-
公开(公告)号:US20230291576A1
公开(公告)日:2023-09-14
申请号:US17654645
申请日:2022-03-14
Applicant: MOTOROLA SOLUTIONS, INC.
Inventor: Pawel Wrobel , Andrzej Grzesik , Pawel Fafara
CPC classification number: H04L9/3268 , H04L9/006
Abstract: A process of issuing a limited-use electronic certificate. In operation, a public key infrastructure (PKI) device receives a request for an electronic certificate from an end entity. The PKI device detects an anomaly with respect to the request received from the end entity. The PKI device generates, based on the detected anomaly, a limited-use electronic certificate. The PKI then issues the limited-use electronic certificate to the end entity. When the end entity determines that the issued certificate is a limited-use certificate with limited-use attributes such as a shortened validity period or lowered assurance level, the end entity provides a visual and/or audio prompt indicating the issuance of the limited-use certificate and further including one or more corrective actions to be performed to eliminate the anomaly prior to sending a new request for an electronic certificate to the PKI device.
-
公开(公告)号:US12041184B2
公开(公告)日:2024-07-16
申请号:US17654645
申请日:2022-03-14
Applicant: MOTOROLA SOLUTIONS, INC.
Inventor: Pawel Wrobel , Andrzej Grzesik , Pawel Fafara
CPC classification number: H04L9/3268 , H04L9/006
Abstract: A process of issuing a limited-use electronic certificate. In operation, a public key infrastructure (PKI) device receives a request for an electronic certificate from an end entity. The PKI device detects an anomaly with respect to the request received from the end entity. The PKI device generates, based on the detected anomaly, a limited-use electronic certificate. The PKI then issues the limited-use electronic certificate to the end entity. When the end entity determines that the issued certificate is a limited-use certificate with limited-use attributes such as a shortened validity period or lowered assurance level, the end entity provides a visual and/or audio prompt indicating the issuance of the limited-use certificate and further including one or more corrective actions to be performed to eliminate the anomaly prior to sending a new request for an electronic certificate to the PKI device.
-
公开(公告)号:US11652625B2
公开(公告)日:2023-05-16
申请号:US17303982
申请日:2021-06-11
Applicant: MOTOROLA SOLUTIONS, INC.
Inventor: Gary P Hunsberger , Chris A Kruegel , Kenneth C Fuchs , Pawel Fafara , Brian W Pruss , Jakub Trojanek
IPC: H04L9/08 , H04W12/0431 , H04W12/041
CPC classification number: H04L9/0891 , H04L9/083 , H04L9/0822 , H04L9/0825 , H04L9/0866 , H04W12/041 , H04W12/0431
Abstract: A system and process for performing a touchless key provisioning operation for a communication device. In operation, a key management facility (KMF) imports a public key and a public key identifier uniquely identifying the public key of the communication device. The public key is associated with an asymmetric key pair generated at the communication device during its factory provisioning and configuration. The KMF registers the communication device and assigns a key encryption key (KEK) for the communication device. The KMF then provisions the communication device by deriving a symmetric touchless key provisioning (TKP) key based at least in part on the public key of the communication device, encrypting the KEK with the symmetric TKP key to generate a key wrapped KEK, and transmitting the key wrapped KEK to the communication device for decryption by the communication device.
-
-