×

Methods and apparatus for establishing a secure communication channel

  • US 9,930,035 B2
  • Filed: 06/22/2017
  • Issued: 03/27/2018
  • Est. Priority Date: 07/03/2014
  • Status: Active Grant
First Claim
Patent Images

1. A method by an embedded Universal Integrated Circuit Card (eUICC), the method comprising:

  • at the eUICC, which is associated with a long-term public key (PKeUICC) and a long-term private key (SKeUICC);

    transmitting, to a server via a wireless device, a request to establish a first secure connection with the server, wherein the eUICC is present in the wireless device, and wherein the server is associated with a long-term public key (PKserver) and a long-term private key (SKserver);

    producing a signature by using SKeUICC;

    sending the signature to the server via the wireless device;

    authenticating the server using PKserver;

    generating an ephemeral public key (ePKeUICC) and an ephemeral private key (eSKeUICC);

    signing ePKeUICC using SKeUICC to produce a signed ePKeUICC;

    providing the signed ePKeUICC to the server via the wireless device;

    receiving, from the server via the wireless device, an ephemeral key (ePKsewer) that is signed using SKserver;

    generating a shared symmetric key using SKeUICC and ePKserver;

    storing, within a security domain of the eUICC, the shared symmetric key;

    establishing, at a first time, the first secure connection using the shared symmetric key; and

    using, at a second time subsequent to the first time, the shared symmetric key to communicate with the server over a second secure connection.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×