Systems and methods for distributed cryptography as a service key loading
US12395473B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Oct 12, 2023 |
| Grant date | Aug 19, 2025 |
| Priority date | — |
| Expiry date | Dec 16, 2043 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/0428
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
An application server has a custodian application running thereon. The custodian application instantiates a cryptographic microservice. The custodian application transmits a first request message to a centralized KMS requesting a data encryption key. In response, the centralized KMS returns the data encryption key. The custodian application transmits a second request message to the cryptographic microservice application. The second request message includes a request for a wrapping certificate from the cryptographic microservice application. The custodian application receives the wrapping certificate. The custodian application transmits a third request message to the centralized KMS. The third request message includes the data encryption key encrypted via the master-level tenant key and the wrapping certificate. The custodian application also receives the data encryption key encrypted via the wrapping certificate and transmits it to the cryptographic microservice application. The cryptographic microservice application unwraps the wrapped key using the wrapping certificate.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.