IP Library Granted Patent US 12,316,780
Granted Patent B2
US 12,316,780 · App. 17/506,549 · Granted May 27, 2025

Method and system for intelligent transportation system certificate revocation list reduction

Inventors: Nicholas James Russell (Newbury, GB); Jonathon Brookfield (Great Cambourne, GB); Stephen John Barrett (Haywards Heath, GB)
Assignee: Malikie Innovations Limited
H04L9/3268H04L9/321H04L63/0823H04L63/107H04L63/108H04L67/12H04L67/52H04W4/40H04L65/1104H04L2101/654
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,316,780
App. No.
17/506,549
Filed
Oct 20, 2021
Granted
May 27, 2025
Kind
B2
Art Unit
2499
USPC
713/158
Abstract

A method at a computing device within an Intelligent Transportation System (ITS), the method including: receiving a first message, the first message including at least tailoring information for a first ITS endpoint and intended journey details for the first ITS endpoint; storing all or a subset of data from the first message; obtaining a full certificate revocation list; creating a tailored certificate revocation list based on data in the first message and the full certificate revocation list, the tailored certificate revocation list containing certificates or identifiers of certificates for ITS endpoints that may be encountered by the first ITS endpoint when navigating a route provided in the intended journey details; and providing the tailored certificate revocation list to the first ITS endpoint.

Claims (44)

1. A method at a first Intelligent Transportation System (ITS) station, the method comprising:

detecting an occurrence of a trigger event associated with a time limit or a geographical area limit of a previously received certificate revocation list (CRL) that has been exceeded or expired;

upon the occurrence of the trigger event being detected, determining one or more addresses for a CRL provisioning server to which to connect;

composing a CRL request message, the CRL request message including tailoring information for the first ITS station and intended journey details for the first ITS station;

sending the CRL request message to the CRL provisioning server;

in response to the CRL request message, receiving, from the CRL provisioning server, a tailored CRL;

receiving a CRL response message from a second ITS station, the CRL response message including (1) application message content, (2) a signature of the CRL request message, and (3) a certificate signed by a certificate authority;

checking the tailored CRL to determine whether the certificate included in the CRL response message is on the tailored CRL; and

when the certificate included in the CRL response message is not on the tailored CRL, extracting a public verification key from the certificate included in the CRL response message to verify the signature.

2. The method of claim 1 , wherein the tailored CRL includes expiration information.

3. The method of claim 2 , wherein the expiration information is an absolute or relative time that the tailored CRL will expire.

4. The method of claim 2 , wherein the expiration information is an absolute or relative geographic boundary, which, when crossed by the first ITS station, causes the tailored CRL to expire.

5. A first Intelligent Transportation System (ITS) station comprising:

a processor; and

a communications subsystem operably coupled with the processor and configured to:

detect an occurrence of a trigger event associated with a time limit or a geographical area limit of a previously received certificate revocation list (CRL) that has been exceeded or expired;

upon the occurrence of the trigger event being detected, determine one or more addresses for a CRL provisioning server to which to connect;

compose a CRL request message, the CRL request message including tailoring information for the first ITS station and intended journey details for the first ITS station;

send the CRL request message to the CRL provisioning server;

in response to the CRL request message, receive, from the CRL provisioning server, a tailored CRL;

receive a CRL response message from a second ITS station, the CRL response message including (1) application message content, (2) a signature of the CRL request message, and (3) a certificate signed by a certificate authority;

check the tailored CRL to determine whether the certificate included in the CRL response message is on the tailored CRL; and

when the certificate included in the CRL response message is not on the tailored CRL, extract a public verification key from the certificate included in the CRL response message to verify the signature.

6. The first ITS station of claim 5 , wherein the tailored CRL includes expiration information.

7. The first ITS station of claim 6 , wherein the expiration information is an absolute or relative time that the tailored CRL will expire.

8. The first ITS station of claim 6 , wherein the expiration information is an absolute or relative geographic boundary, which, when crossed by the first ITS station, causes the tailored CRL to expire.

