Patents by Inventor Antti Kiiveri

Antti Kiiveri has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9111097
    Abstract: The present invention relates to circuitry and a method for providing data security, which circuitry contains at least one processor and at least one storage circuit. The invention is based on the idea that circuitry is provided in which a processor is operable in at least two different modes, one first secure operating mode and one second unsecure operating mode. In the secure mode, the processor has access to security related data located in various memories located within the circuitry. The access to these security data and the processing of them need to be restricted, since an intruder with access to security data could manipulate the circuitry. When testing and/or debugging the circuitry, access to security information is not allowed. For this reason, the processor is placed in the unsecure operating mode, in which mode it is no longer given access to the protected data.
    Type: Grant
    Filed: August 4, 2003
    Date of Patent: August 18, 2015
    Assignee: Nokia Technologies Oy
    Inventors: Antti Kiiveri, Lauri Paatero
  • Patent number: 8869252
    Abstract: An apparatus may include a processor configured to receive a security certificate request from a remote device comprising a public key of the remote device and an authentication credential based upon a legacy authentication mechanism of the remote device. The processor may be further configured to validate the received authentication credential in accordance with the legacy authentication mechanism. The processor may be additionally configured to generate a security certificate for the public key. The processor may be further configured to provide the generated security certificate to the remote device.
    Type: Grant
    Filed: May 19, 2008
    Date of Patent: October 21, 2014
    Assignee: Nokia Corporation
    Inventors: Nadarajah Asokan, Jan-Erik Ekberg, Antti Kiiveri, Olli Muukka
  • Patent number: 8621191
    Abstract: An apparatus for providing a secure predefined boot sequence may include a processor. The processor may be configured to verify a predefined boot sequence certificate that defines a boot sequence for a device, verify one or more software elements referenced by the predefined boot sequence certificate, and execute one or more software elements that have been verified in the sequence defined by the predefined boot sequence certificate. Corresponding methods, systems, and computer program products are also provided.
    Type: Grant
    Filed: December 26, 2007
    Date of Patent: December 31, 2013
    Assignee: Nokia Corporation
    Inventor: Antti Kiiveri
  • Patent number: 8296575
    Abstract: The invention relates to an electronic device, which comprises an operational unit and a user-specific module. Data in the device, necessary for checking the user-specific module, is protected with a key of the encryption method employed by the device manufacturer. A verification key of the encryption method employed by the electronic device manufacturer is stored in the operational unit, by means of which verification key the data necessary for checking the user-specific module is verified.
    Type: Grant
    Filed: June 21, 2002
    Date of Patent: October 23, 2012
    Assignee: Nokia Corporation
    Inventor: Antti Kiiveri
  • Publication number: 20110093938
    Abstract: An apparatus may include a processor configured to receive a security certificate request from a remote device comprising a public key of the remote device and an authentication credential based upon a legacy authentication mechanism of the remote device. The processor may be further configured to validate the received authentication credential in accordance with the legacy authentication mechanism. The processor may be additionally configured to generate a security certificate for the public key.
    Type: Application
    Filed: May 19, 2008
    Publication date: April 21, 2011
    Inventors: Nadarajah Asokan, Jan-Erik Ekberg, Antti Kiiveri, Olli Muukka
  • Patent number: 7630495
    Abstract: Identity data of an operational unit and a verification key of the cryptographic method employed by the service provider are protected with a key of the cryptographic method employed by the manufacturer of the operational unit. The verification key of the cryptographic method employed by the manufacturer of the operational unit is stored in the operational unit of the electronic device. The identity data of the operational unit and the identity data of the service provider are protected with a key of the cryptographic method employed by the service provider. The identity data of the operational unit and the verification key of the service provider are verified with the verification key of the manufacturer of the operational unit. The identity data of the operational unit and the identity data of the service provider are verified with the verified verification key of the service provider. The identity data stored in the user-specific module are compared with the verified identity data.
    Type: Grant
    Filed: June 28, 2002
    Date of Patent: December 8, 2009
    Assignee: Nokia Corporation
    Inventors: Antti Kiiveri, Nadarajah Asokan, Valtteri Niemi
  • Publication number: 20090172376
    Abstract: An apparatus for providing a secure predefined boot sequence may include a processor. The processor may be configured to verify a predefined boot sequence certificate that defines a boot sequence for a device, verify one or more software elements referenced by the predefined boot sequence certificate, and execute one or more software elements that have been verified in the sequence defined by the predefined boot sequence certificate. Corresponding methods, systems, and computer program products are also provided.
