EP0892519A2

System and method for secure data transmission

Abstract

A method and system for providing security to a communication system having a plurality of system users. The communication system includes first and second user sites wherein the first site includes means for generating a first encryption key and the second site includes means for generating a second encryption key that is unique relative to the first encryption key. Further included is a key management datacenter that is connected to the first and second user sites and is configured to generate both the first and second encryption keys whereby the datacenter is operative to decrypt encrypted data send by the first user site with the first encryption key and encrypt the data with the second encryption key and transmit the encrypted data to the second user site.

EP0892519A2, drawing sheet 1
Sheet 1 of 4

Term

Term ended

Projected expiry passed 17 July 2018, 8.2 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

13 claims: 3 independent, 10 dependent

  1. 1
    A secure communication system having a plurality of system users, the communication system comprising:at least first and second user sites wherein the first site includes means for generating a first encryption key and the second site includes means for generating a second encryption key that is unique relative to the first encryption key;and a key management datacenter connected to the first and second user sites and configured to generate both the first and second encryption keys whereby the datacenter is operative to decrypt encrypted data sent by the first user site with the first encryption key and encrypt the data with the second encryption key and transmit the encrypted data to the second user site.
  2. 6
    A method for securing communications over a system having a plurality of users, the system including at least first and second user sites connected to a key management datacenter, the method comprising the steps of:encrypting data with a first encryption key at the first user site;transmitting the data to the key management data center;decrypting the data with the first encryption key at the key management datacenter after it has been received from the first user site;encrypting the data with a second encryption key at the key management datacenter;transmitting the data to the second user site;and decrypting the data with the first encryption key at the second user site after it has been received from the key management datacenter.
  3. 9
    A method for transmitting data between at least first and second user sites in a communication system secured by a key management data center, the method comprising the steps of:selecting a destination address for the data to be transmitted from the first user site to the second user site;encrypting the data and the destination address with a first encryption key in the first user site;transmitting the encrypted data and destination address from the first user site to the key management data center;decrypting the encrypted data and destination address in the key management center with the first encryption key;generating a second encryption key in the key management center in dependence upon the destination address of the second user site;encrypting the data with the second encryption key in the key management datacenter;transmitting the encrypted data from the key management datacenter to the destination address of the second user site;and decrypting the encrypted data in the second user site with the second encryption key.