Patent · US Expired

Data encryption key management system

US6577734B1 · kind B1 · utility

202Cited by
21References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 31, 1995
Grant dateJun 10, 2003
Priority date
Expiry dateJun 23, 2018

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L9/0894
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

The secure management of encryption keys is obtained by preventing external access thereto and ensuring that the keys do not leave an encryption unit in their original form. This result is obtained via a facility which (a) generates a unique device encryption key and at least one program encryption key, (b) encrypts the program encryption key using the device encryption key, and (c) stores the result in local memory. Thereafter, responsive to receipt of an indication to encrypt data, the program encryption key is retrieved from memory and is decrypted using the unique device encryption key. The data is then encrypted using the decrypted program encryption key and the encrypted data is stored in a server for distribution to a user who enters a request for the data. When there is a need to transport the latter key to another element, then the program key is encrypted using a symmetrical encryption key that the facility shares with the other element and the result is supplied to that element. The element then decrypts the encrypted program key using its own version of the symmetrical key.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.