| CPC H04L 9/3213 (2013.01) [H04L 9/0825 (2013.01); H04L 9/3247 (2013.01)] | 20 Claims |

|
1. A method for a secure virtual encryptor system, the method comprising:
deriving, by a key management system (KMS), virtual encryptor (VE) token data that associates a VE with a user token;
signing, by the KMS, a VE executable file resulting in a signature;
verifying the signature, by a system root of trust (RoT) of a virtual encryptor system (VES), the VE;
responsive to verifying signature, loading, by the VES, the executable file on a virtual machine (VM);
receiving the user token data from a user device; and
executing the VE responsive to determining an operation on a combination of the user token and the token data associated with the VE returns a specified value.
|