The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 30, 2021

Filed:

May. 17, 2017
Applicant:

Amazon Technologies, Inc., Seattle, WA (US);

Inventors:

Malcolm Russell Ah Kun, Kirkland, WA (US);

Uday Bheema, Bellevue, WA (US);

Ankur Goyal, Kirkland, WA (US);

Chao Li, Seattle, WA (US);

Alexey A. Nikitin, Seattle, WA (US);

Himesh Pandya, Seattle, WA (US);

Prasanna Subash, Kenmore, WA (US);

Zhenghong Sun, Seattle, WA (US);

Nathan Bartholomew Thomas, Bellevue, WA (US);

Harshit Kumar Tiwari, Seattle, WA (US);

Venkatesh Velaga, Redmond, WA (US);

Lihao Wang, Seattle, WA (US);

Brian Scott Waters, Renton, WA (US);

Jeffery David Wells, Redmond, WA (US);

Anand Krishnamoorthy, Redmond, WA (US);

Assignee:

Amazon Technologies, Inc., Seattle, WA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/32 (2006.01);
U.S. Cl.
CPC ...
H04L 63/0823 (2013.01); H04L 9/3247 (2013.01); H04L 9/3268 (2013.01); H04L 9/3271 (2013.01); H04L 63/0435 (2013.01); H04L 63/0442 (2013.01); H04L 63/10 (2013.01);
Abstract

A computer server controls access to a hosted service using digital certificates that are requested from each client attempting to access the service. When a particular client accesses the hosted service, the host service requests a digital certificate from the particular client and issues a challenge message. The particular client signs the challenge message and provides a client digital certificate to the hosted service. The hosted service confirms that the signature on the challenge message matches the client digital certificate, and that the client digital certificate is signed by a trusted entity. Trusted entities are defined by an administrator by uploading, to the hosted service, one or more trusted digital certificates associated with a trusted entities. Using the trusted digital certificates, the hosted service confirms that the digital certificate provided by the particular client is signed by at least one of the trusted entities.


Find Patent Forward Citations

Loading…