US2019334840A1PendingUtilityA1

Anonymized Identifiers for Secure Communication Systems

Assignee: MICROSOFT TECHNOLOGY LICENSING LLCPriority: Jun 20, 2016Filed: May 15, 2019Published: Oct 31, 2019
Est. expiryJun 20, 2036(~9.9 yrs left)· nominal 20-yr term from priority
H04L 51/02H04L 63/0435H04L 51/04H04L 63/0421
52
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A computer system comprises computer storage holding a plurality of code modules, one or more processors and a communication system. The one or more processors are configured to execute the code modules and thereby implement the bots. The communication system comprises a message relay and an anonymized identifier generator. The message relay is configured to receive a message comprising an identifier of a user and an identifier of a target one of the bots. The anonymized identifier generator is configured to generate an anonymized identifier of the user unique to the target bot, by applying an anonymization function to the user identifier and the bot identifier in the message. The message relay is configured to transmit to the target bot a version of the message, which comprises the anonymized user identifier and does not include the user identifier, wherein the user identifier is not rendered accessible to the target bot.

Claims

exact text as granted — not AI-modified
1 .- 20 . (canceled) 
     
     
         21 . A system comprising:
 at least one hardware processor; and   one or more computer-readable storage media having instructions stored thereon that are executable by the at least one hardware processor to perform operations comprising:
 generating a mapping of destination identifiers to corresponding encryption processes, each encryption process unique to a single destination identifier, 
 identifying, based on the mapping, a specific encryption process unique to a destination identifier of a first message, 
 encrypting, based on the identified encryption process, a source identifier of the first message; 
 including the encrypted source identifier in the first message; 
 sending, based on the destination identifier, the first message that includes the encrypted source identifier; 
 receiving a second message indicating a second source identifier and a second destination identifier, 
 identifying, based on the mapping and the second source identifier, a second encryption process, 
 decrypting, based on the second encryption process, the second destination identifier, and 
 transmitting, based on the decrypted second destination identifier, a third message derived from the second message. 
   
     
     
         22 . The system of  claim 21 , the operations further comprising including the decrypted second destination identifier in the third message, wherein the transmission of the third message includes the decrypted second destination identifier. 
     
     
         23 . The system of  claim 21 , wherein the sending of the first message is performed by a device, the operations further comprising including a cryptographic signature of the device in the first message. 
     
     
         24 . The system of  claim 22 , the operations further comprising verifying the second message includes the cryptographic signature, wherein the transmission of the second message is in response to the verifying. 
     
     
         25 . The system of  claim 23 , the operations further comprising receiving a fourth message indicating a third source identifier and a third destination identifier;
 determining the fourth message does not include a cryptographic signature of the device; and   rejecting, based on the determining, the fourth message.   
     
     
         26 . The system of  claim 21 , the operations further comprising:
 identifying, based on the mapping, a third encryption process unique to a third destination identifier of a fourth message;   encrypting, based on the identified third encryption process, a third source identifier of the fourth message;   including the encrypted third source identifier in the fourth message;   sending, based on the third destination identifier, the fourth message that includes the encrypted third source identifier;   receiving a fifth message indicating a fourth source identifier and a fourth destination identifier;   identifying, based on the mapping and the fourth source identifier, a fourth encryption process;   decrypting, based on the fourth encryption process, the fourth destination identifier, and   transmitting, based on the decrypted fourth destination identifier, a sixth message derived from the fifth message.   
     
     
         27 . The system as recited in  claim 21 , wherein the message includes at least one of video data or audio data. 
     
     
         28 . A method, comprising:
 generating a mapping of destination identifiers to corresponding encryption processes, each encryption process unique to a single destination identifier,   identifying, based on the mapping, a specific encryption process unique to a destination identifier of a first message,   encrypting, based on the identified encryption process, a source identifier of the first message;   including the encrypted source identifier in the first message;   sending, based on the destination identifier, the first message that includes the encrypted source identifier;   receiving a second message indicating a second source identifier and a second destination identifier,   identifying, based on the mapping and the second source identifier, a second encryption process,   decrypting, based on the second encryption process, the second destination identifier, and   transmitting, based on the decrypted second destination identifier, a third message derived from the second message.   
     
