IP Library Granted Patent US 8,238,558
Granted Patent B2
US 8,238,558 · App. 13/304,382 · Granted Aug 7, 2012

Key agreement and re-keying over a bidirectional communication path

Assignee: Research In Motion Limited
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,238,558
App. No.
13/304,382
Granted
Aug 7, 2012
Kind
B2
Abstract

A key agreement method is carried out by a first system in conjunction with a second system over a bidirectional communication path, including generating a first key pair having a first public key and a first private key, sending the first public key to the second system, receiving a second public key generated by the second system, and calculating a master key based upon the first private key, the second public key, a long-term private key, and a long-term public key. The long-term private key was generated by the first system during a previous key-agreement method as part of a long-term key pair. The long-term public key was generated by the second system and received during the previous key-agreement method. The previous key-agreement method required a secret to be known to the first system and the second system, thus conferring authentication based on the secret to the long-term public key.

Claims (53)

1. A method of key confirmation carried out by a first system in conjunction with a second system over a bidirectional communication path between the first system and the second system, the method comprising:

calculating a value in a known manner using a master key, the master key having been calculated at the first system based upon (i) a first private key generated by the first system as part of a first key pair, (ii) a second public key generated by the second system and received from the second system, (iii) a long-term private key generated by the first system as part of a long-term key pair during a previous key-agreement method with the second system, and (iv) a long-term public key generated by the second system and received from the second system during the previous key-agreement method;

receiving a key confirmation value from the second system; and

determining whether the calculated value is identical to the key confirmation value received from the second system,

wherein the previous key-agreement method required a secret to be known to the first system and to the second system, thus conferring authentication based on the secret to the long-term public key, and

wherein the first public key, the second public key, the long-term public key, and a public key of the long-term key pair are all independent of the secret.

2. The method of claim 1 , further comprising:

determining, where the calculated value is identical to the key confirmation value received from the second system, that the second system is in possession of the master key and that the second system calculated the key confirmation value in the known manner using the master key.

3. The method of claim 2 , further comprising:

sending the calculated value to the second system for verification.

4. The method of claim 1 , further comprising:

determining, where the calculated value is not identical to the key confirmation value received from the second system, that the second system is not in possession of the master key or that the second system did not calculate the key confirmation value in the known manner.

5. The method of claim 1 , wherein the first system and the second system have agreed upon a string, and the known manner comprises performing a hash of a combination of the master key and the string.

6. The method of claim 5 , wherein the string comprises a portion of the public key of the long-term key pair.

7. The method of claim 5 , wherein one of the first system and the second system comprises a host system offering one or more services and wherein the string is indicative of the one or more services.

8. The method of claim 2 , further comprising:

using the master key to encrypt one or more messages to be exchanged between the first system and the second system over the bidirectional communication path.

9. A first system for carrying out a key confirmation method in conjunction with a second system over a bidirectional communication path between the first system and the second system, comprising:

means for calculating a value in a known manner using a master key, the master key having been calculated at the first system based upon (i) a first private key generated by the first system as part of a first key pair, (ii) a second public key generated by the second system and received from the second system, (iii) a long-term private key generated by the first system as part of a long-term key pair during a previous key-agreement method, and (iv) a long-term public key generated by the second system and received during the previous key-agreement method;

means for receiving a key confirmation value from the second system; and

means for determining whether the calculated value is identical to the key confirmation value received from the second system,

wherein the previous key-agreement method required a secret to be known to the first system and to the second system, thus conferring authentication based on the secret to the long-term public key, and

wherein the first public key, the second public key, the long-term public key, and a public key of the long-term key pair are all independent of the secret.

10. The first system of claim 9 , further comprising:

means for determining, where the calculated value is identical to the key confirmation value received from the second system, that the second system is in possession of the master key and that the second system calculated the key confirmation value in the known manner using the master key.

11. The first system of claim 10 , further comprising:

means for sending the calculated value to the second system for verification.

12. The first system of claim 9 , wherein the first system and the second system have agreed upon a string, and the known manner comprises performing a hash of a combination of the master key and the string.

13. The first system of claim 9 , further comprising:

means for using the master key to encrypt one or more messages to be exchanged between the first system and the second system over the bidirectional communication path.