9. The method of claim 1 , wherein the first ITS station is either a vehicle ITS station or a pedestrian ITS station.

10. The method of claim 1 , wherein the CRL response message is a vehicle-to-anything (V2X) message.

11. The method of claim 1 , wherein the certificate included in the CRL response message is an elliptic curve Qu-Vanstone (ECQV) certificate.

12. The method of claim 1 , wherein the intended journey details comprise a route the first ITS station intends to follow.

13. The method of claim 12 , wherein the tailoring information comprises one or more of:

location information for the first ITS station;

one or more identifiers belonging to the first ITS station; or

one or more certificates or identities of ITS stations that have communicated with the first ITS station within a threshold time period.

14. The method of claim 13 , wherein the one or more identifiers belonging to the first ITS station include one or more of: certificates or fields of certificates associated with the first ITS station; International Mobile Subscriber Identities, Temporary Mobile Subscriber Identities, Packet-Temporary Mobile Subscriber Identities, Globally Unique Temporary User Equipment Identities, or Fifth Generation Globally Unique Temporary User Equipment Identities; equipment identities; Mobile Station International Subscriber Directory Numbers; Internet Protocol addresses or portions of Internet Protocol addresses; Medium Access Control addresses; Session Initiation Protocol Universal Resource Identifiers; or Telephone Universal Resource Identifiers.

15. A non-transitory computer readable medium for storing instruction code, which, when executed by a processor of a first Intelligent Transportation System (ITS) station, causes the first ITS station to:

detect an occurrence of a trigger event associated with a time limit or a geographical area limit of a previously received certificate revocation list (CRL) has been exceeded or expired;

upon the occurrence of the trigger event being detected, determine one or more addresses for a CRL provisioning server to which to connect;

compose a CRL request message, the CRL request message including tailoring information for the first ITS station and intended journey details for the first ITS station;

send the CRL request message to the CRL provisioning server;

in response to the CRL request message, receive, from the CRL provisioning server, a tailored CRL;

receive a CRL response message from a second ITS station, the CRL response message including (1) application message content, (2) a signature of the CRL request message, and (3) a certificate signed by a certificate authority;

check the tailored CRL to determine whether the certificate included in the CRL response message is on the tailored CRL; and

when the certificate included in the CRL response message is not on the tailored CRL, extract a public verification key from the certificate included in the CRL response message to verify the signature.

