-
公开(公告)号:US20240340272A1
公开(公告)日:2024-10-10
申请号:US18131479
申请日:2023-04-06
Applicant: Oracle International Corporation
Inventor: Anthony Long , Brady Turner , Mina Anes , Mauruthi Geetha Mohan , Adam Franklin Wilford , Bill Chau , Timothy Kraus , David Dale Becker
IPC: H04L9/40
CPC classification number: H04L63/0442 , H04L63/0823
Abstract: A method may include transmitting a request for metadata associated with a compute instance and receiving, by a computing system, metadata associated with the compute instance signed with a private key. The private key may be associated with a public key. The method may include receiving a request to access a cloud resource and transmitting the request for the metadata. The method may also include receiving the metadata. The metadata may indicate that the compute instance is hosted on the computing system. The method may also include transmitting, to an instance principal service, a request for an instance principal certificate. The request may include the metadata signed with the private key and be cryptographically verified by the instance principal service using the public key. The method may also include receiving the instance principal certificate and providing access to the could resource based on the instance principal certificate.