Invention Grant
- Patent Title: Type-based database confidentiality using trusted computing
-
Application No.: US15275101Application Date: 2016-09-23
-
Publication No.: US10601593B2Publication Date: 2020-03-24
- Inventor: Panagiotis Antonopoulos , Donald Alan Kossmann , Ravi Ramamurthy , Kenneth Hiroshi Eguro , Raghav Kaushik , Kedar Dubhashi , Arvind Arasu , Joachim Hammer , Jakub Szymaszek , Bala Neerumalla
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: MICROSOFT TECHNOLOGY LICENSING, LLC
- Current Assignee: MICROSOFT TECHNOLOGY LICENSING, LLC
- Current Assignee Address: US WA Redmond
- Agency: Alleman Hall Creasman & Tuttle LLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L29/06 ; G06F21/62 ; G06F21/57 ; H04L9/08

Abstract:
A “Database Confidentiality System” provides various techniques for using server-side trusted computing in combination with configurable type metadata and user- or system-definable rules associated with individual database fields to implement database confidentiality. In various implementations, type metadata and one or more rules are added to each database field. Metadata includes a domain, method of encryption, and a pointer to an encryption key used to encrypt the data in the corresponding field. The rules define one or more operations allowed on the corresponding data types. The type metadata and rules are optionally integrity protected and/or encrypted to avoid unauthorized changes or access. Various encryption techniques (e.g., probabilistic, Paillier, etc.) allow some computations to be performed in an untrusted environment without access to the encryption key. This enables the Database Confidentiality System to maintain database confidentiality while performing distributed computation and communications between the untrusted machine and the trusted machine.
Public/Granted literature
- US20180091306A1 TYPE-BASED DATABASE CONFIDENTIALITY USING TRUSTED COMPUTING Public/Granted day:2018-03-29
Information query