US20080098214A1

Encryption/decryption method, method for safe data transfer across a network, computer program products and computer readable media

Claim Score by NHIP

Read claim 1, the broadest

Abstract

An encryption/decryption method is disclosed. The method comprises: using at least one public encryption algorithm for encrypting/decrypting data by using an encryption key, and using a digital certificate for obtaining the encryption key, being the digital certificate one intended for a purpose of guaranteeing a user's identity, with at least one field including a safe combination of bytes predetermined for containing a guarantee key intended for the purpose of guaranteeing the user's identity. The method also comprises a) selecting, according to at least one predetermined steganographic criterion, a subset of the bits of the field with the guarantee key and/or of at least another field of at least the digital certificate also including a safe combination of bytes but not containing the guarantee key, and b) generating from at least the selected bits the encryption key.

US20080098214A1, drawing sheet 1
Sheet 1 of 8

Term

Projected expiry 24 October 2026.

  1. Priority and filed
  2. Published
  3. Today
  4. Projected expiry

29 claims: 2 independent, 27 dependent

  1. 1
    Broadest claimClaim Score 62, broad(NHIP)An encryption/decryption method, of the type comprising:using at least one encryption algorithm for encrypting/decrypting data with an encryption key, using a digital certificate for obtaining said encryption key, wherein said digital certificate is one intended for a purpose of guaranteeing a user identity, with at least one field including a safe combination of bytes predetermined for containing a guarantee key intended for said purpose of guaranteeing said user identity, and wherein the method comprises: a) selecting, according to at least one predetermined steganographic criterion, a subset of the bits of said at least one field with said guarantee key and/or of at least another field of at least said digital certificate also including a safe combination of bytes but not containing said guarantee key, and b) generating from at least said selected bits said encryption key.
  2. 13
    A method for safe data transfer across a network, the method comprising:i) receiving, by a second user, a file containing encrypted data sent by a first user, ii) retrieving a fingerprint from said file and a fingerprint from a digital certificate of said second user, iii) establishing a secure communication between said second user and an authorization server, iv) sending said fingerprints of said second user retrieved in step ii) to said authorization server, v) checking an authorization list in said authorization server in order to find out if there is an entry of said fingerprints and if said entry means the second user has permission to decrypt said file sent by said first user, and if there is that permission do the next steps: vi) selecting and sending, from said authorization server, to the second user, data forming a safe combination of bytes, said data related to said first user as it has been used previously by the first user to obtain an encryption key with which said file has been encrypted, vii) obtaining, for the second user, said encryption key from said data forming a safe combination of bytes received, and viii) using said encryption key to decrypt, or revert, said encrypted data of said file.