首页> 外国专利> System and method to transparently integrate private key operations from a smart card with host-based encryption services

System and method to transparently integrate private key operations from a smart card with host-based encryption services

机译:将来自智能卡的私钥操作与基于主机的加密服务透明地集成在一起的系统和方法

摘要

A system and method provide transparent integration of a smart card private key operations with an existing set of encryption services and system applications. A key store manager manages user key data, and handles requests for key operations from the system applications. A user information file stores user data, including user private keys for users that do not have smart cards, and an indication of those users that have smart cards. A set of system applications interfaces with the key store manager through encryption protocol specific application programming interfaces. Users connect to the system through terminals or remote computers that may be equipped with smart card readers. For users having smart cards, the key store manager forwards to the smart cards requests for private key operations, such as encryption or decryption with the user's private key, from the system applications. In this manner the user's private key cannot be compromised by exposure to the computer system. For users without smart cards the key store manager forwards the request for private key operation to an encryption service for handling. The key store manager may handle only requests for private key operations, with the system applications identifying and handling directly public key operations, or the key store manager may handle both private key and public key operations.
机译:一种系统和方法提供了智能卡私钥操作与现有的一组加密服务和系统应用程序的透明集成。密钥库管理器管理用户密钥数据,并处理来自系统应用程序的密钥操作请求。用户信息文件存储用户数据,包括不具有智能卡的用户的用户私钥以及具有智能卡的那些用户的指示。一组系统应用程序通过特定于加密协议的应用程序编程接口与密钥存储管理器进行接口。用户通过可能配有智能卡读卡器的终端或远程计算机连接到系统。对于具有智能卡的用户,密钥存储管理器将来自系统应用程序的私钥操作请求(例如使用用户的私钥进行加密或解密)转发给智能卡。以这种方式,用户的私钥不会因暴露于计算机系统而受到损害。对于没有智能卡的用户,密钥库管理器将对私钥操作的请求转发到加密服务以进行处理。密钥库管理器可以只处理对私钥操作的请求,而系统应用程序可以直接识别和处理公钥操作,或者密钥库管理器可以处理私钥和公钥操作。

著录项

  • 公开/公告号EP0752635B1

    专利类型

  • 公开/公告日2001-09-05

    原文格式PDF

  • 申请/专利权人 SUN MICROSYSTEMS INC;

    申请/专利号EP19960109715

  • 发明设计人 SAMAR VIPIN;

    申请日1996-06-17

  • 分类号G06F1/00;

  • 国家 EP

  • 入库时间 2022-08-22 01:17:09

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号