Patent · US Active

Secure session capability using public-key cryptography without access to the private key

US8782774B1 · kind B1 · utility

96Cited by
0References
17Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 7, 2013
Grant dateJul 15, 2014
Priority date
Expiry dateMar 7, 2033

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/061
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A server establishes a secure session with a client device where a private key used in the handshake when establishing the secure session is stored in a different server. During the handshake procedure, the server receives a premaster secret that has been encrypted using a public key bound with a domain for which the client device is attempting to establish a secure session with. The server transmits the encrypted premaster secret to another server for decryption. The server receives the decrypted premaster secret and continues with the handshake procedure including generating a master secret from the decrypted premaster secret and generating one or more session keys that are used in the secure session for encrypting and decrypting communication between the client device and the server.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.