IP Library › Granted Patent US 12,273,472
Granted Patent B2
US 12,273,472 · App. 18/170,039 · Granted Apr 8, 2025

Systems and methods for asymmetric authentication in decentralized mobile networks

Inventors: Ismaila Wane (San Francisco, CA); Karsten Ohme (Dresden, DE)
Assignee: Bloxtel, Inc.
H04L9/50H04W8/04H04W12/71
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,273,472
App. No.
18/170,039
Granted
Apr 8, 2025
Kind
B2
Abstract

An apparatus includes a processing device, communications hardware configured to enable wireless communication by the apparatus, and a universal integrated circuit card (UICC). The UICC stores a decentralized electronic subscriber identity module (dSIM) that hosts a decentralized access application that is configured to exchange information with a decentralized mobile network core utilizing the communications hardware to perform an asymmetric authentication session.

Claims (37)

1. An apparatus comprising:

a processing device;

a baseband processor configured to communicate wirelessly with a decentralized mobile network core; and

a universal integrated circuit card (UICC) storing a decentralized electronic subscriber identity module (dSIM) that hosts a decentralized access application that is configured to authenticate the apparatus during a secure initialization process, via the baseband processor, with the decentralized mobile network core using a private key generated by the dSIM and a corresponding public key, wherein authentication of the apparatus does not require use of an International Mobile Subscriber Identity (IMSI) of the apparatus,

wherein the baseband processor is not natively configured to independently authenticate the apparatus using the private key,

wherein the baseband processor is configured to authenticate the apparatus in conjunction with the decentralized access application.

2. The apparatus of claim 1 , wherein the processing device is configured to:

retrieve the decentralized access application from a blockchain ledger as a semi-fungible token; and

install and activate the decentralized access application, thereby converting the decentralized access application to a non-fungible token on the blockchain ledger.

3. The apparatus of claim 2 , wherein the activation of the decentralized access application results in a creation of a public-private keypair, and

wherein a public key of the public-private keypair is stored on the blockchain ledger.

4. The apparatus of claim 3 , wherein the public key of the public-private keypair is configured to be retrieved by the decentralized mobile network core from the blockchain ledger for identification, authentication, and/or handover purposes.

5. The apparatus of claim 1 , wherein the decentralized mobile network core comprises a modified Unified Data Management (UDM) for 5G or a modified Home Subscriber Server (HSS) for 4G/LTE.

6. The apparatus of claim 1 , wherein, to perform an asymmetric authentication session, the processing device is configured to tunnel, via the baseband processor and utilizing a data structure that is not interpreted by the baseband processor, data related to the asymmetric authentication session using at least one of an authentication token or a random value.

7. The apparatus of claim 6 , wherein, to tunnel the data related to the asymmetric authentication session using the at least one of the authentication token or the random value, the processing device is configured to wrap the data into multiple packets having a same size as the at least one of the authentication token or the random value.

8. The apparatus of claim 6 , wherein the processing device is configured to tunnel the data related to the asymmetric authentication session responsive to detecting a flag having a defined value as part of an authentication request.

9. The apparatus of claim 8 , wherein the flag is the authentication token and the defined value is all zeros.

10. The apparatus of claim 1 , wherein the decentralized access application is configured to authenticate the apparatus without requiring the decentralized mobile network core to interact with a remote server.

11. The apparatus of claim 1 , wherein authenticating the apparatus using a private key does not require changes in modem firmware of the apparatus.

12. A computer-implemented method comprising:

storing a decentralized access application on a universal integrated circuit card of a user equipment;

activating the decentralized access application to generate a public-private keypair; and

utilizing the public-private keypair to perform an asymmetric authentication operation during a secure initialization process, via a baseband processor, with a decentralized mobile network core, wherein the asymmetric authentication operation authenticates the user equipment using the public-private keypair generated by the decentralized access application, wherein authentication of the user equipment does not require use of an International Mobile Subscriber Identity (IMSI) of the user equipment,

wherein the baseband processor is not natively configured to independently authenticate the user equipment using the public-private keypair,

wherein the baseband processor is configured to authenticate the user equipment in conjunction with the decentralized access application.

13. The computer-implemented method of claim 12 , further comprising:

accessing, from a blockchain ledger, a semi-fungible token, wherein the semi-fungible token comprises the decentralized access application.

14. The computer-implemented method of claim 13 , wherein activating the decentralized access application to generate a public-private keypair converts the semi-fungible token into a non-fungible token on the blockchain ledger.

15. The computer-implemented method of claim 13 , wherein a public key of the public-private keypair is stored on the blockchain ledger.

16. The computer-implemented method of claim 15 , wherein the public key of the public-private keypair is configured to be retrieved by the decentralized mobile network core from the blockchain ledger for identification, authentication, and/or handover purposes.

