US20120072723A1

Systems and methods for secure data sharing

Claim Score by NHIP

Read claim 1, the broadest

Abstract

Systems and methods are provided for creating and using a sharable file-level key to secure data files. The sharable file-level key is generated based on a workgroup key associated with the data file, as well as unique information associated with the data file. The sharable file-level key may be used to encrypt and split data using a Secure Parser. Systems and methods are also provided for sharing data without replicating the data on the machine of the end user. Data is encrypted and split across an external/consumer network and an enterprise/producer network. Access to the data is provided using a computing image generated by a server in the enterprise/producer network and then distributed to end users of the external/consumer network. This computing image may include preloaded files that provide pointers to the data that was encrypted and split. No access or replication of the data on the enterprise/producer network is needed in order for a user of the external/consumer network to access the data.

US20120072723A1, drawing sheet 1
Sheet 1 of 74

Term

5 yearsto projected expiry

Projected expiry 20 September 2031, counted from filing; an application has no term until it is granted.

  1. Priority and filed
  2. Published
  3. Today
  4. Projected expiry

28 claims: 4 independent, 24 dependent

  1. 1
    Broadest claimClaim Score 86, broad(NHIP)A method for encrypting a data file, comprising:receiving a request to encrypt the data file;retrieving a workgroup key associated with the data file;retrieving unique information associated with the data file;computing a hash value of the workgroup key;combining the hash value of the workgroup key and the unique information to form a file-level key;and encrypting the data file based on the file-level key.
  2. 9
    A system for encrypting a data file, the comprising a processor configured to:receive a request to encrypt the data file;retrieve a workgroup key associated with the data file;retrieve unique information associated with the data file;compute a hash value of the workgroup key;combine the hash value of the workgroup key and the unique information to form a file-level key;and encrypt the data file based on the file-level key.
  3. 17
    A method for securely sharing a data set, comprising:encrypting the data set using at least one cryptographic key;generating a random or pseudo-random value distributing, based at least in part on the random or pseudorandom value, the encrypted data in the data set into two or more shares;distributing the two or more data shares across at least one consumer storage location and at least one enterprise storage location;generating permissions associated with the data set;generating a computing image;distributing the computing image to users associated with the at least one consumer storage location;and using the computing image, providing access to the data set based on the permissions.
  4. 23
    A system for securely sharing a data set, the system comprising a server configured to:encrypt the data set using at least one cryptographic stored on a key manager;generate a random or pseudo-random value distribute, based, at least in part, on the random or pseudorandom value, encrypted data in the data set into two or more shares;distribute the two or more data shares across at least one consumer storage location and at least one enterprise storage location;generate permissions associated with the data set;generate a computing image;distribute the computing image to users associated with the at least one consumer storage location;and using the computing image, provide access to the data set based on the permissions.