Nova Patents
EP3563545A2

Blockchains for securing iot devices

Abstract

This record has no abstract on file.

Term

11.3 yearsto projected expiry

Projected expiry 28 December 2037, counted from filing; an application has no term until it is granted.

  1. Priority and filed
  2. Published
  3. Today
  4. Projected expiry

36 claims: 14 independent, 22 dependent

  1. 1
    Claims of equivalent WO 2018126029 A2 CLAIMSWhat is claimed is:1 . An apparatus, comprising a trusted communications environment, comprising: a primary participant comprising: a group creator to initiate creation of a trusted group;and a distributed ledger to store identities and credential for group members;and a secondary participant comprising communication credentials for the trusted group provided by the primary participant.
  2. 6
    The apparatus of any of claims 1 -5, wherein the primary participant comprises a key creator to create a key based, at least in part, on a trusted group name.
  3. 7
    The apparatus of any of claims 1 -5, comprising an attestation validator to validate a join request from the secondary participant.
  4. 8
    The apparatus of any of claims 1 -5, comprising a group joiner to issue the communication credentials to the secondary participant.
  5. 9
    The apparatus of any of claims 1 -5, comprising a tertiary participant comprising secondary communication credentials for the trusted group provided by the secondary participant.
  6. 11
    1 1 . The apparatus of any of claims 1 -5, comprising a plurality of secondary participants comprising communication credentials issued by the primary participant.
  7. 12
    The apparatus of any of claims 1 -5, comprising a plurality of tertiary participants each comprising secondary communication credentials issued by the primary participant.
  8. 13
    The apparatus of any of claims 1 -5, wherein the distributed ledger comprises transaction data signed by a group key and a private key for a participant.
  9. 14
    A method for securing communications transactions in an loT network, comprising:determining by a first participant that a group of participants can communicate with integrity assurances;reserving a name for the group from a distributed ledger enumeration authority (DLEA);establishing a distributed ledger for the group using the name;and providing a private key for the group to a second participant.
  10. 20
    The method of any of claims 14-19, comprising:creating a join request in a third participant, wherein the join request comprises a third participant transaction key signed by a private key for the third participant;sending the join request to the second participant;signing the join request by the second participant with a public key for the third participant, a transaction key for the second participant, and the group key to create a signed transaction;and sending the signed transaction back to the third participant.
  11. 23
    The method of any of claims 14-19, comprising:signing transaction data at the second participant using the private group key for the second participant;and committing the transaction data to the group distributed ledger.
  12. 24
    A non-transitory, machine readable medium comprising instructions to direct a processor to:determine that a group has integrity assurances;reserve a group name with a distributed ledger enumeration authority (DLEA);create a group public key and a permissioning policy;and commit the group name and group public key to a group distributed ledger.
  13. 26
    The non-transitory, machine readable medium of any of claims 24-25, comprising instructions to direct the processor to:sign transaction data with a group private key;and commit the signed transaction data to the group distributed ledger.
  14. 27
    An apparatus for securing communications transactions in an loT network, comprising:means for determining by a first participant that a group of participants can communicate with integrity assurances;means for reserving a name for the group from a distributed ledger enumeration authority (DLEA);means for establishing a distributed ledger for the group using the name;and means for providing a private key for the group to a second participant.
  15. 33
    The apparatus of any of claims 27-32, comprising:means for creating a join request in a third participant, wherein the join request comprises a third participant transaction key signed by a private key for the third participant;means for sending the join request to the second participant;means for signing the join request by the second participant with a public key for the third participant, a transaction key for the second participant, and the group key to create a signed transaction;andmeans for sending the signed transaction back to the third participant.
  16. 36
    The apparatus of any of claims 27-32, comprising:means for signing transaction data at the second participant using the private group key for the second participant;andmeans for committing the transaction data to the group distributed ledger.