发明名称 SECURE SHARING OF TRANSPORT LAYER SECURITY SESSION KEYS WITH TRUSTED ENFORCEMENT POINTS
摘要 Embodiments of the present invention address deficiencies of the art in respect to security enforcement point operability in a TLS secured communications path and provide a novel and non-obvious method, system and computer program product for the secure sharing of TLS session keys with trusted enforcement points. In one embodiment of the invention, a method for securely sharing TLS session keys with trusted enforcement points can be provided. The method can include conducting a TLS handshake with a TLS client to extract and decrypt a session key for a TLS session with the TLS client traversing at least one security enforcement point. The method further can include providing the session key to a communicatively coupled key server for distribution to the at least one security enforcement point. Finally, the method can include engaging in secure communications with the TLS client over the TLS session.
申请公布号 US2011239290(A1) 申请公布日期 2011.09.29
申请号 US201113158388 申请日期 2011.06.11
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 KUEHR-MCLAREN DAVID G.;OVERBY, JR. LINWOOD H.
分类号 G06F9/00;G06F15/16;H04L9/08 主分类号 G06F9/00
代理机构 代理人
主权项
地址