SECURE KEY CREATION
    1.
    发明申请
    SECURE KEY CREATION 有权
    安全关键创建

    公开(公告)号:US20120308001A1

    公开(公告)日:2012-12-06

    申请号:US13150592

    申请日:2011-06-01

    IPC分类号: H04L9/06

    摘要: Key creation includes sending a first public key part from a first system to a second system, receiving a second public key part sent by the second system to the first system and establishing a first secret material in the first system using the first and second public key parts, wherein the first secret material is identical to a second secret material established on the second system using the first and second key parts. Key creation also includes binding key control information to the first secret material in the first system, wherein the key control information includes information relating to key type and key management and deriving a first key material from the combination of the key control information and the first secret material, wherein the first key material is identical to a second key material derived by the second system.

    摘要翻译: 密钥创建包括将第一公钥部分从第一系统发送到第二系统,接收由第二系统发送给第一系统的第二公共密钥部分,并使用第一和第二公钥在第一系统中建立第一秘密资料 其中所述第一秘密材料与使用所述第一和第二关键部分在所述第二系统上建立的第二秘密材料相同。 密钥创建还包括将密钥控制信息绑定到第一系统中的第一秘密资料,其中密钥控制信息包括与密钥类型和密钥管理有关的信息,并从密钥控制信息和第一密钥的组合中导出第一密钥资料 材料,其中所述第一密钥材料与由所述第二系统导出的第二密钥材料相同。

    Secure key creation
    2.
    发明授权
    Secure key creation 有权
    安全密钥创建

    公开(公告)号:US08615081B2

    公开(公告)日:2013-12-24

    申请号:US13150592

    申请日:2011-06-01

    IPC分类号: H04L9/00

    摘要: Key creation includes sending a first public key part from a first system to a second system, receiving a second public key part sent by the second system to the first system and establishing a first secret material in the first system using the first and second public key parts, wherein the first secret material is identical to a second secret material established on the second system using the first and second key parts. Key creation also includes binding key control information to the first secret material in the first system, wherein the key control information includes information relating to key type and key management and deriving a first key material from the combination of the key control information and the first secret material, wherein the first key material is identical to a second key material derived by the second system.

    摘要翻译: 密钥创建包括将第一公钥部分从第一系统发送到第二系统,接收由第二系统发送给第一系统的第二公共密钥部分,并且使用第一和第二公钥在第一系统中建立第一秘密资料 其中所述第一秘密材料与使用所述第一和第二关键部分在所述第二系统上建立的第二秘密材料相同。 密钥创建还包括将密钥控制信息绑定到第一系统中的第一秘密资料,其中密钥控制信息包括与密钥类型和密钥管理有关的信息,并从密钥控制信息和第一密钥的组合中导出第一密钥资料 材料,其中所述第一密钥材料与由所述第二系统导出的第二密钥材料相同。

    Secure Key Management
    6.
    发明申请
    Secure Key Management 有权
    安全密钥管理

    公开(公告)号:US20120237023A1

    公开(公告)日:2012-09-20

    申请号:US13047344

    申请日:2011-03-14

    IPC分类号: H04L9/00

    CPC分类号: H04L9/0897

    摘要: A system for implementing computer security is provided. The system includes a computer processor and an application configured to execute on the computer processor, the application implementing a method that includes creating a token and populating a payload section of the token with key material and selecting a wrapping method that specifies how the key material is securely bound to key control information. A structure of the key control information in the token is independent of the wrapping method. Implementing computer security also includes wrapping the key material and binding key control information to the key material in the token. The key control information includes information relating to usage and management of the key material.

    摘要翻译: 提供了一种实现计算机安全的系统。 该系统包括计算机处理器和被配置为在计算机处理器上执行的应用程序,该应用程序实现一种方法,该方法包括使用密钥材料创建令牌和填充令牌的有效载荷部分,并且选择包装方法,该方法指定密钥材料 安全地绑定到关键控制信息。 令牌中的关键控制信息的结构与包装方法无关。 实施计算机安全还包括将密钥材料和密钥控制信息绑定到令牌中的密钥材料。 关键控制信息包括与密钥材料的使用和管理有关的信息。

    Secure key creation
    8.
    发明授权
    Secure key creation 失效
    安全密钥创建

    公开(公告)号:US08619990B2

    公开(公告)日:2013-12-31

    申请号:US13095226

    申请日:2011-04-27

    IPC分类号: H04L9/08 H04L9/30

    摘要: A system for creating a secure key is provided that includes a computer processor and an application configured to execute on the computer processor, the application implementing a method that includes creating a token and populating a key control information section of the token with a value to indicate a minimum number of key parts used to form a key. Creating the secure key also includes populating a payload section of the token with a first key part, binding the key control information section to the payload section, adding a second key part to the first key part and iterating the value and binding the key control information section to the payload section after the second key part has been added. Creating the secure key further includes indicating the key is complete, wherein the key comprises a combination of the first and second key parts.

    摘要翻译: 提供了一种用于创建安全密钥的系统,其包括计算机处理器和被配置为在计算机处理器上执行的应用程序,所述应用程序实现包括创建令牌的方法,并且以指示值的值填充令牌的密钥控制信息部分 用于形成钥匙的最少数量的关键部件。 创建安全密钥还包括用第一密钥部分填充令牌的有效载荷部分,将密钥控制信息部分绑定到有效负载部分,向第一密钥部分添加第二密钥部分,并迭代该值并绑定密钥控制信息 在添加第二个关键部分之后的部分到有效载荷部分。 创建安全密钥还包括指示密钥是完整的,其中密钥包括第一和第二密钥部分的组合。

    Secure key management
    9.
    发明授权
    Secure key management 有权
    安全密钥管理

    公开(公告)号:US09264230B2

    公开(公告)日:2016-02-16

    申请号:US13047344

    申请日:2011-03-14

    IPC分类号: G06F7/04 H04L9/08

    CPC分类号: H04L9/0897

    摘要: A system for implementing computer security is provided. The system includes a computer processor and an application configured to execute on the computer processor, the application implementing a method that includes creating a token and populating a payload section of the token with key material and selecting a wrapping method that specifies how the key material is securely bound to key control information. A structure of the key control information in the token is independent of the wrapping method. Implementing computer security also includes wrapping the key material and binding key control information to the key material in the token. The key control information includes information relating to usage and management of the key material.

    摘要翻译: 提供了一种实现计算机安全的系统。 该系统包括计算机处理器和被配置为在计算机处理器上执行的应用程序,该应用程序实现一种方法,该方法包括使用密钥材料创建令牌和填充令牌的有效载荷部分,并且选择包装方法,该方法指定密钥材料 安全地绑定到关键控制信息。 令牌中的关键控制信息的结构与包装方法无关。 实施计算机安全还包括将密钥材料和密钥控制信息绑定到令牌中的密钥材料。 关键控制信息包括与密钥材料的使用和管理有关的信息。