Patents by Inventor Kent LANDERHOLM

Kent LANDERHOLM has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240394688
    Abstract: A payment card data preparation and personalization platform provides a card production environment that provides a production context in which card products and card configurations are able to be defined, for example using various guided user interfaces. Furthermore, the platform implements a data preparation engine and a personalization engine. User interfaces guide definition of payment card products, and aspects of data preparation and personalization are independently executable. A product wizard assists with guided definition of a payment card product to be used within the platform.
    Type: Application
    Filed: May 23, 2024
    Publication date: November 28, 2024
    Applicant: Entrust Corporation
    Inventors: KENT LANDERHOLM, TERRY EDWARDS, JAN PIERCE
  • Patent number: 11856088
    Abstract: Methods and systems for remote, asynchronous key entry and extraction are provided. A credential device can store a first key thereon, and can store an encrypted key component. A hardware security module manages a key template including a plurality of key components. The hardware security module manages a complementary key to the first key. The key component on the credential device can be encrypted with the first key for storage on the credential device and decrypted by the complementary key at the hardware security module. Alternately, the key component can be encrypted with the complementary key and provided to the credential device for decryption at a secure system via the first key. Accordingly, a key custodian may supply or extract a key component at a hardware security module remotely and at a time convenient to that key custodian.
    Type: Grant
    Filed: March 2, 2021
    Date of Patent: December 26, 2023
    Assignee: Entrust Corporation
    Inventors: Benoit Lemercier, Kent Landerholm
  • Publication number: 20230131348
    Abstract: Systems and methods for managing cryptographic tokens within a hardware security module are disclosed. A parent cryptographic token contains a plurality of parent cryptographic objects, and a child cryptographic token contains a plurality of child cryptographic objects. The child cryptographic token is associated with the parent cryptographic token. A session established with the child token provides access to at least some of the plurality of child cryptographic objects and at least some the plurality of parent cryptographic objects.
    Type: Application
    Filed: October 25, 2022
    Publication date: April 27, 2023
    Applicant: Entrust Corporation
    Inventors: KENT LANDERHOLM, EVAN VAALA, RICHARD KETTLEWELL
  • Patent number: 11610005
    Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.
    Type: Grant
    Filed: June 2, 2021
    Date of Patent: March 21, 2023
    Assignee: ENTRUST CORPORATION
    Inventors: Christophe Biehlmann, Kent Landerholm, Vishal Arora
  • Publication number: 20210342456
    Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.
    Type: Application
    Filed: June 2, 2021
    Publication date: November 4, 2021
    Inventors: Christophe BIEHLMANN, Kent LANDERHOLM, Vishal ARORA
  • Publication number: 20210273789
    Abstract: Methods and systems for remote, asynchronous key entry and extraction are provided. A credential device can store a first key thereon, and can store an encrypted key component. A hardware security module manages a key template including a plurality of key components. The hardware security module manages a complementary key to the first key. The key component on the credential device can be encrypted with the first key for storage on the credential device and decrypted by the complementary key at the hardware security module. Alternately, the key component can be encrypted with the complementary key and provided to the credential device for decryption at a secure system via the first key. Accordingly, a key custodian may supply or extract a key component at a hardware security module remotely and at a time convenient to that key custodian.
    Type: Application
    Filed: March 2, 2021
    Publication date: September 2, 2021
    Inventors: Benoit Lemercier, Kent Landerholm
  • Patent number: 11030328
    Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.
    Type: Grant
    Filed: May 30, 2018
    Date of Patent: June 8, 2021
    Assignee: ENTRUST CORPORATION
    Inventors: Christophe Biehlmann, Kent Landerholm, Vishal Arora
  • Patent number: 10917393
    Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
    Type: Grant
    Filed: February 5, 2020
    Date of Patent: February 9, 2021
    Assignee: Entrust Corporation
    Inventors: Vishal Arora, Scott Kullman, Kent Landerholm, Tim Zurn, Jon Wittmayer, Benoit Lemercier, Jeffrey Davison, Daniel A. Sanden
  • Publication number: 20200177559
    Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
    Type: Application
    Filed: February 5, 2020
    Publication date: June 4, 2020
    Inventors: Vishal ARORA, Scott KULLMAN, Kent LANDERHOLM, Tim ZURN, Jon WITTMAYER, Benoit LEMERCIER, Jeffrey DAVISON, Daniel A. SANDEN
  • Patent number: 10560438
    Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
    Type: Grant
    Filed: April 1, 2019
    Date of Patent: February 11, 2020
    Assignee: ENTRUST DATACARD CORPORATION
    Inventors: Vishal Arora, Scott Kullman, Kent Landerholm, Tim Zurn, Jon Wittmayer, Benoit Lemercier, Jeffrey Davison, Daniel A. Sanden
  • Publication number: 20190230068
    Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
    Type: Application
    Filed: April 1, 2019
    Publication date: July 25, 2019
    Inventors: Vishal ARORA, Scott KULLMAN, Kent LANDERHOLM, Tim ZURN, Jon WITTMAYER, Benoit LEMERCIER, Jeffrey DAVISON, Daniel A. SANDEN
  • Patent number: 10284528
    Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
    Type: Grant
    Filed: June 24, 2016
    Date of Patent: May 7, 2019
    Assignee: ENTRUST DATACARD CORPORATION
    Inventors: Vishal Arora, Scott Kullman, Kent Landerholm, Tim Zurn, Jon Wittmayer, Benoit Lemercier, Jeffrey Davison, Daniel A. Sanden
  • Publication number: 20180349618
    Abstract: A cryptographic object management system is provided that includes physically separated first and second object management sites. The first and second object management sites each respectively include HSMs, a HSM server connected to each of the HSMs, and a persistent layer connected to the HSM server. The HSM servers respectively manage operation of each of the HSMs. The HSM server of the first object management site includes an object manager module that manages and controls the cryptographic object management system. The persistent layers respectively store cryptographic objects for use by the HSMs. Each of the HSMs respectively performs crypto-processing on one or more of the cryptographic objects.
    Type: Application
    Filed: May 30, 2018
    Publication date: December 6, 2018
    Inventors: Christophe BIEHLMANN, Kent LANDERHOLM, Vishal ARORA
  • Publication number: 20160380981
    Abstract: A system and method for remote monitoring and management of an instant issuance system is provided. The embodiments provide secure communication between different entities within the instant issuance system. Security can be established via mutual authentication between the communicating entities of the instant issuance system prior and/or concurrent with a communication taking place.
    Type: Application
    Filed: June 24, 2016
    Publication date: December 29, 2016
    Inventors: Vishal ARORA, Scott KULLMAN, Kent LANDERHOLM, Tim ZURN, Jon WITTMAYER, Benoit LEMERCIER, Jeffrey DAVISON, Daniel A. SANDEN