User-specific watermark for maintaining security of data files
US-12153654-B2 · Nov 26, 2024 · US
US10068101B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10068101-B2 |
| Application number | US-201314368345-A |
| Country | US |
| Kind code | B2 |
| Filing date | Dec 23, 2013 |
| Priority date | Dec 23, 2013 |
| Publication date | Sep 4, 2018 |
| Grant date | Sep 4, 2018 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Technologies for sharing secure content include a source computing device to determine a content use policy for content of the source computing device. The content use policy defines at least one location at which a destination computing device is permitted to access the content. The source computing device encrypts the content with an encryption key to generate encrypted content, generates a secure content package, and transmits the secure content package to the destination computing device. The secure content package includes the encrypted content and the content use policy.
Opening claim text (preview).
What is claimed is: 1. A source computing device for distributing secure content, the source computing device comprising: a processor; and a memory having a plurality of instructions stored thereon that, when executed by the processor, causes the source computing device to: communicate with nearby computing devices to determine corresponding locations of the nearby computing devices; determine, prior to a receipt of a request for content from a destination device, a content use policy for content of the source computing device by (i) identification of at least one of the nearby computing devices for a user of the source computing device in response to a determination that the at least one of the nearby computing devices is capable of enforcing the content use policy, (ii) determination of at least one of an audio proximity or a social network proximity of the at least one of the nearby computing devices to the source computing device, (iii) receipt of a selection by the user of one or more nearby computing devices of the at least one of the nearby computing devices identified as capable of enforcing the content use policy for which to permit access to the content, and (iii) a modification of the content use policy based on the user's selection, wherein the selected one or more nearby computing devices includes the destination device; encrypt the content with an encryption key to generate encrypted content; generate a secure content package that includes the encrypted content and the content use policy; and transmit the secure content package to the destination computing device; wherein the content use policy includes (i) location restrictions that define a geographic location defined by the source computing device at which the destination computing device is permitted to access the content and (ii) proximity requirements that define a physical distance proximity from the geographic location within which the destination computing device is permitted to access the content, and wherein two devices identified as being at a same geographical location on a social networking application are considered to be within social network proximity of one another. 2. The source computing device of claim 1 , wherein the proximity requirements define a measure of audio proximity from the geographic location within which the destination computing device is permitted to access the content. 3. The source computing device of claim 1 , wherein the proximity requirements define a measure of social network proximity to the source computing device within which the destination computing device is permitted to access the content. 4. The source computing device of claim 1 , wherein the content use policy defines access policy permissions for the content that identify authorized uses of the content by the destination computing device. 5. The source computing device of claim 1 , wherein the secure content package comprises a data use control object. 6. A destination computing device for accessing content of a source computing device, the destination computing device comprising: a processor; and a memory having a plurality of instructions stored thereon that, when executed by the processor, causes the destination computing device to: transmit a content request for the content to the source computing device; receive, in response to a transmittal of the content request, a secure content package including encrypted content and a content use policy associated with the content, wherein the content use policy is generated and modified by a user of the source computing device prior to the transmittal of the content request based on a current location of the destination computing device and whether the destination computing device is capable of enforcing the content use policy and includes (i) location restrictions that define a geographic location defined by the source computing device at which the destination computing device is permitted to access the content and (ii) proximity requirements that define a physical distance proximity from the geographic location within which the destination computing device is permitted to access the content; determine a location of the destination computing device; determine whether the destination computing device is permitted to access the content at the determined location based on the content use policy; decrypt the encrypted content with a decryption key to generate the content in response to a determination that the destination computing device is permitted to access the content; and enforce the content use policy based on a current location of the destination computing device; wherein the current location of the destination computing device is determined by a determination of at least one of an audio proximity or a social network proximity of the destination computing device to the source computing device. 7. The destination computing device of claim 6 , wherein the secure content package comprises a data use control object. 8. The destination computing device of claim 6 , wherein to determine whether the destination computing device is permitted to access the content comprises to (i) decrypt the secure content package with a decryption key of the destination computing device and (ii) access the content use policy from the secure content package in response to decryption of the secure content package, wherein to decrypt the encrypted content is further in response to decryption of the secure content package. 9. The destination computing device of claim 6 , wherein the plurality of instructions, when executed, further cause the destination computing device to (i) authenticate a user of the destination computing device and (ii) determine whether the user is permitted to access the content, wherein to determine whether the destination computing device is permitted to access the content further comprises to determine whether the user is permitted to access the content. 10. The destination computing device of claim 6 , wherein to determine whether the destination computing device is permitted to access the content comprises to determine whether the destination computing device is compatible with the secure content package and capable of enforcing the content use policy. 11. The destination computing device of claim 6 , wherein to enforce the content use policy comprises to prevent an unauthorized use of the content by the destination computing device based on the content use policy. 12. The destination computing device of claim 6 , wherein to determine the location of the destination computing device comprises to determine at least one of an audio proximity or a social network proximity of the destination computing device to the source computing device. 13. The destination computing device of claim 6 , wherein to enforce the content use policy comprises to: determine the current location of the destination computing device; and perform a location policy enforcement operation in response to a determination that the content use policy does not permit the destination computing device to access the content at the current location. 14. The destination computing device of claim 13 , wherein to determine the current location of the destination computing device comprises to determine a geographical location of the destination computing device and at least one of an audio proximity or a social network proximity of the destination computing device to the source computing device. 15. The destination computing device of claim 13 , wherein to perform the location policy enforcement operation comprises to delete t
Location-sensitive, e.g. geographical location, GPS · CPC title
to a single file or object, e.g. in a secure envelope, encrypted and accessed using a key, or with access control rules appended to the object itself · CPC title
wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title
for supporting key management in a packet data network (cryptographic mechanisms or cryptographic arrangements for key management H04L9/08) · CPC title
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.