SECURE AND EFFICIENT DOMAIN KEY DISTRIBUTION FOR DEVICE REGISTRATION
First Claim
Patent Images
1. A method of transferring a domain key between a first device and a second device in a network, the method comprising:
- verifying the second device and the first device are authorized devices through certificates;
receiving a first random number from the second device, wherein the first random number is encrypted;
determining a second random number at the first device;
sending the second random number from the first device to the second device;
determining a Personal Identification Number (PIN) at the first device;
instructing entry of the PIN in the second device;
generating a session key from the first random number, the second random number, and the PIN; and
sending the domain key encrypted with the session key from one device to the other device.
4 Assignments
0 Petitions
Accused Products
Abstract
A domain key is securely distributed from a device in an existing network to a device outside the network. Each device generates the session key on its own using the first random number, the second random number, the Personal Identification Number, and the same key generation function. The device in the existing network sends the domain key encrypted with the session key to the other device.
77 Citations
20 Claims
-
1. A method of transferring a domain key between a first device and a second device in a network, the method comprising:
-
verifying the second device and the first device are authorized devices through certificates; receiving a first random number from the second device, wherein the first random number is encrypted; determining a second random number at the first device; sending the second random number from the first device to the second device; determining a Personal Identification Number (PIN) at the first device; instructing entry of the PIN in the second device; generating a session key from the first random number, the second random number, and the PIN; and sending the domain key encrypted with the session key from one device to the other device. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12)
-
-
13. A computer readable storage medium storing at least one computer program that when executed performs a method of transferring a domain key during a device registration between a first device and a second device in a network, the method comprising:
-
verifying the second device and the first device are authorized devices through certificate verification; receiving a first random number from the second device, wherein the first random number is encrypted; determining a second random number at the first device; sending the second random number from the first device to the second device; determining a Personal Identification Number (PIN) at the first device; instructing entry of the PIN in the second device; generating a session key from the first random number, the second random number, and the PIN; and sending the domain key encrypted with the session key from one device to the other device. - View Dependent Claims (14, 15, 16, 17, 18, 19)
-
-
20. A device configured to communicate with a new device in a wireless network, the device comprising:
-
an interface configured to wirelessly transfer a domain key for the new device, wherein the domain key is encrypted at the device and is decrypted at the new device; a processor configured to randomly generate a PIN, wherein the processor is further configured to derive a session key of the device and a session key of the new device, and to exchange and verify the session keys; and a data storage storing the PIN, the session keys and the domain key.
-
Specification