Invention Grant
- Patent Title: Policy-based key sharing
-
Application No.: US14663379Application Date: 2015-03-19
-
Publication No.: US09680649B2Publication Date: 2017-06-13
- Inventor: Mohamed Nabeel
- Applicant: Oracle International Corporation
- Applicant Address: US CA Redwood Shores
- Assignee: Oracle International Corporation
- Current Assignee: Oracle International Corporation
- Current Assignee Address: US CA Redwood Shores
- Agency: Becker Bingham LLP
- Agent Hickman Palermo
- Main IPC: G06F21/62
- IPC: G06F21/62 ; H04L9/30 ; H04L9/08

Abstract:
Methods of providing policy based access to master keys, enabling keys to be distributed to groups of users in a secure manner while minimizing disruptions to the user in the event of changes to group membership or changes to user attributes. User attributes are identified. Policies are rewritten in terms of user attributes. New unique user attribute keys are generated for each attribute for each user. An access tree is constructed with user attribute keys as leaf nodes and Boolean algebra operations as internal nodes. Shamir polynomials are used for AND nodes, and broadcast polynomials are used for OR nodes. Master keys are accessible by traversing the access tree from the leaf nodes to the root node constructing the polynomials attached to all the nodes along the access path.
Public/Granted literature
- US20160277187A1 Policy-Based Key Sharing Public/Granted day:2016-09-22
Information query