-
公开(公告)号:US09621356B2
公开(公告)日:2017-04-11
申请号:US14279109
申请日:2014-05-15
Applicant: Apple Inc.
Inventor: Yousuf H. Vaid , Christopher B. Sharp , Medhi Ziat , Li Li , Jerrold Von Hauck , Ramiro Sarmiento , Jean-Marc Padova
IPC: H04L9/32
CPC classification number: H04L9/3268
Abstract: Disclosed herein is a technique for revoking a root certificate from at least one client device. In particular, the technique involves causing a secure element—which is included in the at least one client device and is configured to store the root certificate as well as at least one backup root certificate—to permanently disregard the root certificate and prevent the at least one client device from utilizing the specific root certificate. According to one embodiment, this revocation occurs in response to a receiving a revocation message that directly targets the root certificate, where the message includes at least two levels of authentication that are verified by the secure element prior to carrying out the revocation. Once the root certificate is revoked, the secure element can continue to utilize the at least one backup root certificate, while permanently disregarding the revoked root certificate.