International Business Machines Corporation
HYPERVISOR PROTECTED KEY
Last updated:
Abstract:
A method, a computer system, and a computer program product for cryptography are provided. A guest virtual server registers with a trusted hypervisor by using guest credentials. A guest wrapping key associated with the guest credentials is generated. A satellite virtual server instance that shares a master key with the virtual guest server is generated in the trusted hypervisor. A copy of the guest wrapping key is passed to the satellite virtual server instance. A random guest key is wrapped with the guest wrapping key, thereby producing a wrapped guest key. The wrapped guest key is rewrapped with the master key to form a protected guest key.
Status:
Application
Type:
Utility
Filling date:
25 Oct 2021
Issue date:
10 Feb 2022