- 专利标题: Security system and method thereof using both KMS and HSM
-
申请号: US16985266申请日: 2020-08-05
-
公开(公告)号: US11411719B2公开(公告)日: 2022-08-09
- 发明人: Dongsu Han , Juhyeng Han , Seongmin Kim
- 申请人: KOREA ADVANCED INSTITUTE OF SCIENCE AND TECHNOLOGY
- 申请人地址: KR Daejeon
- 专利权人: KOREA ADVANCED INSTITUTE OF SCIENCE AND TECHNOLOGY
- 当前专利权人: KOREA ADVANCED INSTITUTE OF SCIENCE AND TECHNOLOGY
- 当前专利权人地址: KR Daejeon
- 代理机构: Sughrue Mion, PLLC
- 优先权: KR10-2019-0142651 20191108
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/08 ; H04L9/32
摘要:
The present disclosure in some embodiments provides a security system using both key management service (KMS) and a hardware security module (HSM), and a method of operating the security system. At least one embodiment provides a security system including an HSM, a bootstrapping enclave, and one or more KMS enclaves. The HSM is configured to generate, replace or remove a root key, the HSM being physically independent. The bootstrapping enclave is configured to receive the root key from the HSM. The one or more KMSs are configured to perform an attestation procedure with the bootstrapping enclave, to receive the root key from the bootstrapping enclave, and to utilize the root key for establishing a secure channel with the HSM.
公开/授权文献
信息查询