IP Library Granted Patent US 8,527,767
Granted Patent B2
US 8,527,767 · App. 12/916,929 · Granted Sep 3, 2013

System and method for processing encoded messages for exchange with a mobile data communication device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,527,767
App. No.
12/916,929
Granted
Sep 3, 2013
Kind
B2
Abstract

A system and method are provided for pre-processing encrypted and/or signed messages at a host system before the message is transmitted to a wireless mobile communication device. The message is received at the host system from a message sender. There is a determination as to whether any of the message receivers has a corresponding wireless mobile communication device. For each message receiver that has a corresponding wireless mobile communication device, the message is processed so as to modify the message with respect to one or more encryption and/or authentication aspects. The processed message is transmitted to a wireless mobile communication device that corresponds to the first message receiver. The system and method may include post-processing messages sent from a wireless mobile communications device to a host system. Authentication and/or encryption message processing is performed upon the message. The processed message may then be sent through the host system to one or more receivers.

Claims (45)

1. A method for processing an encrypted message at a host system before the encrypted message is transmitted to a communication device, the method comprising:

receiving the encrypted message at the host system, the encrypted message comprising an encrypted message portion and at least one encrypted session key;

extracting, from the encrypted message, a selected one of the at least one encrypted session key, wherein the selected encrypted session key is associated with the communication device;

transmitting a message comprising the selected encrypted session key to the communication device;

receiving a decrypted session key from the communication device, wherein the selected encrypted session key was decrypted at the communication device to obtain the decrypted session key;

decrypting the encrypted message portion at the host system using the decrypted session key to generate a decrypted message portion;

processing the decrypted message portion;

after processing the decrypted message portion, re-encrypting the decrypted message portion at the host system to generate a re-encrypted message; and

transmitting the re-encrypted message to the communication device.

2. The method of claim 1 , wherein the encrypted message portion comprises a message that was signed and then encrypted, wherein the encrypted message portion comprises an encrypted digital signature, and wherein the processing comprises decrypting the encrypted digital signature to generate a decrypted digital signature.

3. The method of claim 2 , further comprising verifying the decrypted digital signature at the host system.

4. The method of claim 3 , further comprising modifying the decrypted message portion to comprise an indication that the decrypted message portion had been signed.

5. The method of claim 3 , further comprising modifying the decrypted message portion to comprise an indication of whether the decrypted digital signature was verified.

6. The method of claim 1 , wherein the encrypted message comprises a message that was encrypted and then signed, wherein the encrypted message comprises a non-encrypted digital signature, and wherein the processing comprises verifying the decrypted digital signature at the host system.

7. The method of claim 6 , further comprising modifying the decrypted message portion to comprise an indication that the decrypted message portion had been signed.

8. The method of claim 6 , further comprising modifying the decrypted message portion to comprise an indication of whether the decrypted digital signature was verified.

9. The method of claim 1 , wherein the communication device is a mobile device.

10. A system for processing an encrypted message before the encrypted message is transmitted to a communication device, the system comprising:

a memory; and

a processor, the processor configured to:

receive the encrypted message at the system, the encrypted message comprising an encrypted message portion and at least one encrypted session key;

extract, from the encrypted message, a selected one of the at least one encrypted session key, wherein the selected encrypted session key is associated with the communication device;

transmit a message comprising the selected encrypted session key to the communication device;

receive a decrypted session key from the communication device, wherein the selected encrypted session key was decrypted at the communication device to obtain the decrypted session key;

decrypt the encrypted message portion at the system using the decrypted session key to generate a decrypted message portion;

process the decrypted message portion;

after processing the decrypted message portion, re-encrypt the decrypted message portion at the system to generate a re-encrypted message; and

transmit the re-encrypted message to the communication device.

11. The system of claim 10 , wherein the encrypted message portion comprises a message that was signed and then encrypted, wherein the encrypted message comprises an encrypted digital signature, and wherein processing the decrypted message portion comprises decrypting the encrypted digital signature to generate a decrypted digital signature.

12. The system of claim 11 , wherein the processor is further configured to verify the decrypted digital signature at the host system.

13. The system of claim 12 , wherein the processor is further configured to modify the decrypted message portion to comprise an indication that the decrypted message had been signed.

14. The system of claim 12 , wherein the processor is further configured to modify the decrypted message portion to comprise an indication of whether the decrypted digital signature was verified.

15. The system of claim 10 , wherein the encrypted message comprises a message that was encrypted and then signed, and wherein the encrypted message comprises a non-encrypted digital signature, and wherein processing the decrypted message portion comprises verifying the decrypted digital signature at the host system.

16. The system of claim 15 , wherein the processor is further configured to modify the decrypted message portion to comprise an indication that the decrypted message portion had been signed.

17. The system of claim 15 , wherein the processor is further configured to modify the decrypted message portion to comprise an indication of whether the decrypted digital signature was verified.

18. The system of claim 10 , wherein the communication device is a mobile device.

19. A non-transitory computer readable medium storing instructions executable by a processor of a mobile device, the instructions when executed for carrying out a method for processing an encrypted message at a host system before the encrypted message is transmitted to a communication device, the method comprising:

receiving the encrypted message at the host system, the encrypted message comprising an encrypted message portion and at least one encrypted session key;

extracting, from the encrypted message, a selected one of the at least one encrypted session key, wherein the selected encrypted session key is associated with the communication device;

transmitting a message comprising the selected encrypted session key to the communication device;

receiving a decrypted session key from the communication device, wherein the selected encrypted session key was decrypted at the communication device to obtain the decrypted session key;

decrypting the encrypted message portion at the host system using the decrypted session key to generate a decrypted message portion;

processing the decrypted message portion;

after processing the decrypted message portion, re-encrypting the decrypted message portion at the host system to generate a re-encrypted message; and

transmitting the re-encrypted message to the communication device.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 16, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064007/0061 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
CHANGE OF NAME Recorded Jul 25, 2013
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 030889/0726 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 14, 2011
From: BROWN, MICHAEL S.; ADAMS, NEIL P.; BROWN, MICHAEL K.; KIRKUP, MICHAEL G.; LITTLE, HERBERT A.
To: RESEARCH IN MOTION LIMITED
Reel/Frame 025639/0422 →