Invention Grant
- Patent Title: Detection of invalid escrow keys
- Patent Title (中): 检测无效代管钥匙
-
Application No.: US13350360Application Date: 2012-01-13
-
Publication No.: US08667284B2Publication Date: 2014-03-04
- Inventor: Venkataramann Renganathan , Brian Thomas Carver , Daniel Browne Jump , David Charles LeBlanc , Samuel Ira Weiss
- Applicant: Venkataramann Renganathan , Brian Thomas Carver , Daniel Browne Jump , David Charles LeBlanc , Samuel Ira Weiss
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agent Jim Ross; Brian Haslam; Micky Minhas
- Main IPC: G06F7/04
- IPC: G06F7/04

Abstract:
A secure hash, such as a Hash-based Message Authentication Code (“HMAC”), is generated using a piece of secret information (e.g., a secret key) and a piece of public information specific to each escrow key (e.g., a certificate hash or public key). Using the secret key ensures that escrow key validation data can only be generated by knowing the secret key, which prevents an attacker from generating the appropriate escrow key validation data. Using the certificate hash as the public data ties each escrow key validation data to a particular certificate, thereby preventing the attacker from simply copying the validation data from another escrow key. Any escrow key that is found to be invalid may be removed from the file container and a system audit log may be generated so that a company, individual, or other entity can be aware of the possible attempt at a security breach.
Public/Granted literature
- US20130185557A1 Detection of Invalid Escrow Keys Public/Granted day:2013-07-18
Information query