Nova Patents
EP1699162A2

Method for document distribution

Abstract

Methods for transferring among key holders in encoding and cryptographic systems the right to decode and decrypt messages in a way that does not explicitly reveal decoding and decrypting keys used and the original messages. Such methods are more secure and more efficient than typical re-encoding and re-encryption schemes, and are useful in developing such applications as document distribution and long-term file protection.

EP1699162A2, drawing sheet 1
Sheet 1 of 115

Term

Term ended

Projected expiry passed 6 April 2020, 6.5 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

10 claims: 7 independent, 3 dependent

  1. 1
    A method for encrypting an original document for distribution to a selected recipient chosen from a plurality of possible recipients, comprising the steps of:encrypting the original document with a unique session key to create an encrypted document;generating a proxy key based on a public key corresponding to the selected recipient;and transforming the encrypted document with the proxy key to create a transformed document.
  2. 2
    A method for encrypting an original document for distribution to a selected recipient chosen from a plurality of possible recipients, comprising the steps of:encrypting (912;1012) said original document, with a public key of a grantor and a random number, to create an encrypted document;generating (916;1016) a proxy key based on a private key of said grantor that is corresponding to said public key of said grantor and a private key of said selected recipient;and transforming (918;1018) at least a component of said encrypted document, with said proxy key to create a transformed document allowing thereby only said selected recipient to recover said original document from the said transformed document under use of said private key of said selected recipient, wherein said step of transforming does not reveal said original document;for anyone without knowing said private key of said grantor to recover said private key of said grantor solely from said proxy key is computationally infeasible;and for anyone without knowing said private key of said recipient to recover said private key of said recipient solely from said proxy key is computationally infeasible.
  3. 6
    The methods of any of claims 1 to 4, further comprising a step of transmitting said transformed document to said selected recipient.
  4. 7
    The method of any of claims 1 to 5, further comprising a step of decrypting (920;1020) said transformed document, with said private key of said selected recipient, to recover said original document.
  5. 8
    The method of any of claims 1 to 6, wherein said step of encrypting is performed with an encryption scheme that is based on the ElGamal cryptosystem (910-920;1010-1020).
  6. 9
    The method of any of claims 1 to 6, wherein said step of encrypting is performed with an encryption scheme that is based on the Cramer-Shoup cryptosystem (1410-1436).
  7. 10
    The method of any of claims 1 to 8, wherein said original document is distributed to said selected recipient through at least one additional intermediate grantor by repeating said steps of generating and transforming for each additional intermediate grantor.