发明名称 Techniques for multiple independent verifications for digital certificates
摘要 A method includes (a) receiving, at a computing device, a first certificate signing request (1CSR) from a certificate authority (CA), the 1CSR including an embedded second certificate signing request (2CSR), the 2CSR having been received by the CA from an entity seeking a signed certificate from the CA that validates an identity claim made by the entity in the 2CSR, the CA having performed a preliminary verification of the 2CSR prior to embedding it in the 1CSR, (b) verifying that the 1CSR came from the CA, (c) performing a verification procedure on the embedded 2CSR independent of the preliminary verification performed by the CA, to validate the identity claim made by the entity in the 2CSR, and (d) upon successfully validating the identity claim made by the entity in the 2CSR, sending a certificate to the CA, the certificate validating the identity claim made by the entity in the 2CSR.
申请公布号 US9021255(B1) 申请公布日期 2015.04.28
申请号 US201213537904 申请日期 2012.06.29
申请人 EMC Corporation 发明人 Aharoni Idan;Hodgman Roy;Schubert Ingo
分类号 H04L29/06;G06F21/33 主分类号 H04L29/06
代理机构 BainwoodHuang 代理人 BainwoodHuang
主权项 1. A method performed by a computing device, the method comprising: receiving, at the computing device, a first certificate signing request (1CSR) from a certificate authority (CA), the 1CSR including an embedded second certificate signing request (2CSR), the 2CSR having been received by the CA from an entity seeking a signed certificate from the CA that validates an identity claim made by the entity in the 2CSR, the CA having performed a preliminary verification of the 2CSR prior to embedding it in the 1CSR; verifying, at the computing device, that the 1CSR came from the CA; performing a verification procedure on the embedded 2CSR at the computing device independent of the preliminary verification performed by the CA, to validate the identity claim made by the entity in the 2CSR; and upon successfully validating the identity claim made by the entity in the 2CSR, sending a certificate from the computing device to the CA, the certificate validating the identity claim made by the entity in the 2CSR.
地址 Hopkinton MA US