    Type: Application
    Filed: December 26, 2007
    Publication date: July 2, 2009
    Inventor: Antti Kiiveri
  • Patent number: 7506381
    Abstract: The disclosure describes a method for securing the trustworthiness of an electronic device. At least first and second check-up data are stored in the electronic device. In the method, a first step of a boot program is executed. In the first boot step, the trustworthiness of the first check-up data is examined, wherein if the check-up shows that the first check-up data is trusted, the second check-up data related to the second boot step is examined to confirm the trustworthiness of the second boot step. If the check-up shows that the second check-up data related to the second boot step is trusted, the second boot step is executed after said first boot step.
    Type: Grant
    Filed: June 14, 2002
    Date of Patent: March 17, 2009
    Assignee: Nokia Corporation
    Inventors: Toni Sormunen, Risto Ronkka, Antti Kiiveri
  • Patent number: 7437574
    Abstract: Processing information in an electronic device is carried out by at least one processing block for controlling the operation of the electronic device, and a memory. At least a first private key is used for processing information. At least a protected mode and a normal mode are established in the processing block. Part of the memory can be accessed only in said protected mode. At least said first private key is stored in the memory that is accessible in said protected mode.
    Type: Grant
    Filed: August 5, 2002
    Date of Patent: October 14, 2008
    Assignee: Nokia Corporation
    Inventors: Risto Rönkkä, Toni Sormunen, Antti Kiiveri, Antti Jauhiainen
  • Patent number: 7418593
    Abstract: The present invention relates to a method and a system for performing testing in a device (1), in which at least one program (110, 112) is loaded and at least one item of mode data relating to the program is determined. Furthermore, at least one key (111) is generated for use in said program. In the method, at least two different security levels are determined for the keys to be used in the device (1). In the method, said security level determined for the key and at least one mode data relating to the program are examined, and on the basis of the examination, it is decided if said key is available for use in the mode indicated in the mode data of the program. The invention also relates to a device, a mobile communication device and a storage medium.
    Type: Grant
    Filed: February 3, 2004
    Date of Patent: August 26, 2008
    Assignee: Nokia Corporation
    Inventors: Lauri Paatero, Antti Kiiveri
  • Patent number: 7363511
    Abstract: A method for processing audiovisual information in an electronic device comprises at least one control block for controlling the operation of the electronic device, and a memory. The audiovisual information is encrypted. The control block is provided with a protected processing block, and part of the memory is available in said protected processing block only. The audiovisual information is decrypted in said protected processing block and transmitted from the protected processing block to means for presenting audiovisual information.
    Type: Grant
    Filed: June 27, 2002
    Date of Patent: April 22, 2008
    Assignee: Nokia Corporation
    Inventor: Antti Kiiveri
  • Publication number: 20070300058
    Abstract: A method and system for determining rights to access digital content at a mobile communication device is described. A mobile communication device is manufactured with a credential store that maintains credentials associated with the mobile communication device. After manufacturing of the mobile communication device, a player component is installed onto the mobile communication device. With a request for digital content to be used or distributed by the player component, one or more credentials of the mobile communication device are confirmed for accuracy. If accurate, the mobile communication device receives the requested digital content for use and distribution.
    Type: Application
    Filed: June 21, 2006
    Publication date: December 27, 2007
    Applicant: NOKIA CORPORATION
    Inventors: Janne P. Takala, Rauno Tamminen, Lauri Paatero, Antti Kiiveri
  • Publication number: 20050033969
    Abstract: The present invention relates to circuitry and a method for providing data security, which circuitry contains at least one processor and at least one storage circuit. The invention is based on the idea that circuitry is provided in which a processor is operable in at least two different modes, one first secure operating mode and one second unsecure operating mode. In the secure mode, the processor has access to security related data located in various memories located within the circuitry. The access to these security data and the processing of them need to be restricted, since an intruder with access to security data could manipulate the circuitry. When testing and/or debugging the circuitry, access to security information is not allowed. For this reason, the processor is placed in the unsecure operating mode, in which mode it is no longer given access to the protected data.
