CA2877205C

Systems, methods and apparatuses for the application-specific identification of devices

Abstract

The systems, methods and apparatuses described herein provide a computing environment that manages application specific identification of devices. An apparatus according to the present disclosure may comprise a non- volatile storage storing identifier (ID) base data and a processor. The processor may be configured to validate a certificate of an application being executed on the apparatus. The certificate may contain a code signer ID for a code signer of the application. The processor may further be configured to receive a request for a unique ID of the application, generate the unique ID from the code signer ID and the ID base data and return the generated unique ID.

CA2877205C, drawing sheet 1
Sheet 1 of 4

Term

6.8 yearsleft in the term

Expires 26 June 2033.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Expires

100 claims: 12 independent, 88 dependent

  1. 1
    An apparatus, comprising:a non-volatile storage storing device-specific identifier (ID) base data;and a processor configured to: validate a certificate of an application being executed on the apparatus, the certificate containing a code signer ID for a code signer of the application;receive a request for a device-specific unique ID of the application;generate the device-specific unique ID from the code signer ID and the devicespecific ID base data;and return the generated device-specific unique ID.
  2. 6
    An apparatus, comprising:a non-volatile storage storing device-specific key base data;and a processor configured to: validate a certificate of an application being executed on the apparatus, the certificate containing a code signer identifier (ID) for a code signer of the application;receive a request for a ciyptographic operation;and generate an enciyption key from the code signer ID and the device-specific key base data.
  3. 17
    A computer-implemented method, comprising:storing, in a non-volatile storage of an apparatus, device-specific identifier (ID) base data;validating a certificate of an application being executed on the apparatus, the certificate containing a code signer ID for a code signer of the application;receiving a request for a device-specific unique ID of the application;generating the device-specific unique ID from the code signer ID and the ID base data;and returning the generated device-specific unique ID.
  4. 22
    A computer-implemented method, comprising:storing, in a non-volatile storage of an apparatus, device-specific key base data;validating a certificate of an application being executed on the apparatus, the certificate containing a code signer ID for a code signer of the application;receiving a request for a cryptographic operation;and generating an encryption key from the code signer ID and the device-specific key base data.
  5. 33
    An apparatus, comprising:a non-volatile storage storing device-specific identifier (ID) base data;and a processor configured to: CA 2877205 2019-10-31 validate a certificate of an application being executed on the apparatus, the certificate containing an application ID for the application;receive a request for an application-specific unique ID of the application;generate the application-specific unique ID from the application ID and the devicespecific ID base data;and return the generated application-specific unique ID.
  6. 39
    An apparatus, comprising:a non-volatile storage storing device-specific key base data;and a processor configured to: validate a certificate of an application being executed on the apparatus, the certificate containing an application identifier (ID) for the application;receive a request for a cryptographic operation;and generate an enciyption key from the application ID and the device-specific key base data.
  7. 51
    A computer-implemented method, comprising:storing, in a non-volatile storage of an apparatus, device-specific identifier (ID) base data;validating a certificate of an application being executed on the apparatus, the certificate containing an application ID for the application;receiving a request for an application-specific unique ID of the application;CA 2877205 2019-10-31 generating the application-specific unique ID from the application ID and the devicespecific ID base data;and returning the generated application-specific unique ID.
  8. 57
    A computer-implemented method, comprising:storing, in a non-volatile storage of an apparatus, device-specific key base data;CA 2877205 2019-10-31 validating a certificate of an application being executed on the apparatus, the certificate containing an application ID for the application;receiving a request for a cryptographic operation;and generating an encryption key from the application ID and the device-specific key base data.
  9. 69
    An apparatus, comprising:a non-volatile storage storing device-specific identifier (ID) base data;and a processor configured to: validate a certificate of an application being executed on the apparatus, the certificate containing a version ID indicating a version of the application;CA 2877205 2019-10-31 receive a request for a version-specific unique ID of the version of the application;generate the version-specific unique ID from the version ID and the device-specific ID base data;and return the generated version-specific unique ID.
  10. 74
    An apparatus, comprising:a non-volatile storage storing device-specific key base data;and a processor configured to: CA 2877205 2019-10-31 validate a certificate of an application being executed on the apparatus, the certificate containing a version identifier (ID) indicating a version of the application;receive a request for a cryptographic operation;and generate an encryption key from the version ID and the device-specific key base data.
  11. 85
    A computer-implemented method, comprising:storing, in a non-volatile storage of an apparatus, device-specific identifier (ID) base data;validating a certificate of an application being executed on the apparatus, the certificate containing a version ID indicating a version of the application;receiving a request for a version-specific unique ID of the application;generating the version-specific unique ID from the version ID and the device-specific ID base data;and returning the generated version-specific unique ID. CA 2877205 2019-10-31
  12. 90
    A computer-implemented method, comprising:storing, in a non-volatile storage of an apparatus, device-specific key base data;validating a certificate of an application being executed on the apparatus, the certificate containing a version ID indicating a version of the application;receiving a request for a cryptographic operation;and generating an encryption key from the version ID and the device-specific key base data. CA 2877205 2019-10-31