| CPC G06F 21/1085 (2023.08) [H04L 9/3263 (2013.01)] | 20 Claims |

|
1. A method, performed by a host agent on a user computing device, for verifying trust of a secure workspace that is formed of multiple layers with distributed ownership, the method comprising:
accessing workspace metadata for a first secure workspace that is to be deployed on the user computing device, the workspace metadata for the first secure workspace identifying multiple layers that form the first secure workspace, wherein a first set of the multiple layers is owned and managed by a first owner and a second set of the multiple layers is owned and managed by a second owner, the first and second owners being different entities;
using a first certificate pertaining to the first owner to verify trust of the first set of the multiple layers;
using a second certificate pertaining to the second owner to verify trust of the second set of the multiple layers; and
after verifying the trust of the first set of the multiple layers and the trust of the second set of the multiple layers, deploying the first set of multiple layers and the second set of multiple layers as part of the first secure workspace on the user computing device.
|