Invention Grant
- Patent Title: Systems and methods for providing a trusted keystore
-
Application No.: US16790564Application Date: 2020-02-13
-
Publication No.: US11356271B2Publication Date: 2022-06-07
- Inventor: Chris Madden
- Applicant: VeriFone, Inc.
- Applicant Address: US CA San Jose
- Assignee: VeriFone, Inc.
- Current Assignee: VeriFone, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Bond, Schoeneck & King, PLLC
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/06 ; H04L9/08

Abstract:
Systems and methods for providing a trusted keystore are disclosed. In one embodiment, in an information processing apparatus comprising at least one computer processor, a method for providing a trusted keystore may include: (1) selecting and storing a root Keyblock Protection Key (KBPK) in a trusted domain; (2) for each key class: creating a keyblock with a class KBPK; and storing the keyblock in an untrusted keystore in an unfrosted domain; (3) loading keyblocks to a trusted key manager in the trusted domain; (4) decrypting the keyblocks with an encryption class key; (5) verifying the keyblocks under a MAC class key; (6) loading class keyblocks to the trusted key manager from the untrusted keystore; (7) writing the keyblocks to the untrusted keystore; and (8) writing class keyblock MACs in a hierarchy to the untrusted keystore. A number of levels in the hierarchy is based on an amount of available storage in the trusted domain.
Public/Granted literature
- US20210258167A1 SYSTEMS AND METHODS FOR PROVIDING A TRUSTED KEYSTORE Public/Granted day:2021-08-19
Information query