Invention Grant
- Patent Title: Method of securing files under the semi-trusted user threat model using symmetric keys and per-block key encryption
-
Application No.: US14245295Application Date: 2014-04-04
-
Publication No.: US09363247B2Publication Date: 2016-06-07
- Inventor: Eric A. Murray
- Applicant: Zettaset, Inc.
- Applicant Address: US CA Mountain View
- Assignee: ZETTASET, INC.
- Current Assignee: ZETTASET, INC.
- Current Assignee Address: US CA Mountain View
- Agent Asif Ghias
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/60 ; H04L9/08 ; H04L9/14 ; G06F17/30 ; G06F21/62

Abstract:
A computer system and method for securing files in a file system equipped with storage resources that are accessible to an authenticable user operating with an untrusted client device under the semi-trusted client threat model. The file to be secured is stored in one or more blocks belonging to the storage resources along with symmetric per-block key(s) KBi assigned to each of the blocks in the file. The blocks are encrypted with the symmetric per-block keys to obtain encrypted blocks. The user is assigned user key(s) and each per-block key that was used for encryption is in turn encrypted with one of the user's keys to derive wrapped key(s) for each encrypted block. Wrapped key(s) are placed in encrypted block headers and introduce a level of indirection to encrypted file(s) that is appropriate for the semi-trusted client threat model.
Public/Granted literature
Information query