Invention Grant
- Patent Title: Identity management for software components using one-time use credential and dynamically created identity credential
-
Application No.: US16157735Application Date: 2018-10-11
-
Publication No.: US11496322B2Publication Date: 2022-11-08
- Inventor: Thomas P. Chmara , Lucas J. Koops , Jon Ferguson
- Applicant: Entrust, Inc.
- Applicant Address: US TX Dallas
- Assignee: Entrust, Inc.
- Current Assignee: Entrust, Inc.
- Current Assignee Address: US TX Dallas
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/64 ; G06F21/10 ; H04L9/32 ; H04L9/08 ; H04L9/40 ; G06F9/455 ; H04L9/00 ; G06F21/12

Abstract:
One or more computing devices employs a method that includes requesting a transient credential (e.g., a one-time PKI certificate) as a first identity credential for an application component instance based on a unique identifier associated with the application component instance. The method includes requesting a dynamically-created second identity credential for the application component instance of the application using a request signed (e.g., using the public key of the first identity PKI certificate) based on the transient credential. The method includes receiving the dynamically-created second identity credential and using the dynamically-created second identity credential in a cryptographic function by the application component instance; and managing the replacement of this credential in environments without persistent archival storage accessible by the device/application.
Public/Granted literature
- US20190356494A1 IDENTITY MANAGEMENT FOR SOFTWARE COMPONENTS Public/Granted day:2019-11-21
Information query