首页> 外国专利> Language-agnostic secure application development

Language-agnostic secure application development

机译:与语言无关的安全应用程序开发

摘要

The disclosed technology for a hardware system to access a secure backend system uses non-volatile memory to hold encrypted secrets, volatile memory to hold decrypted secrets ready for use, a keys-for-all (K4A) server, and app servers running K4A clients. To access the backend system in production, each app server uses a decrypted secret and a certificate that identifies the app server and certifies its role and physical and logical location. At initialization of the app server, a K4A client is instantiated that launches and tracks processes, running on the app server, that are authorized to request decryption services. The K4A client responds to a decryption request from an authorized process, determined based on tracking of processes launched, by requesting decryption by a K4A server, using the certificate, and returns to the process, in volatile memory, a decrypted secret or a reference to the decrypted secret, decrypted by the K4A server.
机译:公开的用于硬件系统访问安全后端系统的技术使用非易失性存储器保存加密的机密,使用易失性存储器保存准备使用的解密机密,全键(K4A)服务器和运行K4A客户端的应用程序服务器。为了访问生产中的后端系统,每个应用程序服务器都使用解密的机密和一个证书来标识应用程序服务器并证明其角色以及物理和逻辑位置。在初始化应用服务器时,将实例化一个K4A客户端,该客户端启动并跟踪在该应用服务器上运行的,被授权请求解密服务的进程。 K4A客户端通过使用证书请求K4A服务器的解密,来响应来自授权进程的解密请求,该请求是基于对启动的进程的跟踪而确定的,并在易失性存储器中将解密的机密或引用返回给该进程。由K4A服务器解密的解密机密。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号