-
公开(公告)号:US20210273789A1
公开(公告)日:2021-09-02
申请号:US17190084
申请日:2021-03-02
发明人: Benoit Lemercier , Kent Landerholm
摘要: Methods and systems for remote, asynchronous key entry and extraction are provided. A credential device can store a first key thereon, and can store an encrypted key component. A hardware security module manages a key template including a plurality of key components. The hardware security module manages a complementary key to the first key. The key component on the credential device can be encrypted with the first key for storage on the credential device and decrypted by the complementary key at the hardware security module. Alternately, the key component can be encrypted with the complementary key and provided to the credential device for decryption at a secure system via the first key. Accordingly, a key custodian may supply or extract a key component at a hardware security module remotely and at a time convenient to that key custodian.
-
公开(公告)号:US10560438B2
公开(公告)日:2020-02-11
申请号:US16371920
申请日:2019-04-01
发明人: Vishal Arora , Scott Kullman , Kent Landerholm , Tim Zurn , Jon Wittmayer , Benoit Lemercier , Jeffrey Davison , Daniel A. Sanden
摘要: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
-
公开(公告)号:US11856088B2
公开(公告)日:2023-12-26
申请号:US17190084
申请日:2021-03-02
发明人: Benoit Lemercier , Kent Landerholm
CPC分类号: H04L9/0825 , H04L9/0877 , H04L9/0894 , H04L9/14
摘要: Methods and systems for remote, asynchronous key entry and extraction are provided. A credential device can store a first key thereon, and can store an encrypted key component. A hardware security module manages a key template including a plurality of key components. The hardware security module manages a complementary key to the first key. The key component on the credential device can be encrypted with the first key for storage on the credential device and decrypted by the complementary key at the hardware security module. Alternately, the key component can be encrypted with the complementary key and provided to the credential device for decryption at a secure system via the first key. Accordingly, a key custodian may supply or extract a key component at a hardware security module remotely and at a time convenient to that key custodian.
-
公开(公告)号:US10284528B2
公开(公告)日:2019-05-07
申请号:US15192332
申请日:2016-06-24
发明人: Vishal Arora , Scott Kullman , Kent Landerholm , Tim Zurn , Jon Wittmayer , Benoit Lemercier , Jeffrey Davison , Daniel A. Sanden
摘要: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
-
-
-