The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 17, 2024

Filed:

Sep. 10, 2021
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

David Nguyen, Wake Forest, NC (US);

Marco Pavone, Ehningen, DE;

Clifford Lee Hansen, Rochester, MN (US);

Garry Joseph Sullivan, Rochester, MN (US);

Ross Martin Heninger, Selma, NC (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/08 (2006.01); H04L 9/30 (2006.01); H04L 9/32 (2006.01);
U.S. Cl.
CPC ...
H04L 9/0897 (2013.01); H04L 9/0819 (2013.01); H04L 9/30 (2013.01); H04L 9/3247 (2013.01); H04L 2209/12 (2013.01);
Abstract

An approach is provided for distributing a root key to a hardware security module (HSM) of an HSM cluster. A signed first command is transmitted to a source HSM to create a master key. A fingerprint of the master key is received in a response signed by the source HSM using a module signing key hardcoded into the source HSM at manufacturing time. A second command is transmitted to a first HSM to generate an importer key pair. A request is transmitted to the source HSM to create and export a wrapped master key. The master key wrapped with a transport key is received. The wrapped master key is transmitted to the first HSM. The master key is activated in the first HSM.


Find Patent Forward Citations

Loading…