Invention Grant
- Patent Title: Secure sharing of transport layer security session keys with trusted enforcement points
- Patent Title (中): 传输层安全会话密钥与可信执行点的安全共享
-
Application No.: US11778396Application Date: 2007-07-16
-
Publication No.: US07992200B2Publication Date: 2011-08-02
- Inventor: David G. Kuehr-McLaren , Linwood H. Overby, Jr.
- Applicant: David G. Kuehr-McLaren , Linwood H. Overby, Jr.
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Carey, Rodriguez, Greenberg & Paul
- Agent Steven M. Greenberg, Esq.
- Main IPC: G06F9/00
- IPC: G06F9/00 ; G06F15/16

Abstract:
Embodiments of the present invention address deficiencies of the art in respect to security enforcement point operability in a TLS secured communications path and provide a novel and non-obvious method, system and computer program product for the secure sharing of TLS session keys with trusted enforcement points. In one embodiment of the invention, a method for securely sharing TLS session keys with trusted enforcement points can be provided. The method can include conducting a TLS handshake with a TLS client to extract and decrypt a session key for a TLS session with the TLS client traversing at least one security enforcement point. The method further can include providing the session key to a communicatively coupled key server for distribution to the at least one security enforcement point. Finally, the method can include engaging in secure communications with the TLS client over the TLS session.
Public/Granted literature
- US20090025078A1 SECURE SHARING OF TRANSPORT LAYER SECURITY SESSION KEYS WITH TRUSTED ENFORCEMENT POINTS Public/Granted day:2009-01-22
Information query