US2021385219A1PendingUtilityA1

Method and system for data security within independent computer systems and digital networks

Assignee: ZAMNA TECH LIMITEDPriority: Jul 10, 2017Filed: Jul 13, 2021Published: Dec 9, 2021
Est. expiryJul 10, 2037(~10.9 yrs left)· nominal 20-yr term from priority
H04L 9/50H04L 9/3239G06F 21/44H04L 9/3271H04L 63/0823G06F 21/6245H04L 63/12H04W 12/02H04L 9/302H04L 9/0861H04L 2463/062H04L 9/0637H04L 63/0884H04L 63/0892H04L 2209/38
52
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A system and method for authentication, authorization, and access management based on personally identifiable information and data sets pertaining to individual identity and its attributes within independent computer systems and digital networks.

Claims

exact text as granted — not AI-modified
1 - 20 . (canceled) 
     
     
         21 . A method for data security management, comprising:
 generating a pair of cryptographic keys on a client device, the pair of cryptographic keys comprising a public key and a private key;   accessing, using the private key, an associated ledger identification smart contract of a distributed ledger;   providing an authentication request from the client device to an authenticator, wherein the authenticator creates a ledger request transaction in the distributed ledger using an authenticator smart contract of the distributed ledger; and   producing, using the associated ledger identification smart contract, at least one authentication response ledger transaction in the distributed ledger, wherein the at least one authentication response ledger transaction comprises a verification of possession of the private key by the client device to the authenticator.   
     
     
         22 . The method of  claim 21 , wherein the ledger identification smart contract is identified by a contract identifier. 
     
     
         23 . The method of  claim 21 , wherein the authenticator generates a random value, transmits the random value to the client device, and produces authenticator cryptographic data using a cryptographic function based on the generated random value. 
     
     
         24 . The method of  claim 23 , wherein producing the at least one authentication response ledger transaction comprises producing client cryptographic data at the client device using the cryptographic function and the transmitted random value. 
     
     
         25 . The method of  claim 21 , wherein the ledger request transaction comprises authenticator cryptographic data, and wherein the at least one authentication response ledger transaction comprises client cryptographic data. 
     
     
         26 . The method of  claim 21 , further comprising:
 storing personal data on the client device, wherein the authenticator generates a sharing request ledger transaction of the distributed ledger; and   providing a data sharing response from the client to the authenticator by generating a sharing ledger transaction within the distributed ledger, wherein the personal data is verified for proof of ownership.   
     
     
         27 . The method of  claim 21 , wherein generating the pair of cryptographic keys comprises protecting the pair of cryptographic keys with biometric data. 
     
     
         28 . The method of  claim 21 , wherein generating the pair of cryptographic keys comprises encrypting the generated private key using a cryptographic primitive. 
     
     
         29 . The method of  claim 21 , wherein the distributed ledger comprises at least one of an immutable distributed ledger, a public ledger, and a private ledger. 
     
     
         30 . A system for data security management, comprising:
 one or more computer systems programmed to perform operations comprising:
 generating a pair of cryptographic keys on a client device, the pair of cryptographic keys comprising a public key and a private key; 
 accessing, using the private key, an associated ledger identification smart contract of a distributed ledger; 
 providing an authentication request from the client device to an authenticator, wherein the authenticator creates a ledger request transaction in the distributed ledger using an authenticator smart contract of the distributed ledger; and 
 producing, using the associated ledger identification smart contract, at least one authentication response ledger transaction in the distributed ledger, wherein the at least one authentication response ledger transaction comprises a verification of possession of the private key by the client device to the authenticator. 
   
     
     
         31 . The system of  claim 30 , wherein the ledger identification smart contract is identified by a contract identifier. 
     
     
         32 . The system of  claim 30 , wherein the authenticator generates a random value, transmits the random value to the client device, and produces authenticator cryptographic data using a cryptographic function based on the generated random value. 
     
     
         33 . The system of  claim 32 , wherein producing the at least one authentication response ledger transaction comprises producing client cryptographic data at the client device using the cryptographic function and the transmitted random value. 
     
     
         34 . The system of  claim 30 , wherein the ledger request transaction comprises authenticator cryptographic data, and wherein the at least one authentication response ledger transaction comprises client cryptographic data. 
     
     
         35 . The system of  claim 30 , the operations further comprising:
 storing personal data on the client device, wherein the authenticator generates a sharing request ledger transaction of the distributed ledger; and   providing a data sharing response from the client to the authenticator by generating a sharing ledger transaction within the distributed ledger, wherein the personal data is verified for proof of ownership.   
     
     
         36 . The system of  claim 30 , wherein generating the pair of cryptographic keys comprises protecting the pair of cryptographic keys with biometric data. 
     
     
         37 . The system of  claim 30 , wherein generating the pair of cryptographic keys comprises encrypting the generated private key using a cryptographic primitive. 
     
     
         38 . The system of  claim 30 , wherein the distributed ledger comprises at least one of an immutable distributed ledger, a public ledger, and a private ledger. 
     
     
         39 . A non-transitory computer-readable medium having instructions stored thereon that, when executed by one or more computer processors, cause the one or more computer processors to perform operations comprising:
 generating a pair of cryptographic keys on a client device, the pair of cryptographic keys comprising a public key and a private key;   accessing, using the private key, an associated ledger identification smart contract of a distributed ledger;   providing an authentication request from the client device to an authenticator, wherein the authenticator creates a ledger request transaction in the distributed ledger using an authenticator smart contract of the distributed ledger; and   producing, using the associated ledger identification smart contract, at least one authentication response ledger transaction in the distributed ledger, wherein the at least one authentication response ledger transaction comprises a verification of possession of the private key by the client device to the authenticator.

Join the waitlist — get patent alerts

Track US2021385219A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.