Invention Grant
US09331990B2 Trusted and unsupervised digital certificate generation using a security token
有权
使用安全令牌进行信任和无人监督的数字证书生成
- Patent Title: Trusted and unsupervised digital certificate generation using a security token
- Patent Title (中): 使用安全令牌进行信任和无人监督的数字证书生成
-
Application No.: US10740889Application Date: 2003-12-22
-
Publication No.: US09331990B2Publication Date: 2016-05-03
- Inventor: Eric F. Le Saint
- Applicant: Eric F. Le Saint
- Applicant Address: SE Stockholm
- Assignee: Assa Abloy AB
- Current Assignee: Assa Abloy AB
- Current Assignee Address: SE Stockholm
- Agency: Muirhead and Saturnelli, LLC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/32 ; G06Q20/38 ; H04L9/00

Abstract:
A method, system and computer program product for ensuring PKI key pairs are operatively installed within a secure domain of a security token prior to generating a digital certificate. The public key component of the PKI key pair is incorporated into a digital certificate which is returned to the security token for storage. The arrangement included herein incorporates the use of a critical security parameter to ensure a chain of trust with an issuing entity such as a registration authority. Furthermore, the arrangement does not require security officer or system administrator oversight during digital certificate generation as the critical security parameter provides a sufficient level of trust to ensure that digital certificate generation is being performed in conjunction with a designated security token rather than a rogue application. Lastly, separate inventive embodiments allow alternate communications and verification arrangements to be implemented.
Public/Granted literature
- US20050138386A1 Trusted and unsupervised digital certificate generation using a security token Public/Granted day:2005-06-23
Information query