Central cryptographic management for computer systems

US9954848B1 · US · B1

Patent metadata
FieldValue
Publication numberUS-9954848-B1
Application numberUS-201414245600-A
CountryUS
Kind codeB1
Filing dateApr 4, 2014
Priority dateApr 4, 2014
Publication dateApr 24, 2018
Grant dateApr 24, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A system implemented on a server computer for managing digital certificates includes a certificate management agent module, a digital certificate processing module and a configuration module. The certificate management agent module processes requests to create a plurality of certificate management agents. Each of the certificate management agents is configured to manage a lifecycle of a digital certificate for a client electronic device. The digital certificate processing module processes requests from the certificate management agent module for digital certificates for the plurality of certificate management agents. The configuration module receives and processes configuration parameters for the certificate management agents and for the digital certificates.

First claim

Opening claim text (preview).

What is claimed is: 1. A system implemented on a server computer for managing digital certificates, the system comprising: a computer-readable storage medium encoding instructions; and a processor programmed to execute the instructions to create: an agent module, the agent module processing requests to create a plurality of certificate management agents for managing lifecycles of digital certificates, each of the plurality of certificate management agents being configured to manage a lifecycle of a digital certificate for a client electronic device, and at least one of the plurality of certificate management agents being stored on each client electronic device; a digital certificate processing module, the digital certificate processing module processing requests from the agent module for digital certificates for the plurality of certificate management agents; a configuration module, the configuration module receiving and processing configuration parameters for the certificate management agents and for the digital certificates; and an agent manager module configured to add or modify agent groups, wherein each agent group comprises one or more agent managers for managing one or more of the certificate management agents, wherein each agent manager is associated with an assignable authority level, wherein each agent manager is assignable to multiple agent groups, and wherein each agent manager is assignable to different authority levels within different agent groups; wherein the agent module generates a unique identifier for each of the plurality of certificate management agents when each of the plurality of certificate management agents is created, and wherein the unique identifier is different for each certificate management agent and is based on a respective client electronic device; and wherein the digital certificate processing module generates a digital certificate on the server computer for the client electronic device based upon configuration information from the configuration module, the configuration module using the unique identifier to identify the configuration information for the client electronic device. 2. The system of claim 1 , wherein the digital certificate processing module provides the configuration information for the digital certificates to a certificate authority and obtains the digital certificates from the certificate authority. 3. The system of claim 1 , wherein the configuration module includes a plurality of configuration templates. 4. The system of claim 1 , wherein the agent manager module is further configured to add or modify configuration management agents for the multiple agent groups. 5. The system of claim 1 , further comprising a scheduler module for scheduling a provisioning of a digital certificate at the client electronic device. 6. The system of claim 1 , further comprising an activity report module for receiving reports regarding a health status of a digital certificate. 7. The system of claim 1 , further comprising a server communication module for establishing a mode of communication between the server computer and a certificate management agent on the client electronic device, wherein the mode of communication is either a push mode or a pull mode, the push mode comprising initiating communications to the client electronic device from the server computer, the pull mode comprising receiving communications at the server computer initiated at the client electronic device.

Assignees

Inventors

Classifications

  • involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements (network architectures or network communication protocols for supporting authentication of entities using certificates in a packet data network H04L63/0823) · CPC title

  • Electricity · mapped topic

  • using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL] · CPC title

  • using certificates (cryptographic mechanisms or cryptographic arrangements for entity authentication involving certificates H04L9/3263) · CPC title

  • involving a third party or a trusted authority · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9954848B1 cover?
A system implemented on a server computer for managing digital certificates includes a certificate management agent module, a digital certificate processing module and a configuration module. The certificate management agent module processes requests to create a plurality of certificate management agents. Each of the certificate management agents is configured to manage a lifecycle of a digital…
Who is the assignee on this patent?
Wells Fargo Bank Na, Wells Fargo Bank Na
What technology area does this patent fall under?
Primary CPC classification H04L63/0823. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Apr 24 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).