Invention Grant
- Patent Title: EUICC secure timing and certificate revocation
-
Application No.: US15598220Application Date: 2017-05-17
-
Publication No.: US10764066B2Publication Date: 2020-09-01
- Inventor: Li Li , Arun G. Mathias
- Applicant: Apple Inc.
- Applicant Address: US CA Cupertino
- Assignee: Apple Inc.
- Current Assignee: Apple Inc.
- Current Assignee Address: US CA Cupertino
- Agency: Dickinson Wright RLLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L29/06 ; H04W12/06

Abstract:
Secure reception of a certificate revocation list (CRL) is determined. In some embodiments, a device initiates a CRL update by sending a message with a timestamp to an embedded universal integrated circuit card (eUICC). The eUICC generates a session identifier, nonce, or random number and builds a payload including an internal time value based on a server time, and an internal time value based on a past message received from the device. The eUICC cryptographically signs over the payload and sends it to the device. The device obtains a CRL from a host server, checks the CRL, and, if the CRL passes the device check, sends it to the eUICC along with a second device timestamp and the nonce. The eUICC then performs checks based on the timestamps, the nonce, the CRL and the internal time values to determine whether the CRL has been securely received.
Public/Granted literature
- US20170338966A1 eUICC SECURE TIMING AND CERTIFICATE REVOCATION Public/Granted day:2017-11-23
Information query