     
         29 . The method of  claim 28 , further comprising including the decrypted second destination identifier in the third message, wherein the transmission of the third message includes the decrypted second destination identifier. 
     
     
         30 . The method of  claim 28 , wherein the sending of the first message is performed by a device, the method further comprising including a cryptographic signature of the device in the first message. 
     
     
         31 . The method of  claim 30 , further comprising verifying the second message includes the cryptographic signature, wherein the transmission of the second message is in response to the verifying. 
     
     
         32 . The method of  claim 31 , further comprising receiving a fourth message indicating a third source identifier and a third destination identifier;
 determining the fourth message does not include a cryptographic signature of the device; and   rejecting, based on the determining, the fourth message.   
     
     
         33 . The method of  claim 28 , further comprising:
 identifying, based on the mapping, a third encryption process unique to a third destination identifier of a fourth message;   encrypting, based on the identified third encryption process, a third source identifier of the fourth message;   including the encrypted third source identifier in the fourth message;   sending, based on the third destination identifier, the fourth message that includes the encrypted third source identifier;   receiving a fifth message indicating a fourth source identifier and a fourth destination identifier;   identifying, based on the mapping and the fourth source identifier, a fourth encryption process;   decrypting, based on the fourth encryption process, the fourth destination identifier, and   transmitting, based on the decrypted fourth destination identifier, a sixth message derived from the fifth message.   
     
     
         34 . The method as recited in  claim 28 , wherein the message includes at least one of video data or audio data. 
     
     
         35 . A computer readable storage medium comprising instructions that when executed configure hardware processing circuitry to perform operations comprising:
 generating a mapping of destination identifiers to corresponding encryption processes, each encryption process unique to a single destination identifier,   identifying, based on the mapping, a specific encryption process unique to a destination identifier of a first message,   encrypting, based on the identified encryption process, a source identifier of the first message;   including the encrypted source identifier in the first message;   sending, based on the destination identifier, the first message that includes the encrypted source identifier;   receiving a second message indicating a second source identifier and a second destination identifier,   identifying, based on the mapping and the second source identifier, a second encryption process,   decrypting, based on the second encryption process, the second destination identifier, and   transmitting, based on the decrypted second destination identifier, a third message derived from the second message.   
     
     
         36 . The computer readable storage medium of  claim 35 , further comprising including the decrypted second destination identifier in the third message, wherein the transmission of the third message includes the decrypted second destination identifier. 
     
     
         37 . The computer readable storage medium of  claim 35 , wherein the sending of the first message is performed by a device, the method further comprising including a cryptographic signature of the device in the first message. 
     
     
         38 . The computer readable storage medium of  claim 37 , further comprising verifying the second message includes the cryptographic signature, wherein the transmission of the second message is in response to the verifying. 
     
     
         39 . The computer readable storage medium of  claim 38 , further comprising receiving a fourth message indicating a third source identifier and a third destination identifier;
 determining the fourth message does not include a cryptographic signature of the device; and   rejecting, based on the determining, the fourth message.   
     
     
         40 . The computer readable storage medium of  claim 35 , further comprising:
 identifying, based on the mapping, a third encryption process unique to a third destination identifier of a fourth message;   encrypting, based on the identified third encryption process, a third source identifier of the fourth message;   including the encrypted third source identifier in the fourth message;   sending, based on the third destination identifier, the fourth message that includes the encrypted third source identifier;   receiving a fifth message indicating a fourth source identifier and a fourth destination identifier;   identifying, based on the mapping and the fourth source identifier, a fourth encryption process;   decrypting, based on the fourth encryption process, the fourth destination identifier, and   transmitting, based on the decrypted fourth destination identifier, a sixth message derived from the fifth message.

Join the waitlist — get patent alerts

Track US2019334840A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.