发明名称 Cross enterprise communication
摘要 A method provides cross enterprise communication in which intermediary communication components carry out cross enterprise communication. The method at a first sending enterprise includes: receiving a signed encrypted message from a sender within a first enterprise; validating the sender; decrypting the message; encrypting the message for receipt by a second enterprise; signing the encrypted message by the first enterprise; and sending the re-signed re-encrypted message to a second enterprise. The method at the second receiving enterprise includes: receiving a signed encrypted message from a first enterprise; validating that the first enterprise is the sender; decrypting the message; encrypting the message for receipt by one or more recipients at the second enterprise; signing the encrypted message by the second enterprise indicating that the message is from the first enterprise; and sending the re-signed re-encrypted message to the one or more recipients of the second enterprise.
申请公布号 US9130755(B2) 申请公布日期 2015.09.08
申请号 US201313781624 申请日期 2013.02.28
申请人 International Business Machines Corporation 发明人 Chatt Alan James;Paice Christopher Colin;Stewart Cyril Peter
分类号 H04L29/06;H04L9/32 主分类号 H04L29/06
代理机构 Yudell Isidore PLLC 代理人 Yudell Isidore PLLC ;Kalaitzis Parashos
主权项 1. A method for cross enterprise communication at a first sending enterprise, the method comprising: receiving from a sender a message that is encrypted with a first enterprise public key and signed with a sender private key, wherein the first enterprise public key is associated with a first enterprise, and wherein the sender private key is associated with the sender; validating the message using a sender public key, wherein the sender public key is associated with the sender; decrypting the message using a first enterprise private key, wherein the first enterprise private key is associated with the first enterprise; removing a sender's name associated with the sender from the message; encrypting the message using a second enterprise public key for receipt by a second enterprise, wherein the second enterprise public key is associated with the second enterprise, wherein encrypting the message further comprises replacing, the sender's name with a distinguished name of the first enterprise, wherein the distinguished name of the first enterprise indicates that the encrypted signed message is sent from the first enterprise; signing the message by the first enterprise using the first enterprise private key to create a re-signed and re-encrypted message; sending the re-signed and re-encrypted message signed by the first enterprise to the second enterprise; maintaining a first list of authorized senders at the first enterprise, wherein the first list of authorized senders identifies an enterprise distinguished name for each sender of a plurality of senders of the first enterprise; and maintaining a second list of other enterprises with which the first enterprise communicates; wherein at least one of the first list and the second list provides one or more distinguished names.
地址 Armonk NY US