发明名称 SECURE SESSION CAPABILITY USING PUBLIC-KEY CRYPTOGRAPHY WITHOUT ACCESS TO THE PRIVATE KEY
摘要 A server establishes a secure session with a client device where a private key used in the handshake when establishing the secure session is stored in a different server. During the handshake procedure, the server receives a premaster secret that has been encrypted using a public key bound with a domain for which the client device is attempting to establish a secure session with. The server transmits the encrypted premaster secret to another server for decryption. The server receives the decrypted premaster secret and continues with the handshake procedure including generating a master secret from the decrypted premaster secret and generating one or more session keys that are used in the secure session for encrypting and decrypting communication between the client device and the server.
申请公布号 WO2014138494(A1) 申请公布日期 2014.09.12
申请号 WO2014US21434 申请日期 2014.03.06
申请人 CLOUDFLARE, INC 发明人 PAHL, SEBASTIAN ANDREAS HENRY;TOURNE, MATTHIEU PHILIPPE FRANCOIS;SIKORA, PIOTR;BEJJANI, RAY RAYMOND;KNECHT, DANE ORION;PRINCE, MATTHEW BROWNING;GRAHAM-CUMMING, JOHN;HALLOWAY, LEE HAHN
分类号 H04L9/08 主分类号 H04L9/08
代理机构 代理人
主权项
地址