Use of key metadata during write and read operations in a dispersed storage network memory
US10693640B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Mar 17, 2017 |
| Grant date | Jun 23, 2020 |
| Priority date | — |
| Expiry date | Aug 12, 2037 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L2463/061
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Systems and Methods for encrypting and decrypting data in a dispersed storage network are disclosed. A data object may be encrypted using a data object specific encryption key, a container specific encryption key, a tenant account specific encryption key, or a time based encryption key. This specific, or more generally, secondary encryption key can be derived from a master or primary encryption key. Encryption key metadata pertaining to the master encryption key and the specific encryption key is also created and stored in the DSN. When reading an encrypted data object, the master encryption key can be retrieved and, along with the encryption key metadata, used to derive the specific encryption key. The specific encryption key can then be used to decrypt the encrypted data object to recover the data object.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.