US 11,895,250 B2
Cryptographic methods and systems using activation codes for digital certificate revocation
Marcos A. Simplicio, São Paulo (BR); Eduardo Lopes Cominetti, São Paulo (BR); Harsh Kupwade Patil, Fremont, CA (US); Jefferson E. Ricardini, São Paulo (BR); and Marcos Vinicius M. Silva, São Paulo (BR)
Assigned to LG Electronics, Inc., Seoul (KR); and University of Sao Paulo, Sao Paulo (BR)
Filed by LG ELECTRONICS, INC., Seoul (KR); and UNIVERSITY OF SAO PAULO, Sao Paulo (BR)
Filed on Nov. 18, 2021, as Appl. No. 17/529,580.
Application 17/529,580 is a continuation of application No. 16/245,181, filed on Jan. 10, 2019, granted, now 11,190,363.
Claims priority of provisional application 62/626,672, filed on Feb. 5, 2018.
Claims priority of provisional application 62/616,418, filed on Jan. 11, 2018.
Prior Publication US 2022/0158853 A1, May 19, 2022
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/32 (2006.01); H04L 9/08 (2006.01)
CPC H04L 9/3268 (2013.01) [H04L 9/0861 (2013.01); H04L 9/0894 (2013.01); H04L 2209/42 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method for digital certificate management, the digital certificates being for use in authentication operations by entities operable to perform computing on digital values and to communicate with each other, wherein each digital certificate cannot be used until activated by an activation code associated with the digital certificate, the method comprising:
receiving, by a registration authority (RA), one or more certificate requests from one or more entities, each certificate request requesting one or more digital certificates for the associated entity;
for each certificate request, performing operations of:
obtaining by the RA, using information on the associated entity, node value data associated with the entity;
generating, by the RA, one or more certificate generation requests, each certificate generation request comprising one or more associated activation codes generated for the node value data;
sending to a certificate authority (CA), by the RA, each certificate generation request, wherein the CA is unable to link the certificate generation request to the associated entity;
wherein the CA is operable to generate, from each certificate generation request, a digital encrypted package comprising an associated digital certificate which is recoverable by a respective entity using an activation code generated for node value data associated with the entity.