    Type: Application
    Filed: August 4, 2003
    Publication date: February 10, 2005
    Inventors: Antti Kiiveri, Lauri Paatero
  • Publication number: 20040255117
    Abstract: The present invention relates to a method and a system for performing testing in a device (1), in which at least one program (110, 112) is loaded and at least one item of mode data relating to the program is determined. Furthermore, at least one key (111) is generated for use in said program. In the method, at least two different security levels are determined for the keys to be used in the device (1). In the method, said security level determined for the key and at least one mode data relating to the program are examined, and on the basis of the examination, it is decided if said key is available for use in the mode indicated in the mode data of the program. The invention also relates to a device, a mobile communication device and a storage medium.
    Type: Application
    Filed: February 3, 2004
    Publication date: December 16, 2004
    Applicant: Nokia Corporation
    Inventors: Lauri Paatero, Antti Kiiveri
  • Publication number: 20030046570
    Abstract: Processing information in an electronic device is carried out by at least one processing block for controlling the operation of the electronic device, and a memory. At least a first private key is used for processing information. At least a protected mode and a normal mode are established in the processing block. Part of the memory can be accessed only in said protected mode. At least said first private key is stored in the memory that is accessible in said protected mode.
    Type: Application
    Filed: August 5, 2002
    Publication date: March 6, 2003
    Applicant: Nokia Corporation
    Inventors: Risto Ronkka, Toni Sormunen, Antti Kiiveri, Antti Jauhiainen
  • Publication number: 20030021413
    Abstract: Identity data of an operational unit and a verification key of the cryptographic method employed by the service provider are protected with a key of the cryptographic method employed by the manufacturer of the operational unit. The verification key of the cryptographic method employed by the manufacturer of the operational unit is stored in the operational unit of the electronic device. The identity data of the operational unit and the identity data of the service provider are protected with a key of the cryptographic method employed by the service provider. The identity data of the operational unit and the verification key of the service provider are verified with the verification key of the manufacturer of the operational unit. The identity data of the operational unit and the identity data of the service provider are verified with the verified verification key of the service provider. The identity data stored in the user-specific module are compared with the verified identity data.
    Type: Application
    Filed: June 28, 2002
    Publication date: January 30, 2003
    Applicant: Nokia Corporation
    Inventors: Antti Kiiveri, Nadarajah Asokan, Valtteri Niemi
  • Publication number: 20030014663
    Abstract: The invention relates to a method for securing the trustworthiness of an electronic device. At least first and second check-up data are stored in the electronic device. In the method, a boot program is started, in which boot program at least first and second boot steps are taken. In the first boot step, the trustworthiness of said at least first check-up data is examined, wherein if the check-up shows that said at least first check-up data is trusted, said second check-up data related to at least the second boot step is examined to confirm the trustworthiness of the second boot step. If the check-up shows that at least one second check-up data related to the second boot step is trusted, said second boot step is taken after said first boot step.
    Type: Application
    Filed: June 14, 2002
    Publication date: January 16, 2003
    Applicant: Nokia Corporation
    Inventors: Toni Sormunen, Risto Ronkka, Antti Kiiveri
  • Publication number: 20030009680
    Abstract: The invention relates to an electronic device, which comprises an operational unit and a user-specific module. Data in the device, necessary for checking the user-specific module, is protected with a key of the encryption method employed by the device manufacturer. A verification key of the encryption method employed by the electronic device manufacturer is stored in the operational unit, by means of which verification key the data necessary for checking the user-specific module is verified.
    Type: Application
    Filed: June 21, 2002
    Publication date: January 9, 2003
    Inventor: Antti Kiiveri
  • Publication number: 20030005322
    Abstract: The invention relates to a method for processing audiovisual information in an electronic device comprising at least one control block for controlling the operation of the electronic device, and a memory. The audiovisual information is encrypted. The control block is provided with a protected processing block, and part of the memory is available in said protected processing block only. The audiovisual information is decrypted in said protected processing block and transmitted from the protected processing block to means for presenting audiovisual information.
    Type: Application
    Filed: June 27, 2002
    Publication date: January 2, 2003
    Applicant: Nokia Corporation
    Inventor: Antti Kiiveri