Invention Grant
- Patent Title: Managed lifecycle roles for secure credential vending
-
Application No.: US18314076Application Date: 2023-05-08
-
Publication No.: US12242591B2Publication Date: 2025-03-04
- Inventor: Varun Jayant Oswal , Liam Simon Hewitt , Rachit Jain
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US WA Seattle
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Kowert, Hood, Munyon, Rankin & Goetzel, P.C.
- Agent Robert C. Kowert
- Main IPC: G06F21/45
- IPC: G06F21/45 ; G06F21/00 ; G06F21/60 ; H04L9/40

Abstract:
Managed lifecycle roles are disclosed. Managed lifecycle roles may be used for secure credential vending or otherwise. For instance, an entity (e.g., administrator or other entity) requests, via an interface of a role manager, creation of a role associated with a lifecycle definition (e.g., an expression of an enforceable expiration of the role or similar characteristic). The role manager stores the role and role lifecycle definition to a data store. Another entity requests to use the role to perform some operation with respect to a resource. A credential service validates the request against a lifecycle definition for the role (and against an access control list, in some examples) and responds to valid requests with credentials useable to perform the operation with respect to the resource. The other entity uses the credentials to perform the operation with respect to the resource. A sweep process manages attributes of the roles.
Public/Granted literature
- US20230281294A1 Managed Lifecycle Roles for Secure Credential Vending Public/Granted day:2023-09-07
Information query