US2016056956A1PendingUtilityA1

Systems and methods for secure workgroup management and communication

Assignee: SECURITY FIRST CORPPriority: Feb 22, 2008Filed: Nov 3, 2015Published: Feb 25, 2016
Est. expiryFeb 22, 2028(~1.6 yrs left)· nominal 20-yr term from priority
H04L 2209/24H04L 63/061H04L 9/0822H04L 63/0428H04L 63/065H04L 63/067H04L 63/0846H04L 63/068
51
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser may split or share a data set into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting an original data set into portions of data that may be communicated using one or more communications paths. Secure workgroup communication is supported through the secure distribution and management of a workgroup key for use with the secure data parser.

Claims

exact text as granted — not AI-modified
1 . (canceled) 
     
     
         2 . A method for securing workgroup communications between a first workgroup client and a second workgroup client, the method comprising:
 receiving a request to initiate a communication session between the first workgroup client and the second workgroup client, wherein the first workgroup client is associated with a first encryption key, and wherein the second workgroup client is associated with a second encryption key;   encrypting a workgroup key using the first encryption key to generate a first encrypted message;   encrypting the workgroup key using the second encryption key to generate a second encrypted message; and   transmitting the first encrypted message and the second encrypted message to the first workgroup client, wherein the first encrypted message and the second encrypted message are usable to secure a workgroup communication between the first workgroup client and the second workgroup.   
     
     
         3 . The method of  claim 2 , wherein the workgroup communication comprises the second encrypted message. 
     
     
         4 . The method of  claim 2 , wherein the first encryption key comprises one of a public key of the first workgroup client or an encryption key that is shared between the first workgroup client and the workgroup key server. 
     
     
         5 . The method of  claim 2 , wherein the second encryption key comprises one of a public key of the second workgroup client or an encryption key that is shared between the second workgroup client and the workgroup key server. 
     
     
         6 . The method of  claim 2 , wherein the first encryption key and the second encryption key comprise symmetric encryption keys, and wherein the first workgroup client does not have access to the second encryption key, and wherein the second workgroup client does not have access to the first encryption key. 
     
     
         7 . The method of  claim 2 , wherein the first encrypted message and the second encrypted message each include an identification of the first workgroup client and the second workgroup client. 
     
     
         8 . The method of  claim 2 , wherein the first encrypted message and the second encrypted message are transmitted by the workgroup key server in response to the request from the first workgroup client to initiate the communication session with the second workgroup client. 
     
     
         9 . The method of  claim 2 , wherein the first encrypted message and the second encrypted message further include at least one of a timestamp associated with creation of the workgroup key and a version number associated with the workgroup key. 
     
     
         10 . The method of  claim 9 , wherein the timestamp and/or the version number is usable to determine whether the workgroup key is expired. 
     
     
         11 . The method of  claim 2 , wherein the workgroup communication comprises a plurality of share headers that are associated with a plurality of shares. 
     
     
         12 . A system for securing workgroup communications between a first workgroup client and a second workgroup client, the system comprising:
 a workgroup key server configured to:
 receive a request to initiate a communication session between the first workgroup client and the second workgroup client, wherein the first workgroup client is associated with a first encryption key, and wherein the second workgroup client is associated with a second encryption key; 
 encrypt a workgroup key using the first encryption key to generate a first encrypted message; 
 encrypt the workgroup key using the second encryption key to generate a second encrypted message; and 
 transmit the first encrypted message and the second encrypted message to the first workgroup client, wherein the first encrypted message and the second encrypted message are usable to secure a workgroup communication between the first workgroup client and the second workgroup. 
   
     
     
         13 . The system of  claim 12 , wherein the workgroup communication comprises the second encrypted message. 
     
     
         14 . The system of  claim 12 , wherein the first encryption key comprises one of a public key of the first workgroup client or an encryption key that is shared between the first workgroup client and the workgroup key server. 
     
     
         15 . The system of  claim 12 , wherein the second encryption key comprises one of a public key of the second workgroup client or an encryption key that is shared between the second workgroup client and the workgroup key server. 
     
     
         16 . The system of  claim 12 , wherein the first encryption key and the second encryption key comprise symmetric encryption keys, and wherein the first workgroup client does not have access to the second encryption key, and wherein the second workgroup client does not have access to the first encryption key. 
     
     
         17 . The system of  claim 12 , wherein the first encrypted message and the second encrypted message each include an identification of the first workgroup client and the second workgroup client. 
     
     
         18 . The system of  claim 12 , wherein the first encrypted message and the second encrypted message are transmitted by the workgroup key server in response to the request from the first workgroup client to initiate the communication session with the second workgroup client. 
     
     
         19 . The system of  claim 12 , wherein the first encrypted message and the second encrypted message further include at least one of a timestamp associated with creation of the workgroup key and a version number associated with the workgroup key. 
     
     
         20 . The system of  claim 19 , wherein the timestamp and/or the version number is usable to determine whether the workgroup key is expired. 
     
     
         21 . The system of  claim 12 , wherein the workgroup communication comprises a plurality of share headers that are associated with a plurality of shares.

Join the waitlist — get patent alerts

Track US2016056956A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.