-
公开(公告)号:US12132722B1
公开(公告)日:2024-10-29
申请号:US16457478
申请日:2019-06-28
Applicant: Amazon Technologies, Inc.
Inventor: Todd Cignetti , Michael S. Slaughter , Dayong Hao
IPC: H04L9/40
CPC classification number: H04L63/0823 , H04L63/108 , H04L63/164
Abstract: Methods, systems, and computer-readable media for a certificate management system with forced certificate renewal are disclosed. The certificate management system may receive a request to renew a digital certificate. The request may be received at a selected time prior to an automatic renewal date for the certificate, and the automatic renewal date may be stored by the certificate management system. The certificate management system may acquire, based at least in part on the request to renew the certificate, a renewed certificate from a certificate authority. The renewed certificate may be obtained prior to the automatic renewal date. The renewed certificate may be exported from the certificate management system and bound to a computing resource (e.g., a server) prior to the automatic renewal date.
-
公开(公告)号:US20240275615A1
公开(公告)日:2024-08-15
申请号:US18642700
申请日:2024-04-22
Applicant: Amazon Technologies, Inc.
Inventor: Michael S. Slaughter , Trevoli Ponds-White , James Darrin Flanagan , Georgy Sebastian
CPC classification number: H04L9/3268 , H04L9/14
Abstract: Components of a public certificate authority (CA) generate respective cryptographic assertions during performance of respective tasks of a certificate issuance workflow and a workflow approval component approves/rejects certificate issuance, based upon verification of the cryptographic assertions. For example, a workflow manager may assign tasks of a certificate workflow process to a number of components that process the tasks. The components generate responses and sign the respective responses with keys particular to each component. The workflow manager gathers the cryptographic assertions and sends them to a workflow approval component that validates the assertions, verifies the assertions indicate successful completion of the workflow and approves or rejects certificate issuance.
-
公开(公告)号:US12003655B1
公开(公告)日:2024-06-04
申请号:US17544767
申请日:2021-12-07
Applicant: Amazon Technologies, Inc.
Inventor: Michael S. Slaughter , Trevoli Ponds-White , James Darrin Flanagan , Georgy Sebastian
CPC classification number: H04L9/3268 , H04L9/14
Abstract: Components of a public certificate authority (CA) generate respective cryptographic assertions during performance of respective tasks of a certificate issuance workflow and a workflow approval component approves/rejects certificate issuance, based upon verification of the cryptographic assertions. For example, a workflow manager may assign tasks of a certificate workflow process to a number of components that process the tasks. The components generate responses and sign the respective responses with keys particular to each component. The workflow manager gathers the cryptographic assertions and sends them to a workflow approval component that validates the assertions, verifies the assertions indicate successful completion of the workflow and approves or rejects certificate issuance.
-
公开(公告)号:US11671264B1
公开(公告)日:2023-06-06
申请号:US17024983
申请日:2020-09-18
Applicant: Amazon Technologies, Inc.
Inventor: Todd Cignetti , Trevoli Ponds-White , Michael S. Slaughter , Param Sharma , Kyle Benjamin Schultheiss , Chris Stoner
CPC classification number: H04L9/3268 , H04L9/3247
Abstract: Techniques for validating digital certificate information before signing are described. A method of validating digital certificate information before signing may include generating a to-be-signed (TBS) certificate, providing the TBS certificate to a certificate pre-issuance validation service to perform one or more validations on the TBS certificate, and receiving a request to issue a signed certificate based on the TBS certificate following validation of the TBS certificate by the certificate pre-issuance validation service.
-
-
-