System for domain control validation
Abstract
A system and method for domain control validation is presented. At a certificate authority a request is received. The request includes a certificate signing request and a first Internet protocol address. The certificate signing request identifies a domain and a certificate. A second Internet protocol address for the domain is retrieved from a domain name system. When the first Internet protocol address is the same as the second Internet protocol address, the certificate is signed, and the signed certificate is transmitted to a requester of the request. When the first Internet protocol address is not the same as the second Internet protocol address, the certificate signing request is rejected.
Claims
exact text as granted — not AI-modifiedThe invention claimed is:
1 . A system, comprising:
at least one server computer having a processor and being configured to:
provide an administrative interface for a hosted account, the hosted account being associated with a domain and a hosted website for the domain;
receive, via the administrative interface, a request for a security certificate for the hosted website;
generate a certificate signing request for the hosted website, the certificate signing request identifying the domain;
determine an Internet protocol address for the hosted website of the domain;
transmit the certificate signing request and the Internet protocol address to a certificate authority; and
receive a response to the certificate signing request from the certificate authority.
2 . The system of claim 1 , wherein the at least one server computer is configured to, before receiving the request for the security certificate, authenticate a user to use the administrative interface.
3 . The system of claim 2 , wherein authenticating the user includes receiving at least one of a password and a temporary token from the user.
4 . The system of claim 1 , wherein generating the certificate signing request includes retrieving records from a customer database.
5 . The system of claim 1 , wherein generating the certificate signing request includes prompting the user to provide information using a user interface.
6 . The system of claim 1 , wherein the administrative interface is provided by a web hosting provider.
7 . The system of claim 6 , wherein the certificate authority and the web hosting provider have a pre-established trusted relationship.
8 . The system of claim 6 , wherein the certificate authority and the web hosting provider are the same entity.
9 . The system of claim 6 , wherein the certificate authority and the web hosting provider are different entities.
10 . The system of claim 1 , wherein the at least one server computer is configured to:
determine whether the hosted website is accessible by a plurality of Internet protocol addresses; and when the hosted website is accessible by a plurality of Internet protocol addresses, transmit the plurality of Internet protocol addresses to the certificate authority.
11 . The system of claim 1 , wherein receiving a response to the certificate signing request from the certificate authority includes receiving a signed certificate from the certificate authority.
12 . A system, comprising:
at least one server computer having a processor and being configured to:
receive, via an administrative interface, a request for a security certificate for a hosted website, the hosted website being associated with a domain;
transmit a certificate signing request and an Internet protocol address to a certificate authority, the certificate signing request identifying the domain and the Internet protocol address being associated with the hosted website of the domain; and
receive a response to the certificate signing request from the certificate authority.
13 . The system of claim 12 , wherein the at least one server computer is configured to, before receiving the request for the security certificate, authenticate a user to use the administrative interface.
14 . The system of claim 13 , wherein authenticating the user includes receiving at least one of a password and a temporary token from the user.
15 . The system of claim 12 , wherein the administrative interface is provided by a web hosting provider.
16 . The system of claim 15 , wherein the certificate authority and the web hosting provider have a pre-established trusted relationship.
17 . The system of claim 15 , wherein the certificate authority and the web hosting provider are the same entity.
18 . The system of claim 15 , wherein the certificate authority and the web hosting provider are different entities.
19 . The system of claim 12 , wherein the at least one server computer is configured to:
determine whether the hosted website is accessible by a plurality of Internet protocol addresses; and when the hosted website is accessible by a plurality of Internet protocol addresses, transmit the plurality of Internet protocol addresses to the certificate authority.
20 . The system of claim 12 , wherein receiving a response to the certificate signing request from the certificate authority includes receiving a signed certificate from the certificate authority.Join the waitlist — get patent alerts
Track US2017078276A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.