- 专利标题: Language-agnostic secure application development
-
申请号: US15638249申请日: 2017-06-29
-
公开(公告)号: US10749689B1公开(公告)日: 2020-08-18
- 发明人: Prasad Peddada , Ryan Guest , Jonathan Brossard , Travis Emmert
- 申请人: salesforce.com, inc.
- 申请人地址: US CA San Francisco
- 专利权人: salesforce.com, inc.
- 当前专利权人: salesforce.com, inc.
- 当前专利权人地址: US CA San Francisco
- 代理机构: Sterne, Kessler, Goldstein & Fox P.L.L.C.
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/32 ; H04L9/08 ; H04W12/04 ; H04W12/08 ; H04W12/06
摘要:
The disclosed technology for a hardware system to access a secure backend system uses non-volatile memory to hold encrypted secrets, volatile memory to hold decrypted secrets ready for use, a keys-for-all (K4A) server, and app servers running K4A clients. To access the backend system in production, each app server uses a decrypted secret and a certificate that identifies the app server and certifies its role and physical and logical location. At initialization of the app server, a K4A client is instantiated that launches and tracks processes, running on the app server, that are authorized to request decryption services. The K4A client responds to a decryption request from an authorized process, determined based on tracking of processes launched, by requesting decryption by a K4A server, using the certificate, and returns to the process, in volatile memory, a decrypted secret or a reference to the decrypted secret, decrypted by the K4A server.
信息查询