-
公开(公告)号:US11323274B1
公开(公告)日:2022-05-03
申请号:US16018004
申请日:2018-06-25
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
Abstract: In an embodiment, a computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by private certificate authorities. In an embodiment, a private certificate authority hosted by the computing resource service provider is able to issue signed certificates to network entities within the customer enterprise. In an embodiment, the certificate management service provides a network-accessible application programming interface to the private certificate authority that allows applications to create and deploy private certificates programmatically. In an embodiment, the system provides the flexibility to create private certificates for applications that require custom certificate lifetimes or resource names.
-
公开(公告)号:US11997222B1
公开(公告)日:2024-05-28
申请号:US17732362
申请日:2022-04-28
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
CPC classification number: H04L9/3268 , H04L9/0897 , H04L9/3247 , H04L9/3297
Abstract: A computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by private certificate authorities. A private certificate authority hosted by the computing resource service provider is able to issue signed certificates to network entities within the customer enterprise. The certificate management service provides a network-accessible application programming interface to the private certificate authority that allows applications to create and deploy private certificates programmatically. The system provides the flexibility to create private certificates for applications that require custom certificate lifetimes or resource names.
-
公开(公告)号:US11563590B1
公开(公告)日:2023-01-24
申请号:US16018009
申请日:2018-06-25
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
IPC: H04L9/32
Abstract: A computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by public and/or private certificate authorities. In an embodiment, when a new certificate is generated, a certificate template is used to apply various settings and policies for the new certificate. In various examples, templates may be used to establish default values, enforce required and optional values, place restrictions on one or more data fields, and enforce signature requirements. In some embodiments, the template establishes rules for rejecting certificate requests that don't conform to the template.
-
公开(公告)号:US11888997B1
公开(公告)日:2024-01-30
申请号:US16018014
申请日:2018-06-25
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
CPC classification number: H04L9/3268 , H04L9/0897 , H04L9/3247 , H04L9/3297
Abstract: A computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by public and/or private certificate authorities. In an embodiment, customers may use the certificate management service to generate private certificate authority which can issue signed certificates to network entities within the customer enterprise. In an embodiment, the private certificate authority is hosted by the computing resource service provider, and the certificate management service automates the renewal and management of active certificates. In an embodiment, the certificate management service allows customer applications to create, renew, and revoke certificates issued by both private and public certificate authorities via an application programming interface.
-
公开(公告)号:US11533185B1
公开(公告)日:2022-12-20
申请号:US16910010
申请日:2020-06-23
Applicant: Amazon Technologies, Inc.
Inventor: Param Sharma , Jonathan Kozolchyk , Todd Cignetti , Kyle Benjamin Schultheiss , Josh Rosenthol , Jose Maria Silveira Neto , Yiwen Wu
IPC: H04L9/32
Abstract: Systems and method for generating and managing certificate authorities. For instance, a certificate service may provide one or more user interfaces for creating certificate authorities, such as a root certificate authority, a subordinate certificate authority, and/or an intermediate certificate authority. For example, a user may use a user device to create a certificate hierarchy. The certificate service may also provide one or more user interfaces for issuing certificates using the certificate authorities. One or more computing resources may then use the end-entity certificates issued from the certificate authority hierarchy for authentication and/or encryption. For security purposes, the certificate authority may also allow the user to set policies representing users that are able to access and/or utilize the certificate authorities to perform actions, such as issuing certificates. The certificate service may also generate audit reports indicating certificates that are created using the certificate authorities.
-
-
-
-