Patent · US Active

Performing an operation on a data storage

US9754118B2 · kind B2 · utility

1Cited by
1References
33Claims
0Family size

Assignee

Inventors

Key dates

Filing dateSep 9, 2013
Grant dateSep 5, 2017
Priority date
Expiry dateSep 9, 2033

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F16/22
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A method of performing an operation on a data storage for storing data being encrypted with a key KD associated with an owner of the data is provided. The method includes deriving, for each authorized client Cj, a first key KCj and a second key KTj, providing the client Cj with the first key KCj, and providing a Trusted Third Party (TTP) with the second key KTj. The method further includes, at a Policy Enforcement Point, receiving a request for performing the operation on the data storage from a client Ck of the authorized clients, acquiring a first key KCk from the client Ck, acquiring a second key KTk from the TTP, deriving the key KD from the first key KCk and the second key KTk, and performing the operation on the data storage using the derived key KD. The disclosed trust model uses two-part secret sharing.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.