between the third entity and the first entity based on the frontloaded first part of the authentication protocol, when a first entity connects to the second entity, and generating a second encrypted number by the first entity, the second encrypted number comprising content of the first encrypted number and sending, by the second entity, a wake-up signal to the third entity;

c) rerouting, by the second entity, the mutual authentication messages, when the third entity woke up from Low Power Mode, to the third entity, the rerouting comprising transmitting the second encrypted number from the second entity to the third entity;

d) switching the third entity from a low power mode to a second power mode higher than the low power mode; and

e) continuing mutual authentication, by the third entity, after the third entity receives the second encrypted number from the second entity, the missing part of the authentication protocol comprising instructions for the third entity to derive a session key based on the second encrypted number and instructions for the first entity to derive a session key based on a third encrypted number generated and transmitted by the third entity, the third encrypted number comprising content of the second encrypted number, and using the respective session keys by the first entity and the third entity to exchange authenticated messages between the first entity and the third entity.

3. A vehicle comprising:

a second entity comprising memory and configured to

a) receive, by the second entity a frontloaded first part of an authentication protocol, the frontloaded first part of the authentication protocol comprising a first encrypted number;

b) start, by the second entity, mutual authentication between a third entity and a first entity based on the frontloaded first part of the authentication protocol, when the first entity connects to the second entity, and generating a second encrypted number by the first entity, the second encrypted number comprising content of the first encrypted number; and

c) reroute, by the second entity, when the third entity wakes up from Low Power Mode, the mutual authentication messages to the third entity, the rerouting comprising transmitting the second encrypted number from the second entity to the third entity and update a part of the authentication protocol received from the third entity; and

the third entity comprising memory and configured to:

a) frontload, by the third entity, a first part of an authentication protocol to the second entity and keeping at least a missing part of the authentication protocol at the third entity, the frontloaded first part of the authentication protocol comprising a first encrypted number and the third entity, turning from a High Power Mode into a Low Power Mode after frontloading the first part of the authentication protocol;

b) receive, by the third entity from the second entity, an indication to continue the mutual authentication between the first entity and the third entity, and switch the third entity from a low power mode to a second power mode higher than the low power mode; and

c) continue, by the third entity, the mutual authentication between the first entity and the second entity based on the missing part of the authentication protocol, after receiving a second encrypted number from the second entity, the second encrypted number comprising content of the first encrypted number, the missing part of the authentication protocol comprising instructions for the third entity to derive a session key based on the second encrypted number and instructions for the first entity to derive a session key based on a third encrypted number generated and transmitted by the third entity, the third encrypted number comprising content of the second encrypted number, and continuing comprising using the respective session keys by the first entity and the third entity to exchange authenticated messages between the first entity and the third entity.

4. The method of claim 1 , further comprising switching the third entity from a low power mode to a second power mode higher than the low power mode.

