×

Generating, migrating or exporting bound keys

  • US 7,765,397 B2
  • Filed: 11/08/2006
  • Issued: 07/27/2010
  • Est. Priority Date: 04/17/2002
  • Status: Expired due to Fees
First Claim
Patent Images

1. One or more computer storage media having stored thereon a plurality of instructions to implement a GenBoundKey operation, wherein the plurality of instructions, when executed by one or more processors of a computing device, causes the one or more processors to:

  • generate, in response to a program calling the GenBoundKey operation, a data structure for a new bound key that is to be bound to the one or more processors, wherein the data structure includes;

    data that allows a private key of a public/private key pair to be recovered from the data structure;

    a key usage element that identifies a key operation that can be performed with the private key, the key operation being one of a decrypt operation that decrypts additional data using the private key, a sign operation that digitally signs additional data using the private key, and a quote operation that digitally signs both additional data and an identifier of a program invoking the quote operation; and

    a condition element that specifies one or more conditions under which the private key can be used;

    cryptographically protect the data structure; and

    return the cryptographically protected data structure generated by the GenBoundKey operation to the calling program.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×