Invention Grant
- Patent Title: System and method for providing cryptographic operation service in virtualization environment
-
Application No.: US15551083Application Date: 2015-10-22
-
Publication No.: US10262130B2Publication Date: 2019-04-16
- Inventor: Jingqiang Lin , Kaijie Zhu , Lingchen Zhang , Bo Luo , Quanwei Cai , Congwu Li , Jiwu Jing , Wuqiong Pan
- Applicant: INSTITUTE OF INFORMATION ENGINEERING, CHINESE ACADEMY OF SCIENCES , DATA ASSURANCE & COMMUNICATION SECURITY CENTER, CHINESE ACADEMY OF SCIENCES
- Applicant Address: CN Beijing
- Assignee: DATA ASSURANCE & COMMUNICATION SECURITY CENTER, CHINESE ACADEMY OF SCIENCES
- Current Assignee: DATA ASSURANCE & COMMUNICATION SECURITY CENTER, CHINESE ACADEMY OF SCIENCES
- Current Assignee Address: CN Beijing
- Agency: SV Patent Service
- Priority: CN201510586037 20150915
- International Application: PCT/CN2015/092562 WO 20151022
- International Announcement: WO2017/045244 WO 20170323
- Main IPC: G06F21/53
- IPC: G06F21/53 ; G06F9/455 ; H04L9/08 ; H04L9/32 ; G06F21/60

Abstract:
A system and method for providing cryptographic operation service in a virtualization environment. In the system, a configuration subsystem provides an interface for an administrator and a common user to input information about a virtual cryptographic device. A key file storage subsystem stores a key file and protects it with the protection password. A virtual machine operating subsystem obtains a corresponding key file from the storage subsystem according to the input of the configuration subsystem, creates a virtual device for a guest virtual machine, and finally operates the guest virtual machine to provide cryptographic computing service for the guest virtual machine. Thus the administrator/the common user can specify a key file and input a protection password for a guest virtual machine via the corresponding interface to facilitate the creation of a virtual cryptographic device, and can manage the virtual cryptographic device in a user-friendly and centralized manner. The guest virtual machine on a virtualization management platform can request for a secure cryptographic operation service, thereby alleviating the key security problem in virtualization environment.
Public/Granted literature
- US20180232519A1 System and method for providing cryptographic operation service in virtualization environment Public/Granted day:2018-08-16
Information query