US 12,075,255 B2
Secure wireless communication system and method
Vishwas Saxena, Bangalore (IN); Aditya Gadgil, Bangalore (IN); Megha Sehgal, Bangalore (IN); and Mukesh Kumar, Bangalore (IN)
Assigned to Sandisk Technologies, Inc., Milpitas, CA (US)
Filed by Western Digital Technologies, Inc., San Jose, CA (US)
Filed on Dec. 20, 2021, as Appl. No. 17/556,913.
Prior Publication US 2023/0199503 A1, Jun. 22, 2023
Int. Cl. H04W 12/50 (2021.01); H04W 12/03 (2021.01); H04W 12/0471 (2021.01); H04W 12/069 (2021.01)
CPC H04W 12/50 (2021.01) [H04W 12/03 (2021.01); H04W 12/0471 (2021.01); H04W 12/069 (2021.01)] 20 Claims
OG exemplary drawing
 
1. A method for secure wireless communication, the method executed by at least one processor of a device, and wherein the method comprises:
receiving, from a host, a secure connection request for securing a wireless connection between the device and the host;
in response to receiving the secure connection request, transmitting a connection acknowledgement to the host, wherein the connection acknowledgement includes a Long Term Device Key (LTDK) of the device;
receiving, from the host, a connection certificate including connection data for establishing the wireless connection between the host and the device, wherein:
the connection certificate is signed by a private Long Term Host Key (LTHK) of the host; and
the LTHK of the host and the LTDK of the device form a cryptographic Long Term Key pair;
validating the connection certificate using the LTDK of the device to determine whether the host is authorized to connect to the device; and
in response to determining that the host is authorized to connect to the device, establishing a first shared secret with the host based on the connection data, wherein:
the first shared secret establishes encryption of data transmitted over a wireless channel between the device and the host;
the LTDK is obtained from a registration certificate transmitted to the device by the host; and
the registration certificate is generated by a registration server in response to the registration of the host as authorized to connect to the device.