Patents by Inventor Kent LANDERHOLM
Kent LANDERHOLM has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20240394688Abstract: A payment card data preparation and personalization platform provides a card production environment that provides a production context in which card products and card configurations are able to be defined, for example using various guided user interfaces. Furthermore, the platform implements a data preparation engine and a personalization engine. User interfaces guide definition of payment card products, and aspects of data preparation and personalization are independently executable. A product wizard assists with guided definition of a payment card product to be used within the platform.Type: ApplicationFiled: May 23, 2024Publication date: November 28, 2024Applicant: Entrust CorporationInventors: KENT LANDERHOLM, TERRY EDWARDS, JAN PIERCE
-
Patent number: 11856088Abstract: Methods and systems for remote, asynchronous key entry and extraction are provided. A credential device can store a first key thereon, and can store an encrypted key component. A hardware security module manages a key template including a plurality of key components. The hardware security module manages a complementary key to the first key. The key component on the credential device can be encrypted with the first key for storage on the credential device and decrypted by the complementary key at the hardware security module. Alternately, the key component can be encrypted with the complementary key and provided to the credential device for decryption at a secure system via the first key. Accordingly, a key custodian may supply or extract a key component at a hardware security module remotely and at a time convenient to that key custodian.Type: GrantFiled: March 2, 2021Date of Patent: December 26, 2023Assignee: Entrust CorporationInventors: Benoit Lemercier, Kent Landerholm
-
Publication number: 20230131348Abstract: Systems and methods for managing cryptographic tokens within a hardware security module are disclosed. A parent cryptographic token contains a plurality of parent cryptographic objects, and a child cryptographic token contains a plurality of child cryptographic objects. The child cryptographic token is associated with the parent cryptographic token. A session established with the child token provides access to at least some of the plurality of child cryptographic objects and at least some the plurality of parent cryptographic objects.Type: ApplicationFiled: October 25, 2022Publication date: April 27, 2023Applicant: Entrust CorporationInventors: KENT LANDERHOLM, EVAN VAALA, RICHARD KETTLEWELL
-
Patent number: 11610005Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.Type: GrantFiled: June 2, 2021Date of Patent: March 21, 2023Assignee: ENTRUST CORPORATIONInventors: Christophe Biehlmann, Kent Landerholm, Vishal Arora
-
Publication number: 20210342456Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.Type: ApplicationFiled: June 2, 2021Publication date: November 4, 2021Inventors: Christophe BIEHLMANN, Kent LANDERHOLM, Vishal ARORA
-
Publication number: 20210273789Abstract: Methods and systems for remote, asynchronous key entry and extraction are provided. A credential device can store a first key thereon, and can store an encrypted key component. A hardware security module manages a key template including a plurality of key components. The hardware security module manages a complementary key to the first key. The key component on the credential device can be encrypted with the first key for storage on the credential device and decrypted by the complementary key at the hardware security module. Alternately, the key component can be encrypted with the complementary key and provided to the credential device for decryption at a secure system via the first key. Accordingly, a key custodian may supply or extract a key component at a hardware security module remotely and at a time convenient to that key custodian.Type: ApplicationFiled: March 2, 2021Publication date: September 2, 2021Inventors: Benoit Lemercier, Kent Landerholm
-
Patent number: 11030328Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.Type: GrantFiled: May 30, 2018Date of Patent: June 8, 2021Assignee: ENTRUST CORPORATIONInventors: Christophe Biehlmann, Kent Landerholm, Vishal Arora
-
Patent number: 10917393Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.Type: GrantFiled: February 5, 2020Date of Patent: February 9, 2021Assignee: Entrust CorporationInventors: Vishal Arora, Scott Kullman, Kent Landerholm, Tim Zurn, Jon Wittmayer, Benoit Lemercier, Jeffrey Davison, Daniel A. Sanden
-
Publication number: 20200177559Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.Type: ApplicationFiled: February 5, 2020Publication date: June 4, 2020Inventors: Vishal ARORA, Scott KULLMAN, Kent LANDERHOLM, Tim ZURN, Jon WITTMAYER, Benoit LEMERCIER, Jeffrey DAVISON, Daniel A. SANDEN
-
Patent number: 10560438Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.Type: GrantFiled: April 1, 2019Date of Patent: February 11, 2020Assignee: ENTRUST DATACARD CORPORATIONInventors: Vishal Arora, Scott Kullman, Kent Landerholm, Tim Zurn, Jon Wittmayer, Benoit Lemercier, Jeffrey Davison, Daniel A. Sanden
-
Publication number: 20190230068Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.Type: ApplicationFiled: April 1, 2019Publication date: July 25, 2019Inventors: Vishal ARORA, Scott KULLMAN, Kent LANDERHOLM, Tim ZURN, Jon WITTMAYER, Benoit LEMERCIER, Jeffrey DAVISON, Daniel A. SANDEN
-
Patent number: 10284528Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.Type: GrantFiled: June 24, 2016Date of Patent: May 7, 2019Assignee: ENTRUST DATACARD CORPORATIONInventors: Vishal Arora, Scott Kullman, Kent Landerholm, Tim Zurn, Jon Wittmayer, Benoit Lemercier, Jeffrey Davison, Daniel A. Sanden
-
Publication number: 20180349618Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.Type: ApplicationFiled: May 30, 2018Publication date: December 6, 2018Inventors: Christophe BIEHLMANN, Kent LANDERHOLM, Vishal ARORA
-
Publication number: 20160380981Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.Type: ApplicationFiled: June 24, 2016Publication date: December 29, 2016Inventors: Vishal ARORA, Scott KULLMAN, Kent LANDERHOLM, Tim ZURN, Jon WITTMAYER, Benoit LEMERCIER, Jeffrey DAVISON, Daniel A. SANDEN