Application (pre-grant publication)
SECURE RECOGNITION OF MOBILE DEVICES
- Number
- 20210209218
- Published
- 2021-07-08
- Filed
- 2020-01-02
- Assignee
- Disney Enterprises, Inc.
- Inventors
- WATSON; Scott F., EATON; Steven C., JARCHAFJIAN; Harout, ARTHUR; Thomas C., MOHARIL; Vinay, GORIN; Joshua B., PARISH; Adam S., PRASAD; Ajay M., UMSTEAD; Joshua Caleb
- CPC
- H04W12/06; H04L9/088; H04L67/303; H04L67/53; G06F21/6209; H04L67/12; G06F21/44; H04W4/80; H04W12/50; H04L9/0825
- Verdict
- Set aside mobile device security, business
- Source
- Google Patents · FreePatentsOnline
Abstract
Techniques for secure mobile device recognition are disclosed. An IOT edge device determines, based on a network message received at the IOT edge device, that a mobile device is not recognized. The IOT edge device transmits a token request to the mobile device. In response, the IOT edge device receives an encrypted token from the mobile device. The IOT edge device transmits the encrypted token to a server. The server is configured to determine an identifier corresponding with the mobile device, based on the encrypted token. A recognition task is initiated for the mobile device, based on the determined identifier.
Background
BACKGROUND Field of the Invention
Embodiments presented herein generally relate to techniques for secure permission-based recognition of a mobile device while protecting an identity of a user of the mobile device. More specifically, embodiments presented herein relate to techniques that allow a mobile device to be securely recognized by a trusted third-party while preventing a non-trusted third-party from recognizing the mobile device. Description of the Related Art
A variety of technologies can be used to recognize a mobile device using signals emitted from the device. These signals emitted by the device can include identifying data, such as a user ID, device ID and an address, that can be used to recognize the device. Some of these technologies, however, may allow an undesired non-trusted third-party to recognize the device if the non-trusted third party can receive and understand the transmitted data. For example, a mobile application may use a static encryption key that is common across all instances of the mobile application to encrypt a transmitted device ID. In that case, the device ID of each mobile device running the mobile application is encrypted using the same encryption key. While this technique may initially be secure, a non-trusted third-party could decompile the application to determine the encryption key. The third-party could then use the encryption key to decrypt any device ID related to that mobile application and recognize the mobile device