Invention Grant
- Patent Title: Method and apparatus for accessing sensitive information on-demand
- Patent Title (中): 按需访问敏感信息的方法和装置
-
Application No.: US14726166Application Date: 2015-05-29
-
Publication No.: US09355259B1Publication Date: 2016-05-31
- Inventor: Jia Hua Choo
- Applicant: Flexera Software LLC
- Applicant Address: US CA San Jose
- Assignee: FLEXERA SOFTWARE LLC
- Current Assignee: FLEXERA SOFTWARE LLC
- Current Assignee Address: US CA San Jose
- Agency: Perkins Coie LLP
- Agent Michael A. Glenn
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/60 ; G06F21/62 ; H04L9/08

Abstract:
Exposure of sensitive tenant information is minimized in a multi-tenant/multi-user environment. A unique encryption key is provided for each tenant. The tenant encryption key is never stored in the clear and each copy of the tenant encryption key is protected by a user derived password. A secure folder is created for each tenant and encrypted by the tenant encryption key. Secure folders are mounted only on-demand, i.e. when an authenticated request is received for that tenant. The secure folders are mounted only for specific durations only. Otherwise, they are un-mounted. When a secure folder is mounted, any read/write operation to the secure folder is encrypted/decrypted on-the-fly. When the secure folder is un-mounted, all file contents in the secure folder, and the secure folder itself, are not visible in the file system and no application can browse to the secure folder without the tenant encryption key.
Information query