IP Library Granted Patent US 12,126,610
Granted Patent B1
US 12,126,610 · App. 17/530,064 · Granted Oct 22, 2024

Central cryptographic management for computer systems

Inventors: Andrei Stoica (Chandler, AZ); Sumit Murarka (Chandler, AZ); Michael Peter Ridilla (Charlotte, NC); Samir Rameshchandra Sanghvi (Chandler, AZ); Jerome Pradier (Mesa, AZ)
Assignee: Wells Fargo Bank N.A.
H04L63/0823H04L9/3268H04L9/3263
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,126,610
App. No.
17/530,064
Granted
Oct 22, 2024
Kind
B1
Abstract

A system implemented on a server computer for managing digital certificates includes a certificate management agent module, a digital certificate processing module and a configuration module. The certificate management agent module processes requests to create a plurality of certificate management agents. Each of the certificate management agents is configured to manage a lifecycle of a digital certificate for a client electronic device. The digital certificate processing module processes requests from the certificate management agent module for digital certificates for the plurality of certificate management agents. The configuration module receives and processes configuration parameters for the certificate management agents and for the digital certificates.

Claims (40)

1. A method implemented on a client electronic device for managing a digital certificate, the method comprising:

installing a certificate management agent on the client electronic device;

storing an identifier for the certificate management agent in a configuration file on the client electronic device;

sending requests for configuration information for a plurality of digital certificates for the certificate management agent to a server computer, the requests including the identifier and the plurality of digital certificates corresponding to different types of software applications installed on the client electronic device;

receiving the configuration information for the certificate management agent from the server computer;

sending requests for the plurality of digital certificates to the server computer;

receiving the plurality of digital certificates from the server computer;

storing the plurality of digital certificates on the client electronic device; and

provisioning the plurality of digital certificates to the software applications installed on the client electronic device.

2. The method of claim 1 , further comprising:

reviewing a status of one of the plurality of digital certificates; and

sending a report regarding the status of the one of the plurality of digital certificates to the server computer.

3. The method of claim 1 , further comprising receiving periodic updates to the configuration information from the server computer.

4. The method of claim 1 , further comprising using the configuration information to process data on the client electronic device.

5. The method of claim 1 , wherein the configuration information includes a request delay time interval specifying how often the certificate management agent connects to the server computer with a request relating to one of the plurality of digital certificates.

6. The method of claim 5 , further comprising sending, to the server computer, and based on the request delay time interval, a renewal certificate request for the one of the plurality of digital certificates.

7. The method of claim 1 , wherein the identifier is unique to the certificate management agent.

8. The method of claim 1 , wherein the receiving the configuration information is performed after the installing the certificate management agent.

9. The method of claim 1 , further comprising, after the installing the certificate management agent on the client electronic device, installing one of the software [an] applications requiring the certificate management agent on the client electronic device.

10. The method of claim 1 , wherein the certificate management agent is created before the identifier.

11. The method of claim 1 , wherein the configuration information is created after the identifier is created.

12. The method of claim 1 , further comprising storing keys in a keystore.

13. The method of claim 12 , wherein the storing the plurality of digital certificates on the client electronic device includes storing the keys in the keystore.

14. The method of claim 13 , wherein the keys and the plurality of digital certificates are used in messages from the certificate management agent to a certificate management system.

15. A method implemented on a client electronic device for managing a digital certificate, the method comprising:

installing a certificate management agent on the client electronic device;

storing an identifier for the certificate management agent in a configuration file on the client electronic device, the identifier being unique to the certificate management agent, the certificate management agent being created before the identifier is created;

sending requests for configuration information for a plurality of digital certificates for the certificate management agent to a server computer, the requests including the identifier and the plurality of digital certificates corresponding to different types of software applications installed on the client electronic device;

after the installing the certificate management agent, receiving the configuration information for the certificate management agent from the server computer, the configuration information being created after the identifier is created;

sending requests for the plurality of digital certificates to the server computer;

receiving the plurality of digital certificates from the server computer;

storing the plurality of digital certificates on the client electronic device; and

provisioning the plurality of digital certificates to the software applications installed on the client electronic device.

16. The method of claim 15 , further comprising:

reviewing a status of one of the plurality of digital certificates; and

sending a report regarding the status of the one of the plurality of digital certificates to the server computer.

17. The method of claim 15 , further comprising receiving periodic updates to the configuration information from the server computer.

18. The method of claim 15 , further comprising using the configuration information to process data on the client electronic device.

19. The method of claim 15 , wherein the configuration information includes a request delay time interval specifying how often the certificate management agent connects to the server computer with a request relating to one of the plurality of digital certificates.

20. The method of claim 19 , further comprising sending, to the server computer, and based on the request delay time interval, a renewal certificate request for the one of the plurality of digital certificates.

Assignments (2)
STATEMENT OF CHANGE OF ADDRESS OF ASSIGNEE Recorded Jun 17, 2025
From: WELLS FARGO BANK, N.A.
To: WELLS FARGO BANK, N.A.
Reel/Frame 071679/0784 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 23, 2021
From: STOICA, ANDREI; MURARKA, SUMIT; RIDILLA, MICHAEL PETER; SANGHVI, SAMIR RAMESHCHANDRA; PRADIER, JEROME
To: WELLS FARGO BANK, N.A.
Reel/Frame 058192/0346 →
Continuity (2)
Division 15923216 · Mar 16, 2018
Division 14245600 · Apr 4, 2014