USING A TRUSTED-PLATFORM-BASED SHARED-SECRET DERIVATION AND WWAN INFRASTRUCTURE-BASED ENROLLMENT TO ESTABLISH A SECURE LOCAL CHANNEL

A system and method for establishing a trusted connection on a mobile computing device (102). A shared secret is generated on a trusted platform (106) of the mobile computing device. The shared secret is transported to a secure channel application (118). The secure channel application establishes a...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: BLUM, SCOTT, DASHEVSKY, JANE, DHARMADHIKARI, ABHAY, BAJIKAR, SUNDEEP, YELAMANCHI, MRUDULA, AISSI, SELIM, ABHINKAR, SAMEER, MATASAR, BENJAMIN
Format: Patent
Sprache:eng ; fre ; ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A system and method for establishing a trusted connection on a mobile computing device (102). A shared secret is generated on a trusted platform (106) of the mobile computing device. The shared secret is transported to a secure channel application (118). The secure channel application establishes a secure local communication channel between the trusted platform and a SIM (subscriber identity module)/Smartcard (104) on the mobile computing device. The shared secret is received by the SIM/Smartcard. In one embodiment, the mobile computing device includes a GSM (Global Systems for Mobile Communications) 03.48 application (120) that sends the shared secret to a GSM 03.48 network infrastructure (122) for storage, management, and verification by the GSM 03.48 network infrastructure, and in turn sends the shared secret to the SIM/Smartcard on the mobile computing device.; In an alternative embodiment, a Diffie-Hellman key exchange is performed by the trusted platform to send the shared secret to the SIM/Smartcard. The shared secret, after being received by the SIM/Smartcard, is provided to a secure channel applet (112) on the SIM/Smartcard. The secure channel applet establishes the local communication channel between the SIM/Smartcard and the trusted platform. Once the secure channel application on the trusted platform and the secure channel applet on the SIM/Smartcard both have the shared secret, a transport layer security (TLS)-based handshake can take place to establish the secure local communication channel.