首页> 外国专利> Key management method, apparatus, computer program product, and cloud computing infrastructure in a multi-tenant computing infrastructure (key management in a multi-tenant environment)

Key management method, apparatus, computer program product, and cloud computing infrastructure in a multi-tenant computing infrastructure (key management in a multi-tenant environment)

机译:多租户计算基础结构中的密钥管理方法,设备,计算机程序产品和云计算基础结构(多租户环境中的密钥管理)

摘要

The present invention provides a unique and different key space for controlling a key management system to a tenant of a multi-tenant shared deployment. In this way, a virtual key management area is created for each tenant (for each customer), and specific customer data is co-tenanted in the IT infrastructure of the data center (s) of the provider. Whenever it is played, stored, transmitted, or virtualized, it ensures that a particular customer's data is secured using key management material that is unique to that customer. This ensures that the entire tenant data is still secure by cryptographically separating it from other tenant applications. The virtual key management area is established using a broadcast encryption (BE) protocol, and in particular, a plurality of management key variant schemes of this protocol. Virtual key management systems (VKMS) and protocols based on broadcast encryption provide secure separation of data by tenant (as well as by application) and at all levels of co-tenanted IT infrastructure, Or it can be used across any combination of resources across all levels. [Selection] Figure 6
机译:本发明提供了用于控制多租户共享部署的租户的密钥管理系统的唯一且不同的密钥空间。这样,为每个租户(每个客户)创建了一个虚拟密钥管理区域,并且特定的客户数据在提供商数据中心的IT基础架构中被共同租用。无论何时播放,存储,传输或虚拟化数据,它都可以使用该客户独有的密钥管理材料来确保特定客户的数据受到保护。这通过加密将其与其他租户应用程序分开来确保整个租户数据仍然安全。虚拟密钥管理区域是使用广播加密(BE)协议建立的,尤其是使用该协议的多个管理密钥变体方案。基于广播加密的虚拟密钥管理系统(VKMS)和协议可按租户(以及按应用程序)以及所有级别的联合租用IT基础架构提供安全的数据隔离,也可以跨所有资源的任何组合使用它水平。 [选择]图6

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号