IP Library › Granted Patent US 8,699,710
Granted Patent B2
US 8,699,710 · App. 13/360,337 · Granted Apr 15, 2014

Controlled security domains

Inventor: David Everett (Rustington, GB)
Assignee: Royal Canadian Mint/Monnaie Royale Canadienne
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,699,710
App. No.
13/360,337
Granted
Apr 15, 2014
Kind
B2
Abstract

A security domain control method includes defining a sequential series of security domains; designating one of the security domains as a current domain; generating a plurality of security tokens under the current security domain, each security token being configured to enable a party to exchange cryptographically secured messages with another party that is holding any one of: a token generated under the current security domain; a token generated under at least one next security domain in the series; and a token generated under at least one previous security domain in the series; and subsequently designating a next one of the security domains in the series as a current domain.

Claims (10)

1. A method of controlling secure system, the method comprising:

a host server defining a series of security domains;

the host server sequentially designating each one of the series of security domains as a current domain, such that only one of the series of security domains is the current domain at any given time; and

the host server generating a plurality of security tokens under the current security domain, each security token being configured to enable a first party to exchange cryptographically secured messages with a second party that is holding a token generated under the current security domain; a third party that is holding a token generated under a next security domain in the series; and a fourth party that is holding a token generated under a previous security domain in the series.

2. The method as claimed in claim 1 , wherein each security token is configured to enable a party to exchange cryptographically secured messages with another party that is holding a token generated under two previous security domains in the series.

3. The method as claimed in claim 1 , wherein each security domain is defined using Public Key Infrastructure (PKI), and comprises a respective public key.

4. The method as claimed in claim 3 , wherein each security token comprises the respective public key of each one of the current security domain; the next security domain in the series; and the previous security domain in the series.

5. The method as claimed in claim 4 , wherein each security token further comprises the respective public key of a second previous security domain in the series.

6. The method as claimed in claim 1 , further comprising automatically updating a user's security token when the user logs into a secure server.

7. A non-transitory computer-readable medium comprising machine-readable software instructions for controlling a computer to implement the method of claim 1 .

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 26, 2016
From: ROYAL CANADIAN MINT
To: LOYALTY PAYS HOLDINGS CORPORATION
Reel/Frame 037581/0811 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 27, 2012
From: EVERETT, DAVID
To: ROYAL CANADIAN MINT/MONNAIE ROYALE CANADIENNE
Reel/Frame 027939/0011 →
Continuity (2)
Provisional Application 61437147 · Jan 28, 2011
Related Publication 20120257751A1 · Oct 11, 2012