Inventors:
Larry An - Great Falls VA
Hamid Bacha - Great Falls VA
Robert Briggs - Burke VA
Robert Burns - Pembroke Pines FL
Robert B. Carroll - Mt. Kisco NY
Mark Fisk - North Potomac MD
Hatem Ghafir - Olney MD
Raymond Good - Ashburn VA
Srinivasa Kasturi - Annadale VA
Ku Lee - Germantown MD
Drew Kittel - Washington DC
Lolo Lasida - Alexandria VA
Hiroshi Maruyama - Tokyo, JP
Amit Pamecha - Fairfax VA
Paresh Patel - Leicester, GB
Dieter Poetzschke - North Potomac MD
Roger Reider - Silver Spring MD
Khalid Asad - Frederick MD
Assignee:
International Business Machines Corporation - Armonk NY
International Classification:
H04L 900
US Classification:
713156, 713151, 713152, 713155, 713193, 713201, 380 30
Abstract:
A secure-end-to-end communication system for electronic business system and method of operation, e. g. , the Internet, includes a web serverâvault controller having personal storage vaults in the controller for users, registration and certification authorities. Each personal vault runs programs on the controller under a unique UNIX user ID. Data storage is provided by the controller wherein the storage is owned by the same user ID assigned to the vault. A registration authority running as a software application in the controller processes requests to issue, renew and revoke digital certificates issued by a certification authority using two pairs of public-private keys. The registration authority interacts with the vault controller to decide whether an applicant qualifies to receive a digital certificate. The certification authority running as software application in the controller includes a certificate management system that provides services such as issuing, revoking, suspending, resuming, and renewing a users right to digital certificates.