Nova Patents
WO2012152845A1

Method for handling privacy data

Abstract

The present invention aims to improve data protection against illegal access by a strong differentiation of the security level specific on a type of data so that when the protection on a part of the data is violated, the remaining data are still inaccessible. A method for controlling access, via an open communication network, to user private data, comprising steps of: dividing the user private data into a plurality of categories, each category defining a privacy level of the data,encrypting the user private data of each category with a category key pertaining to the category of the data,attributing to a stakeholder an entity configured for accessing to at least one category of user private data, and authorizing the access to the at least one category of user private data for the entity of the stakeholder, by providing the stakeholder with the category keys required for decrypting the user private data of the corresponding category.

WO2012152845A1, drawing sheet 1
Sheet 1 of 2

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

15 claims: 2 independent, 13 dependent

  1. 1
    CLAIMS 1 . A method for controlling access, via an open communication network (C), to user private data (dC1 , dC2, ...dCn) with a strong differentiation of the security level for data sharing a common privacy level and a high granularity of protection by a diversity of encryption / decryption keys, said user private data (dC1 , dC2,...dCn) being provided by a plurality of source entities (SE1 , SE2, ...SEn), comprising steps of:- dividing the user private data (dC1 , dC2,...dCn) into a plurality of categories (C1 , C2,...Cn), each category (C1 , C2,...Cn) defining a privacy level of the user private data (dC1 , dC2,...dCn), - encrypting by each source entity (SE1 , SE2, ...SEn) the user private data (dC1 , dC2,...dCn) of each category (C1 , C2, ...Cn) with a category key (KC1 , KC2, ...KCn) pertaining to the category (C1 , C2, ...Cn) of the user private data (dC1 , dC2, ...dCn), - attributing to a stakeholder (S1 , S2, ...Sn) at least one entity (CE1 , CE2, ...Cn) configured for accessing to at least one category (C1 , C2, ...Cn) of user private data (dC1 , dC2, ,...dCn), - authorizing the access to the at least one category (C1 , C2, ...Cn) of user private data (dC1 , dC2, ...dCn) for the at least one entity (CE1 , CE2, ...Cn) of the stakeholder (S1 , S2, ...Sn), by providing the at least one entity (CE1 , CE2, ...Cn) with the category keys (KC1 , KC2, ...KCn) required for decrypting the user private data (dC1 , dC2, ...dCn) of the corresponding category (C1 , C2, ...Cn).
  2. 6
    Method according to any one of cl a i m 1 to 4 characterized in that the communication network (C) is entirely or partly a home area network.