17. The computer-implemented method of claim 12 , wherein storing the decentralized access application on the universal integrated circuit card of the user equipment comprises storing the decentralized access application in a component of a decentralized electronic subscriber identity module of a removable, integrated, or virtual circuit chip.

18. The computer-implemented method of claim 12 , wherein the decentralized mobile network core comprises a modified Unified Data Management (UDM) for 5G or a modified Home Subscriber Server (HSS) for 4G/LTE.

19. The computer-implemented method of claim 12 , wherein utilizing the public-private keypair to perform the asymmetric authentication operation with the decentralized mobile network core comprises tunneling, via the baseband processor and utilizing a data structure that is not interpreted by the baseband processor, data related to the asymmetric authentication operation using at least one of an authentication token or a random value.

20. The computer-implemented method of claim 19 , wherein tunneling the data related to the asymmetric authentication operation using the at least one of the authentication token or the random value comprises wrapping the data into multiple packets having a same size as the at least one of the authentication token or the random value.

21. The computer-implemented method of claim 19 , wherein tunneling the data related to the asymmetric authentication operation is performed responsive to detecting a flag having a defined value as part of an authentication request.

22. The computer-implemented method of claim 21 , wherein the flag is the authentication token and the defined value is all zeros.

23. The computer-implemented method of claim 12 , wherein the asymmetric authentication operation authenticates the user equipment without requiring the decentralized mobile network core to interact with a remote server.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 16, 2023
From: WANE, ISMAILA; OHME, KARSTEN
To: BLOXTEL INC.
Reel/Frame 062719/0899 →
Continuity (4)
Provisional Application 63431180 · Dec 8, 2022
Provisional Application 63402949 · Sep 1, 2022
Provisional Application 63348497 · Jun 3, 2022
Related Publication 20230396455A1 · Dec 7, 2023
References Cited (34)
US 9722790B2 · Ebrahimi · 2017 [cited by applicant]
US 11323324B2 · Dasgupta et al. · 2022 [cited by applicant]
US 11405387B1 · Griffin · 2022 [cited by examiner]
US 20040001091A1 · Kressin · 2004 [cited by examiner]
US 20090034521A1 · Kato · 2009 [cited by examiner]
US 20120260023A1 · Nagai · 2012 [cited by examiner]
US 20160019536A1 · Ortiz · 2016 [cited by examiner]
US 20180048738A1 · Hinds · 2018 [cited by applicant]
US 20190053051A1 · Yu · 2019 [cited by examiner]
US 20190098016A1 · Jeon · 2019 [cited by examiner]
US 20190174314A1 · Joseph · 2019 [cited by examiner]
US 20200052905A1 · Mathias · 2020 [cited by examiner]
US 20200314648A1 · Cao · 2020 [cited by examiner]
US 20210118085A1 · Bushnell · 2021 [cited by examiner]
US 20210150626A1 · Robotham · 2021 [cited by examiner]
US 20210176802A1 · Sirotkin · 2021 [cited by examiner]
US 20210400474A1 · Stauffer · 2021 [cited by examiner]
US 20220021728A1 · Kelly · 2022 [cited by examiner]
US 20220123944A1 · Wang · 2022 [cited by examiner]
US 20220132310A1 · Tsuoka · 2022 [cited by examiner]
US 20220166638A1 · Razi · 2022 [cited by examiner]
US 20220321475A1 · Thiebaut · 2022 [cited by examiner]
US 20220385670A1 · Lim · 2022 [cited by examiner]
US 20220414698A1 · Doumar · 2022 [cited by examiner]
US 20230121852A1 · Yan · 2023 [cited by examiner]
US 20230124519A1 · Singh · 2023 [cited by examiner]
US 20230139656A1 · Bishnoi · 2023 [cited by examiner]
CN 111385750A · 2020 [cited by applicant]
EP 3579494A1 · 2019 [cited by applicant]
EP 3836525A1 · 2021 [cited by applicant]
Lei et al., “Blockchain Based Spectrum Sharing over 6G Hybrid Cloud,” 2021, https://ieeexplore.ieee.org/document/9498978 (6 pages). [cited by applicant]
Singh, Nicole, “What is the 5G Access and Mobility management Function (AMF)?” Jan. 5, 2023; (2 pages); https://www.metaswitch.com/knowledge-center/reference/what-is-the-5g-access-and-mobility-management-function-amf. [cited by applicant]
Singh, Vipin et al., “Blockchain in Telecom: Which companies are leading the research?” Blockchain in Telecom Solutions; (internet pages printed Feb. 17, 2023); (14 pages) https://www.greyb.com/companies-researching-blo… [cited by applicant]
Palmer, Daniel, “Verizon Just Won a Patent to Create Virtual SIMs on a Blockchain,” CoinDesk; Sep. 20, 2019; (5 pages) https://www.coindesk.com/markets/2019/09/20/verizon-just-won-a-patent-to-create-virtual-sims-on-a-bl… [cited by applicant]
Cited By (1)
US 12,659,717