14. A first system, comprising:

a memory; and

a processing unit coupled to the memory, wherein the processing unit is configured to carry out a key confirmation method in conjunction with a second system by:

calculating a value in a known manner using a master key, the master key having been calculated at the first system based upon (i) a first private key generated by the first system as part of a first key pair, (ii) a second public key generated by the second system and received from the second system, (iii) a long-term private key generated by the first system as part of a long-term key pair during a previous key-agreement method, and (iv) a long-term public key generated by the second system and received from the second system during the previous key-agreement method;

receiving a key confirmation value from the second system; and

determining whether the calculated value is identical to the key confirmation value received from the second system,

wherein the previous key-agreement method required a secret to be known to the first system and to the second system, thus conferring authentication based on the secret to the long-term public key, and

wherein the first public key, the second public key, the long-term public key, and a public key of the long-term key pair are all independent of the secret.

15. The first system of claim 14 , the processing unit further configured to:

determine, where the calculated value is identical to the key confirmation value received from the second system, that the second system is in possession of the master key and that the second system calculated the key confirmation value in the known manner using the master key.

16. The first system of claim 14 , wherein the first system and the second system have agreed upon a string, and the known manner comprises performing a hash of a combination of the master key and the string.

17. The first system of claim 14 , the processing unit further configured to use the master key to encrypt one or more messages to be exchanged between the first system and the second system over the bidirectional communication path.

18. Computer-readable non-transitory storage medium or mediums encoded with instructions that cause a device with a processor to perform a key confirmation method carried out by a first system in conjunction with a second system over a bidirectional communication path between the first system and the second system, said method comprising:

calculating a value in a known manner using a master key, the master key having been calculated at the first system based upon (i) a first private key generated by the first system as part of a first key pair, (ii) a second public key generated by the second system and received from the second system, (iii) a long-term private key generated by the first system as part of a long-term key pair during a previous key-agreement method, and (iv) a long-term public key generated by the second system and received from the second system during the previous key-agreement method;

receiving a key confirmation value from the second system; and

determining whether the calculated value is identical to the key confirmation value received from the second system,

wherein the previous key-agreement method required a secret to be known to the first system and to the second system, thus conferring authentication based on the secret to the long-term public key, and

wherein the first public key, the second public key, the long-term public key, and a public key of the long-term key pair are all independent of the secret.

19. The computer-readable non-transitory storage medium or mediums of claim 18 , wherein the key confirmation method further comprises:

determining, where the calculated value is identical to the key confirmation value received from the second system, that the second system is in possession of the master key and that the second system calculated the key confirmation value in the known manner using the master key.

20. The computer-readable non-transitory storage medium or mediums of claim 18 , wherein the first system and the second system have agreed upon a string, and the known manner comprises performing a hash of a combination of the master key and the string.

21. The computer-readable non-transitory storage medium or mediums of claim 18 , wherein the key confirmation method further comprises:

using the master key to encrypt one or more messages to be exchanged between the first system and the second system over the bidirectional communication path.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE ADDED PATENT NUMBER TO REMOVE PATENT NO. 8,873,407 AT PREVIOUSLY RECORDED ON REEL 64066 FRAME 1. ASSIGNOR(S) HEREBY CONFIRMS THE NUNC PRO TUNC ASSIGNMENT EFFECTIVE DATE MARCH 20, 2023. Recorded Feb 2, 2026
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 074921/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE COVER SHEET AT PAGE 50 TO REMOVE 12817157 PREVIOUSLY RECORDED ON REEL 063471 FRAME 0474. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064806/0669 →
CORRECTIVE ASSIGNMENT TO CORRECT 12817157 APPLICATION NUMBER PREVIOUSLY RECORDED AT REEL: 064015 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064807/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064066/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 063471/0474 →
CHANGE OF NAME Recorded Oct 24, 2014
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 034045/0741 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2011
From: LITTLE, HERBERT A; BROWN, MICHAEL K
To: RESEARCH IN MOTION LIMITED
Reel/Frame 027308/0178 →
Continuity (5)
Continuation 12973485 · Dec 20, 2010
Continuation 11093954 · Mar 30, 2005
Provisional Application 60559646 · Apr 5, 2004
Provisional Application 60559092 · Apr 2, 2004
Related Publication 20120063599A1 · Mar 15, 2012