Assignments (6)
CORRECTIVE ASSIGNMENT TO CORRECT THE COVER SHEET AT PAGE 50 TO REMOVE 12817157 PREVIOUSLY RECORDED ON REEL 063471 FRAME 0474. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064806/0669 →
CORRECTIVE ASSIGNMENT TO CORRECT 12817157 APPLICATION NUMBER PREVIOUSLY RECORDED AT REEL: 064015 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064807/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 063471/0474 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 20, 2021
From: RUSSELL, NICHOLAS JAMES; BARRETT, STEPHEN JOHN; BROOKFIELD, JONATHON
To: BLACKBERRY UK LIMITED
Reel/Frame 057855/0364 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 20, 2021
From: BLACKBERRY UK LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 057855/0454 →
Continuity (2)
Continuation 16145834 · Sep 28, 2018
Related Publication 20220045870A1 · Feb 10, 2022
References Cited (64)
US 8090949B2 · Bellur et al. · 2012 [cited by applicant]
US 9742569B2 · van Roermund · 2017 [cited by applicant]
US 10154061B1 · Schetina · 2018 [cited by examiner]
US 10503893B2 · Hsu · 2019 [cited by examiner]
US 11019520B2 · Kim · 2021 [cited by examiner]
US 20030058842A1 · Bud · 2003 [cited by examiner]
US 20040185842A1 · Spaur · 2004 [cited by examiner]
US 20050228998A1 · Chan · 2005 [cited by examiner]
US 20080052510A1 · Kim · 2008 [cited by examiner]
US 20090179775A1 · Bos · 2009 [cited by examiner]
US 20090235071A1 · Bellur · 2009 [cited by examiner]
US 20090260057A1 · Labertaeux · 2009 [cited by applicant]
US 20110191581A1 · Shim · 2011 [cited by applicant]
US 20110213968A1 · Zhang · 2011 [cited by examiner]
US 20130067220A1 · Ando · 2013 [cited by examiner]
US 20150222632A1 · Ichijo · 2015 [cited by applicant]
US 20160087972A1 · Ahmavaara · 2016 [cited by examiner]
US 20170222990A1 · Romansky · 2017 [cited by applicant]
US 20180004933A1 · Nathanson · 2018 [cited by applicant]
US 20180107532A1 · Park · 2018 [cited by examiner]
US 20180176209A1 · Narayanan · 2018 [cited by examiner]
US 20190044738A1 · Liu · 2019 [cited by examiner]
US 20190312738A1 · Barrett · 2019 [cited by examiner]
US 20190379548A1 · Barrett · 2019 [cited by examiner]
US 20190392716A1 · Lu · 2019 [cited by examiner]
US 20200242922A1 · Dulberg · 2020 [cited by examiner]
US 20210084461A1 · Kim · 2021 [cited by examiner]
US 20210144003A1 · Arzelier · 2021 [cited by examiner]
US 20210168609A1 · Nishimura · 2021 [cited by examiner]
US 20210176080A1 · Li · 2021 [cited by examiner]
DE 102015210275A1 · 2016 [cited by applicant]
EP 2582088A2 · 2013 [cited by examiner]
TW 201532472A · 2015 [cited by applicant]
WO 2018150546A1 · 2018 [cited by applicant]
Raya et al, Securing Vehicular Communications, IEEE, vol. 13, issue 6, Oct. 2006, pp. 8-15. (Year: 2006). [cited by examiner]
Whitefield ett al, Privacy-Enhanced Capabilities for VANETs Using Direct Anonymous Attestation, IEEE, Nov. 29, 2017, pp. 123-130. (Year: 2017). [cited by examiner]
Rao et al, Secure V2V Communication with Certificate Revocatio, IEEE, Jun. 2007, pp. 127-132. (Year: 2007). [cited by examiner]
Monteuuis et al, Securing PKI Requests for C-ITS Systems, IEEE, Jul. 31, 2007, pp. 1-8. (Year: 2007). [cited by examiner]
Rao et al., Secure V2V Communication with Certificate Revocations, May 11, 2007, IEEE, pp. 127-132. (Year: 2007). [cited by examiner]
Papapanagiotou et al, A Certificate Validation Protocol for Vanets, Nov. 30, 2007, IEEE, pp. 1-9. (Year: 2007). [cited by examiner]
IEEE Standards Association, IEEE Standard; IEEE 802.Nov. 2016: “IEEE Standard for Information technology—Telecommunications and information exchange between systems Local and metropolitan area networks—Specific requirem… [cited by applicant]
3rd Generation Partnership Project, 3GPP Standard; 3GPP TS 23.401: “General Packet Radio Service (GPRS) enhancements for Evolved Universal Terrestrial Radio Access Network (E-UTRAN) access”, Version 16.0.0, Sep. 17, 201… [cited by applicant]
3rd Generation Partnership Project, 3GPP Standard; 3GPP TS 23.501: “Sustem Architecture for the 5G System”, Version 15.3.0, Sep. 17, 2018. [cited by applicant]
