Invention Grant
- Patent Title: Method for securely providing a personalized electronic identity on a terminal
-
Application No.: US17421079Application Date: 2020-01-08
-
Publication No.: US11777743B2Publication Date: 2023-10-03
- Inventor: Frank Dietrich , Marian Margraf , Tim Ohlendorf , Matthias Schwan
- Applicant: Bundesdruckerei GMBH
- Applicant Address: DE Berlin
- Assignee: Bundesdruckerei GmbH
- Current Assignee: Bundesdruckerei GmbH
- Current Assignee Address: DE Berlin
- Agency: Harness, Dickey & Pierce, P.L.C.
- Priority: DE 2019100335.0 2019.01.08
- International Application: PCT/DE2020/100006 2020.01.08
- International Announcement: WO2020/143877A 2020.07.16
- Date entered country: 2021-07-07
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/08 ; H04L9/30

Abstract:
The invention relates to a method for securely providing a personalized electronic identity on a terminal (2) which can be used by a user (1) for identification purposes when claiming an online service. In the method, an identification application is ran on a terminal (2), which is assigned to a user (1), in a system comprising data processing devices (9; 10; 11; 12) and said terminal (2), and additionally a personalization application and an identity provider application are ran. The method has the following steps in particular; transmitting a request to transmit an identity attribute assigned to the user (1) front the personalization application to the identity provider application; transmitting the identity attribute from the identity provider application to the personalization application after an agreement to transmit the identity attribute by means of the identity provider application is received from the user (1); generating an asymmetric key pair with a public and a private key on the terminal (2) by means of the identification application; transmitting the public-key from tire identification application on the terminal (2) to the personalization application; and generating an electronic certificate for the public-key by means of tire personalization application and storing the electronic certificate in a data storage device in order to form a first public-key infrastructure of the personalization application, additionally having the steps of: generating a hash value for the identity attribute and recording the hash value onto the electronic certificate. The identity attribute is encoded and transmitted together with the electronic certificate from the personalization application to the identification application (14) on the terminal (2), where both are stored in a local storage device of the terminal (2).
Public/Granted literature
- US20220116230A1 METHOD FOR SECURELY PROVIDING A PERSONALIZED ELECTRONIC IDENTITY ON A TERMINAL Public/Granted day:2022-04-14
Information query