Invention Grant
- Patent Title: Secure network protocol cryptographic processing
-
Application No.: US15001077Application Date: 2016-01-19
-
Publication No.: US10218682B1Publication Date: 2019-02-26
- Inventor: Rami Kawach , Jesper Mikael Johansson
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US WA Seattle
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Davis Wright Tremaine LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/60 ; H04L9/32

Abstract:
The present document describes systems and methods that utilize a cryptographic service for establishing a cryptographically protected communication session, such as a TLS connection, between a client computer system and a TLS termination point. The cryptographic service retains cryptographic material associated with a server that is represented by the TLS termination point. The TLS termination point uses the cryptographic service to perform cryptographic operations associated with establishing and maintaining the cryptographically protected communication session. The cryptographic service may be provided by the server itself, a cryptographic server, or a cryptographic accelerator such as an HSM. In some embodiments, the cryptographic service tokenizes unencrypted data to be provided to the TLS termination point. If a cryptographic accelerator is used, the cryptographic accelerator may include facilities to accelerate asymmetric cryptographic operations as well as symmetric cryptographic operations.
Information query