发明授权
- 专利标题: Secure sharing of transport layer security session keys with trusted enforcement points
- 专利标题(中): 传输层安全会话密钥与可信执行点的安全共享
-
申请号: US11778396申请日: 2007-07-16
-
公开(公告)号: US07992200B2公开(公告)日: 2011-08-02
- 发明人: David G. Kuehr-McLaren , Linwood H. Overby, Jr.
- 申请人: David G. Kuehr-McLaren , Linwood H. Overby, Jr.
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 代理机构: Carey, Rodriguez, Greenberg & Paul
- 代理商 Steven M. Greenberg, Esq.
- 主分类号: G06F9/00
- IPC分类号: G06F9/00 ; G06F15/16
摘要:
Embodiments of the present invention address deficiencies of the art in respect to security enforcement point operability in a TLS secured communications path and provide a novel and non-obvious method, system and computer program product for the secure sharing of TLS session keys with trusted enforcement points. In one embodiment of the invention, a method for securely sharing TLS session keys with trusted enforcement points can be provided. The method can include conducting a TLS handshake with a TLS client to extract and decrypt a session key for a TLS session with the TLS client traversing at least one security enforcement point. The method further can include providing the session key to a communicatively coupled key server for distribution to the at least one security enforcement point. Finally, the method can include engaging in secure communications with the TLS client over the TLS session.
公开/授权文献
信息查询