| CPC H04L 9/3268 (2013.01) | 19 Claims |

|
1. A computer-implemented method comprising:
receiving, from a first certificate authority at a second certificate authority, a cross certificate request, the cross certificate request including an attribute unique to the first certificate authority;
generating, at the second certificate authority, a cross certificate and embedding the attribute unique to the first certificate authority as a certificate extension within the cross certificate;
signing the cross certificate with a key associated with the second certificate authority;
sending, from the second certificate authority to the first certificate authority, a second cross certificate request including an attribute unique to the second certificate authority; and
receiving a second cross certificate having embedded therein the attribute unique to the second certificate authority as a certificate extension within the second cross certificate, the second cross certificate being signed with a key associated with the first certificate authority.
|