-
公开(公告)号:US11888997B1
公开(公告)日:2024-01-30
申请号:US16018014
申请日:2018-06-25
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
CPC classification number: H04L9/3268 , H04L9/0897 , H04L9/3247 , H04L9/3297
Abstract: A computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by public and/or private certificate authorities. In an embodiment, customers may use the certificate management service to generate private certificate authority which can issue signed certificates to network entities within the customer enterprise. In an embodiment, the private certificate authority is hosted by the computing resource service provider, and the certificate management service automates the renewal and management of active certificates. In an embodiment, the certificate management service allows customer applications to create, renew, and revoke certificates issued by both private and public certificate authorities via an application programming interface.
-
公开(公告)号:US11323274B1
公开(公告)日:2022-05-03
申请号:US16018004
申请日:2018-06-25
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
Abstract: In an embodiment, a computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by private certificate authorities. In an embodiment, a private certificate authority hosted by the computing resource service provider is able to issue signed certificates to network entities within the customer enterprise. In an embodiment, the certificate management service provides a network-accessible application programming interface to the private certificate authority that allows applications to create and deploy private certificates programmatically. In an embodiment, the system provides the flexibility to create private certificates for applications that require custom certificate lifetimes or resource names.
-
公开(公告)号:US10263789B1
公开(公告)日:2019-04-16
申请号:US15083060
申请日:2016-03-28
Applicant: AMAZON TECHNOLOGIES, INC.
Inventor: Stefan Popoveniuc , Nicholas James Lynch , Preston Anthony Elder, III , Param Sharma , Todd Lawrence Cignetti , Dmitry Berkovich , Iftach Ragoler
Abstract: A service provider network includes a certificate manager that auto-generates and auto-renews security certificates for customers of the provider network. The security certificates may be usable to implement a Secure Sockets Layer (SSL) protocol, or other types of security protocols. The certificate manager generates a public key, private key pair for the customer, generates the certificate signing request (CSR) on behalf of the customer, transmits the CSR to the certificate authority (CA), and binds the resulting CA-generated certificate and private key to whatever internet-facing service the customer chooses (e.g., a load balancer).
-
公开(公告)号:US11997222B1
公开(公告)日:2024-05-28
申请号:US17732362
申请日:2022-04-28
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
CPC classification number: H04L9/3268 , H04L9/0897 , H04L9/3247 , H04L9/3297
Abstract: A computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by private certificate authorities. A private certificate authority hosted by the computing resource service provider is able to issue signed certificates to network entities within the customer enterprise. The certificate management service provides a network-accessible application programming interface to the private certificate authority that allows applications to create and deploy private certificates programmatically. The system provides the flexibility to create private certificates for applications that require custom certificate lifetimes or resource names.
-
公开(公告)号:US11563590B1
公开(公告)日:2023-01-24
申请号:US16018009
申请日:2018-06-25
Applicant: Amazon Technologies, Inc.
Inventor: Peter Zachary Bowen , Todd Lawrence Cignetti , Preston Anthony Elder, III , Brandonn Gorman , Ronald Andrew Hoskinson , Jonathan Kozolchyk , Kenneth Lawler , Marcel Andrew Levy , Kyle Benjamin Schultheiss , Sandeep Shantharaj , Param Sharma , Jose Maria Silveira Neto
IPC: H04L9/32
Abstract: A computing resource service provider provides a certificate management service that allows customers of the computing resource service provider to create, distribute, manage, and revoke digital certificates issued by public and/or private certificate authorities. In an embodiment, when a new certificate is generated, a certificate template is used to apply various settings and policies for the new certificate. In various examples, templates may be used to establish default values, enforce required and optional values, place restrictions on one or more data fields, and enforce signature requirements. In some embodiments, the template establishes rules for rejecting certificate requests that don't conform to the template.
-
-
-
-