3rd Generation Partnership Project, 3GPP Standard; 3GPP TS 23.285: “Architecture enhancements for V2X services”, Version 15.1.0, Jun. 19, 2018. [cited by applicant]
IEEE Standards Association, IEEE Standard; IEEE 1609.2-2016: “IEEE Standard for Wireless Access in Vehicular Environments—Security Services for Applications and Management Messages”, published Mar. 1, 2016. [cited by applicant]
Camp LLC—Vehicle Safety Communications 5 Consortium, “Security Credential Management System Proof-of-Concept Implementation: EE Requirements and Specifications Supporting SCMS Software Release 1.1”, May 4, 2016. [cited by applicant]
Camp LLC—Vehicle Safety Communications 5 Consortium, “Security Credential Management System Proof-of-Concept Implementation: EE Requirements and Specifications Supporting SCMS Software Release 1.2.2”, Nov. 15, 2016. [cited by applicant]
International Telecommunication Union, ITU-T X.509: “Information technology—Open Systems Interconnection—The Directory: Public-key and attribute certificate frameworks”, Oct. 2016. [cited by applicant]
IEEE Standards Association, IEEE Standard; IEEE 802.11p-2010: “IEEE Standard for Information technology—Local and metropolitan area networks—Specific requirements—Part 11: Wireless LAN Medium Access Control (MAC) and Ph… [cited by applicant]
European Telecommunications Standards Institute, European Standard; ETSI TS 102 941: “Intelligent Transport Systems (ITS); Security; Trust and Privacy Management”, No. V1.2.1, May 2018. [cited by applicant]
Internet Engineering Task Force, Request for Comments; IETF RFC 6960: “X.509 Internet Public Key Infrastructure Online Certificate Status Protocol—OCSP”, Jun. 2013. [cited by applicant]
Internet Engineering Task Force, Request for Comments; IETF RFC 6066: “Transport Layer Security (TLS) Extensions: Extension Definitions”, Jan. 2011. [cited by applicant]
Internet Engineering Task Force, Request for Comments; IETF RFC 6961: “The Transport Layer Security (TLS) Multiple Certificate Status Request Extension”, Jun. 2013. [cited by applicant]
European Telecommunications Standards Institute, European Standard; ETSI EN 302 637-2: “Intelligent Transport Systems (ITS); Vehicular Communications; Basic Set of Applications; Part 2: Specification of Cooperative Awar… [cited by applicant]
European Telecommunications Standards Institute, European Standard; ETSI EN 302 637-3: “Intelligent Transport Systems (ITS); Vehicular Communications; Basic Set of Applications; Part 3: Specifications of Decentralized E… [cited by applicant]
IEEE Standards Association, IEEE Standard; IEEE 1609.3-2016: “IEEE Standard for Wireless Access in Vehicular Environments (WAVE)—Networking Services”, published Apr. 29, 2016. [cited by applicant]
European Telecommunications Standards Institute, European Standard; ETSI EN 302 665: “Intelligent Transport Systems (ITS); Communications Architecture”, No. V1.1.1, Sep. 2010. [cited by applicant]
Patent Cooperation Treaty, Written Opinion of the International Searching Authority for International application No. PCT/CA2019/051285 dated Nov. 14, 2019 (6 pages). [cited by applicant]
Tuladhar et al, “Efficient and Scalable Certificate Revocation List Distribution in Hierarchical VANETs” 2018 IEEE International Conference on Electro/Information Techology (EIT), May 3, 2018, [online], retrieved on Dec… [cited by applicant]
Patent Cooperation Treaty, International Search Report for International application No. PCT/CA2019/051285 dated Nov. 14, 2019 (4 pages). [cited by applicant]
Khodaei et al, “Efficient, Scalable, and Resilient Vehicle-Centric Certificate Revocation List Distribution in VANETs,” WiSec '18, Proceedings of the 11th ACM Conference on Security and Privacy in Wireless and Mobile Ne… [cited by applicant]
Intellectual Property India, Examination Report, Patent Application No. 202147013724, dated Dec. 7, 2022, pp. 1-8. [cited by applicant]
First Office Action issued in corresponding Chinese Patent Application No. 201980063862.X, on Jul. 1, 2023, 10 Pages. [cited by applicant]
Office Action issued in corresponding Canadian Patent Application No. 3111028, mailed Oct. 18, 2023, 4 pages. [cited by applicant]