-
公开(公告)号:US20240205198A1
公开(公告)日:2024-06-20
申请号:US18288955
申请日:2022-03-25
Applicant: Intel Corporation
Inventor: Kapil Sood , Srinivasa Addepalli , Dong Guo , Sakari Poussa , Kailun Qin , Ismo Puustinen , Veronika Karperko
IPC: H04L9/40
CPC classification number: H04L63/0428 , H04L63/0823
Abstract: Various methods, systems, and use cases for securely managing, generating, and controlling access to keys in a service mesh are discussed herein. In various examples, key protection operations include service mesh signing key protection and service mesh communication key protection, for a secure transport session between services such as conducted with mutual transport layer security (mTLS). For instance, such key protection operations may be used to establish communications between the service host and another entity within the service mesh, in a secure transport session, based on use of a private key (secured using a confidential computing technology) in a secure enclave or other secure compute environment to sign one or more keys for the secure transport session.