Invention Grant
- Patent Title: Key distribution in a distributed computing environment
-
Application No.: US15390214Application Date: 2016-12-23
-
Publication No.: US10243939B2Publication Date: 2019-03-26
- Inventor: Matthew John Campagna , Gregory Alan Rubin , Nicholas Alexander Allen , Andrew Kyle Driggs , Eric Jason Brandwine
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US WA Seattle
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Davis Wright Tremaine LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/32 ; H04L9/08

Abstract:
A key distribution service operated by a signature authority distributes one-time-use cryptographic keys to one or more delegates that generate digital signatures on behalf of the signature authority. The key distribution service uses a root seed value to generate subordinate seeds. The subordinate seeds are used to generate a set of cryptographic keys. Hashes are generated for each key, and the hashes are arranged into a Merkle tree with a root hash controlled by the signature authority. In response to a request from a delegate, the signature authority provides a subordinate seed to the delegate. The delegate uses the subordinate seed to generate one or more cryptographic keys. The cryptographic keys are used to generate digital signatures which are verifiable up to the root hash of the Merkle tree. Additional subordinate seeds may be distributed to entities by the signature authority when appropriate.
Public/Granted literature
- US20180183774A1 KEY DISTRIBUTION IN A DISTRIBUTED COMPUTING ENVIRONMENT Public/Granted day:2018-06-28
Information query