Security parameter provisioning in an open platform using 3G security infrastructure
First Claim
Patent Images
1. A method comprising:
- authenticating a subscriber identity module (SIM) over a network;
generating a platform secret key for the SIM;
transferring the platform secret key to the SIM;
authenticating a platform running a trusted application using attestation; and
transferring the platform secret key to the platform.
2 Assignments
0 Petitions
Accused Products
Abstract
A method and system for provisioning a shared secret key to enable trusted communications between a SIM and a platform running a trusted application in a third generation or beyond wireless network.
-
Citations
20 Claims
-
1. A method comprising:
-
authenticating a subscriber identity module (SIM) over a network;
generating a platform secret key for the SIM;
transferring the platform secret key to the SIM;
authenticating a platform running a trusted application using attestation; and
transferring the platform secret key to the platform. - View Dependent Claims (2, 3, 4, 5, 6)
-
-
7. A method comprising:
-
receiving a nonce and an attestation request from a mobile network operator over a network;
creating a digital signature including a platform configuration register value and the nonce;
sending the digital signature to the mobile network operator;
receiving a platform secret key from the mobile network operator; and
generating a platform shared secret key from the platform secret key. - View Dependent Claims (8, 9, 10, 11, 12)
-
-
13. A system comprising:
-
a platform to run a trusted application, to receive a first shared key from a bootstrapping server function, and to generate a first shared secret key using the first shared key; and
a subscriber identity module (SIM) communicatively coupled to the platform to receive a second shared key from the bootstrapping server function and to generate a second shared secret key using the second shared key, wherein the first shared secret key and the second shared secret key are identical and enable trusted communication between the platform and the SIM. - View Dependent Claims (14, 15, 16, 17)
-
-
18. An article of manufacture comprising a machine-accessible medium having stored thereon instructions which, when executed by a machine, cause the machine to:
-
authenticate a UMTS subscriber identity module (USIM) over a wireless network;
generate a platform secret key for the USIM;
transfer the platform secret key to the USIM;
run a challenge/response protocol with a platform running a trusted application;
authenticate the platform running the trusted application using attestation; and
transfer the platform secret key to the platform running the trusted application. - View Dependent Claims (19, 20)
-
Specification