5. The method of claim 1 , wherein the session key is not stored at the second entity.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 17, 2022
From: FACH, SEBASTIAN; YVARS, GILLES; SABOURI, AHMAD
To: CONTINENTAL TEVES AG & CO. OHG
Reel/Frame 061816/0058 →
Priority Claims (1)
EP 20315016 · Feb 7, 2020 · regional
Continuity (2)
Division 17168455 · Feb 5, 2021
Related Publication 20230108770A1 · Apr 6, 2023
References Cited (66)
US 6073236A · Kusakabe · 2000 [cited by examiner]
US 6779111B1 · Gehrmann · 2004 [cited by examiner]
US 7457953B2 · First · 2008 [cited by examiner]
US 7929702B2 · Brown · 2011 [cited by examiner]
US 8107397B1 · Bagchi · 2012 [cited by examiner]
US 8534564B2 · Hammad · 2013 [cited by examiner]
US 8738898B2 · Herwono · 2014 [cited by examiner]
US 9460567B2 · Huang · 2016 [cited by examiner]
US 9794753B1 · Stitt · 2017 [cited by examiner]
US 9913989B2 · Schilling · 2018 [cited by examiner]
US 9977415B2 · Zimmerman · 2018 [cited by examiner]
US 10164775B2 · Park · 2018 [cited by examiner]
US 10229552B2 · Holtappels · 2019 [cited by examiner]
US 10305902B2 · Kim · 2019 [cited by examiner]
US 10307599B2 · Schilling · 2019 [cited by examiner]
US 10511596B2 · Revell · 2019 [cited by examiner]
US 10613499B2 · Zimmerman · 2020 [cited by examiner]
US 10631040B2 · Britt · 2020 [cited by examiner]
US 10693848B2 · Revell · 2020 [cited by examiner]
US 10733309B2 · Revell · 2020 [cited by examiner]
US 10999265B2 · Ma · 2021 [cited by examiner]
US 11178125B2 · Zhu · 2021 [cited by examiner]
US 11228429B2 · Arkko · 2022 [cited by examiner]
US 11405208B2 · Jung · 2022 [cited by examiner]
US 20040229597A1 · Patel · 2004 [cited by examiner]
US 20050254658A1 · Brown · 2005 [cited by examiner]
US 20070192602A1 · Blom · 2007 [cited by examiner]
US 20090287922A1 · Herwono · 2009 [cited by examiner]
US 20100034385A1 · Gantman · 2010 [cited by examiner]
US 20100161959A1 · Sood · 2010 [cited by examiner]
US 20110291803A1 · Bajic · 2011 [cited by examiner]
US 20120031969A1 · Hammad · 2012 [cited by examiner]
US 20120271380A1 · Roberts · 2012 [cited by examiner]
US 20150382085A1 · Lawrie-Fussey · 2015 [cited by examiner]
US 20160142409A1 · Frei · 2016 [cited by examiner]
US 20160232736A1 · Holtappels · 2016 [cited by examiner]
US 20160277189A1 · Ahn · 2016 [cited by examiner]
US 20170005820A1 · Zimmerman · 2017 [cited by examiner]
US 20170012778A1 · Choyi · 2017 [cited by examiner]
US 20170134943A1 · Min · 2017 [cited by examiner]
US 20170171607A1 · Britt · 2017 [cited by examiner]
US 20170214664A1 · Birgisson · 2017 [cited by examiner]
US 20170293768A1 · Revell · 2017 [cited by examiner]
US 20170312530A1 · Schilling · 2017 [cited by examiner]
US 20180028827A1 · Schilling · 2018 [cited by examiner]
US 20180063131A1 · Revell · 2018 [cited by examiner]
US 20180200525A1 · Schilling · 2018 [cited by examiner]
US 20180246484A1 · Zimmerman · 2018 [cited by examiner]
US 20190028448A1 · Farrell · 2019 [cited by examiner]
US 20190044721A1 · Schultz · 2019 [cited by examiner]
US 20190044943A1 · Kim · 2019 [cited by examiner]
US 20190135229A1 · Ledvina · 2019 [cited by examiner]
US 20190149530A1 · Ma · 2019 [cited by examiner]
US 20190268313A1 · Revell · 2019 [cited by examiner]
US 20190282819A1 · Schilling · 2019 [cited by examiner]
US 20200106877A1 · Ledvina · 2020 [cited by examiner]
US 20200252436A1 · Yoon · 2020 [cited by examiner]
US 20200389469A1 · Litichever · 2020 [cited by examiner]
US 20210119800A1 · Jung · 2021 [cited by examiner]
US 20210226781A1 · Arkko · 2021 [cited by examiner]
JP H03282722 · 1991 [cited by applicant]
JP H1020780 · 1998 [cited by applicant]
JP 2015003545 · 2015 [cited by applicant]
Office Action dated Dec. 16, 2021 issued in Japanese Patent Application No. 2021-017600. [cited by applicant]
Office Action dated Aug. 16, 2022 issued in Japanese Patent Application No. 2021-017600. [cited by applicant]
Office Action of Corresponding European Application No. EP 20315016.4, dated Nov. 26, 2024. [cited by applicant]