Invention Grant
- Patent Title: Trusted key diversity on cloud edge devices
-
Application No.: US16186481Application Date: 2018-11-09
-
Publication No.: US11038678B2Publication Date: 2021-06-15
- Inventor: Eustace Ngwa Asanghanwa , Angelo Roncalli Ribeiro , Mahesh Sham Rohera , Michael Richard Yagley
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Agency: Holzer Patel Drennan
- Main IPC: H04L9/06
- IPC: H04L9/06 ; H04L9/08 ; G06F21/60 ; H04L9/14 ; H04L29/08 ; H04L9/32 ; H04L29/06

Abstract:
A root of trust is established between a cloud and an edge device that communicates with the cloud. The root of trust may be embodied as a secret device key securely stored by the edge device and the cloud. The edge device receives arbitrary cloud modules (workloads) that include guest/tenant code that may communicate with the cloud and possibly local/leaf devices connected to or included with the edge device. The edge device extends or diversifies the root of trust to the cloud modules based on the device key. New keys are derived from the device key. The new keys are used to sign credentials (e.g. tokens or certificates) for the respective cloud modules. This provides each cloud module with its own trusted unique cloud identity that can be verified by the cloud using the cloud's copy of the device key.
Public/Granted literature
- US20200153623A1 TRUSTED KEY DIVERSITY ON CLOUD EDGE DEVICES Public/Granted day:2020-05-14
Information query