Invention Application
WO2017007725A1 APPARATUS AND METHOD FOR ESTABLISHING SECURE COMMUNICATION CHANNELS IN AN INTERNET OF THINGS (IOT) SYSTEM 审中-公开
在互联网(IOT)系统中建立安全通信信道的装置和方法

  • Patent Title: APPARATUS AND METHOD FOR ESTABLISHING SECURE COMMUNICATION CHANNELS IN AN INTERNET OF THINGS (IOT) SYSTEM
  • Patent Title (中): 在互联网(IOT)系统中建立安全通信信道的装置和方法
  • Application No.: PCT/US2016/040819
    Application Date: 2016-07-01
  • Publication No.: WO2017007725A1
    Publication Date: 2017-01-12
  • Inventor: BRITT, JoeZAKARIA, OmarZIMMERMAN, Scott
  • Applicant: AFERO, INC.
  • Applicant Address: 4970 El Camino Real Suite 210 Los Altos, California 94022 US
  • Assignee: AFERO, INC.
  • Current Assignee: AFERO, INC.
  • Current Assignee Address: 4970 El Camino Real Suite 210 Los Altos, California 94022 US
  • Agency: WEBSTER, Thomas
  • Priority: US14/791,371 20150703; US14/791,373 20150703
  • Main IPC: G06F21/60
  • IPC: G06F21/60 H04L9/14 H04L9/18 H04W84/14
APPARATUS AND METHOD FOR ESTABLISHING SECURE COMMUNICATION CHANNELS IN AN INTERNET OF THINGS (IOT) SYSTEM
Abstract:
An apparatus and method are described for secure communication between IoT devices and an IoT service. For example, one embodiment of a system comprises: an Internet of Things (IoT) service to establish communication with an IoT device through an IoT hub or a mobile user device; a first encryption engine on the IoT service comprising key generation logic to generate a service public key and a service private key; a second encryption engine on the IoT device comprising key generation logic to generate a device public key and a device private key; the first encryption engine to transmit the service public key to the second encryption engine and the second encryption engine to transmit the device public key to the first encryption engine; the first encryption engine to use the device public key and the service private key to generate a secret; the second encryption engine to use the service public key and the device private key to generate the same secret; and wherein once the secret is generated, the first encryption engine and the second encryption engine encrypt and decrypt data packets transmitted between the first encryption engine and the second encryption engine using the secret or using a data structure derived from the secret.
Patent Agency Ranking
0/0