AP626A

Cryptographic system and method with key escrow feature.

Abstract

The invention provides a cryptographic system and method with key escrow feature that uses a method for verifiably splitting users, private encryption keys into components and for sending those componets to trusted agents chosen by the particular users, and provides a system that uses modern public key certificate management, enforced by chip device that also self-certifies.

AP626A, drawing sheet 1
Sheet 1 of 28

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Granted
  4. Today

17 claims: 17 independent, 0 dependent

  1. 1
    What is claimed is:1. A method for generating verifiably trusted communication among a plurality of users, comprising the steps of: 5 escrowing at a trusted escrow center a plurality of secret asymmetric cryptographic keys to be used by a plurality of users;verifying each of said plurality of keys at the escrow center;10 certifying [the authorization of] each of said plurality of keys upon verification;and initiating a communication from each of said plurality of users using a respective one of said plurality of keys contingent upon said certification. 15
  2. 2
    A method for generating verifiably trusted communications among a plurality of users, comprising the steps of:escrowing at a trusted escrow center an asymmetric cryptographic key associated with each of a plurality of 20 users;verifying each of the keys at the escrow center;certifying each of the keys upon verification;and initiating a secure communicatioiH¥rom an initiating user to a receiving user contingent upon certification of 25 keys of both the initiating and receiving users.
  3. 3
    A method for generating verifiably trusted communications among a plurality of users with selective non-party access, comprising the steps of:escrowing, at a trusted escrow center, asymmetric 30 cryptographic keys associated with a plurality of users, AP/P/ 9 6 / 0 08 1 1 AP. Ο Ο 6 2 6 each user associated with at least one key and at least a first selectable non-party to have access to the user's communications;verifying the keys at the escrow center;5 certifying each of the keys upon verification;initiating a trusted communication from a sending user to a recipient in a manner that permits access to the communication by the first non-party.
  4. 4
    A method for secure communication in a system 10 having at least one communicating party and a message key that is recoverable by one not a party to the communication, the method comprising steps of:providing each user with a computer hardware device;registering hardware devices with a center in 15 accordance with control information determined by a device owner distinct from a device user;certifying hardware devices, each certification generating a certificate associating a center, a user, and a hardware device;20 initiating a secure communication from an initiating user to a recipient using a message key in a manner that permits the owner to access the communication.
  5. 5
    A method for generating verifiably trusted communications among a plurality of users with third 25 party access, comprising the steps of:escrowing with at least one of a plurality of escrow centers an asymmetric cryptographic key associated with each of a plurality of users;verifying the keys at the escrow center;30 certifying each of the keys upon verification;AP/P/ 9
  6. 6
    6 / 0 08 1 1 AP.00626 initiating a trusted communication from a sending user to a receiving user using a verified key, said communication including information to recover a key of the initiating user and a key of the receiving user. 5 6. A method for generating verifiably trusted communications among a plurality of users comprising steps of:manufacturing electronic hardware devices, each device controlled by tamper-proof logic;and 10 initiating a secure communication from an initiating device to a recipient, said communication including access information signed by the initiating device and containing information to permit access to the communication by an outside party. 15
  7. 7
    A method for generating verifiably trusted communications among a plurality of users, comprising the steps of:escrowing at an escrow center an asymmetric cryptographic key associated with each of a plurality of 20 users;verifying the keys at the escrow center;certifying each of the keys upon verification;and initiating a communication from an initiating user to a receiving user contingent upon a trusted device of 25 the initiating user confirming certification of keys of the sending and receiving users.
  8. 8
    A method for generating verifiably trusted communications among a plurality of users, comprising the steps of:AP/P/ 9 6/ 008 1 1 AP.00626 escrowing at a trusted escrow center an asymmetric cryptographic key associated with each of a plurality of users;verifying the keys at the escrow center;5 certifying each of the keys upon verification;and initiating a communication from an initiating user to a receiving user contingent upon certification of a key used in the communication, said communication containing access information that permits access to the 10 communication by an outside party.
  9. 9
    A method for generating verifiably trusted communications among a plurality of users, comprising the steps of:escrowing at a trusted escrow center an asymmetric 15 cryptographic key associated with each of a plurality of users;verifying the keys at the escrow center;certifying each of the keys upon verification and a trusted device associated with each user;and 20 initiating a communication from an initiating user to a recipient after certification of a key used for the communication and after confirmation of attributes of a trusted device associated with the initiating user.
  10. 10
    A method for generating verifiably trusted 25 communications among a plurality of users, comprising the steps of:escrowing, at trusted escrows centers, asymmetric cryptographic keys associated with a plurality of users, ones of said escrow centers belonging to a first group, 30 others of said escrow centers belonging to a second group;AP/P/ 9 6 / 0 08 1 1 AP . 0 0 6 2 6 verifying the keys at the escrow centers;certifying each of the keys upon verification;and communicating between a first user and a second user contingent upon the groups to which the escrow centers of 5 sending and receiving users belong.
  11. 11
    A method for generating verifiably trusted, stream oriented communications among a plurality of users, comprising the steps of:escrowing at a trusted escrow center an asymmetric 10 cryptographic key associated with each of a plurality of users;verifying each of the keys at the escrow center;certifying each of the keys upon verification;and generating a stream oriented communication from an 15 initiating user to a receiving user, said communication comprising (a) an initial packet having access information to allow an outside party to have access to the stream, and (b) a stream of subsequent packets, each subsequent packet containing information identifying the 20 subsequent packet as associated with the stream.
  12. 12
    A method of upgrading firmware of a trusted device, comprising steps of:embedding within the trusted device a key associated with a firmware source;25 communicating firmware to the trusted device, said communication modified by the firmware source in a manner that can be confirmed using the embedded key;and incorporate the firmware into the trusted device contingent upon confirmation of the communication using 30 the embedded key. 1 1 8 0 0 / 9 6 /d/dV AP. Ο Ο 6 2 6
  13. 13
    A method for encrypted communication in a system having communicating parties and a message key that is recoverable by one not a party to the communication, the method comprising steps of:5 providing each user with a computer hardware device having at least one device-associated key;registering hardware devices with at least a selected one of a plurality of centers;certifying the hardware devices, said certification 10 generating a certificate for a device;initiating a secure communication from an initiating / user to a recipient using a message key, said > communication containing an access portion encrypted by a key of the center to recover the message key.
  14. 14
    15 14. A method of authorizing a trusted device to conduct an electronic transaction between a first user and a second party, and providing assurance that said trusted device will engage in said electronic transaction in accordance with predetermined rules which cannot be
  15. 15
    20 changed by said user, said method comprising:electronically transmitting from said trusted device to a third party a request for authorization to engage in said electronic transaction, said request including the identity of s^-id trusted device;
  16. 16
    25 determining, by said third party, that said trusted device should be authorized to engage in said transaction at least in part in accordance with a determination that said trusted device will operate only in accordance with said rules;
  17. 17
    30 electronically transmitting from said third party to said trusted device authorization to engage in said electronic transaction, said authorization including AP/P/ 9 6 / 0 08 1 1 AP.00626 certification that said third party provided said authorization;electronically transmitting from said trusted device to said second party said certification as 5 assurance that said trusted device is authorized to engage in said electronic transaction and will do so only in accordance with said rules;electronically transmitting transaction data from said trusted device to said second party in 10 accordance with said rules. AP/P/ 9 6 / 0 0 8 1 1
Independent claims17