IP Library Granted Patent US 7,216,237
Granted Patent B2
US 7,216,237 · App. 09/905,113 · Granted May 8, 2007

System and method for trusted communication

Assignee: Certicom Corp.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,216,237
App. No.
09/905,113
Granted
May 8, 2007
Kind
B2
Abstract

A method of establishing a trusted path of data and a method of verifying the integrity of data presented for signing to a user of the personalized device in a public-key cryptographic scheme. The method comprises establishing a trusted path between the user and secure module residing on the personalized device. The secure module holds the user's private key, displays information about the data message directly to the user, and generates the signature only when instructed to do so. The decision whether or not to sign the data message is determined by the user.

Claims (21)

1. A method of verifying data integrity between at least two correspondents in a cryptographic scheme, at least one of said at least two correspondents having a main processor and a secure module, said secure module being independently operative of said main processor, said method comprising the steps of:

assembling data on at least one of said at least two correspondents;

displaying said data under control of said main processor to produce a first output;

forwarding said data to said secure module and displaying said data from said secure module to produce a second output to permit comparison of said first output and said second output; and

instructing said secure module to generate a signature on said data upon a favorable comparison of said first output and said second output;

whereby said favorable comparison indicates data integrity such that said at least one of said correspondents signs said data.

2. The method of claim 1 , wherein said at least one of said at least two correspondents is a personalized device.

3. The method of claim 2 , wherein said personalized device is a mobile phone.

4. The method of claim 2 , wherein said personalized device is a personal digital assistant.

5. The method of claim 1 , wherein said favorable comparison is characterized in that said first output and said second output are logically related to one another.

6. The method of claim 5 , wherein said logical relationship is such that said first output and said second output are identical.

7. The method of claim 1 , wherein said step of displaying said data message includes displaying a portion of said data message.

8. The method of claim 7 , wherein said favorable comparison is characterized in that a portion of said first output and a portion of said second output are logically related to one another.

9. The method of claim 8 , wherein said logical relationship is such that said portion of said first output is identical to said portion of said second output.

10. A method of establishing a trusted communication path for data between a personalized device and a user of said device in a cryptographic scheme, said device having a main processor and a secure module independently operative of said main processor, said method comprising the steps of:

providing an interface between said device and said user, said interface having an input device and an output device for providing a means for interaction between said user and said device, said input device and said output device controllable by said main processor;

providing a trusted communication path between said secure module and a secure input device and a secure output device coupled thereto, said trusted path logically isolated from any other communication path;

assembling data at said input device and said secure module and forwarding said data to said secure output device over said trusted communication path; and

displaying said data on said output device and said secure output device, to permit comparison of said data displayed on said output device and said secure output device;

whereby said user of said personalized device can determine said integrity of said data based on said comparison.

11. The method of claim 10 , wherein said user actuates said secure input device based only on said output of said secure output device.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE ADDED PATENT NUMBER TO REMOVE PATENT NO. 8,873,407 AT PREVIOUSLY RECORDED ON REEL 64066 FRAME 1. ASSIGNOR(S) HEREBY CONFIRMS THE NUNC PRO TUNC ASSIGNMENT EFFECTIVE DATE MARCH 20, 2023. Recorded Feb 2, 2026
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 074921/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT 12817157 APPLICATION NUMBER PREVIOUSLY RECORDED AT REEL: 064015 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064807/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE COVER SHEET AT PAGE 50 TO REMOVE 12817157 PREVIOUSLY RECORDED ON REEL 063471 FRAME 0474. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064806/0669 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064066/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 063471/0474 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 2, 2019
From: CERTICOM CORP.
To: BLACKBERRY LIMITED
Reel/Frame 050610/0937 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2001
From: VANSTONE, SCOTT A.
To: CERTICOM CORP.
Reel/Frame 012323/0061 →
Continuity (1)
Related Publication 20030014632A1 · Jan 16, 2003