Managing access to a secure content-part of a PPCD using a key reset point

US8984298B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-8984298-B2
Application numberUS-201113192205-A
CountryUS
Kind codeB2
Filing dateJul 27, 2011
Priority dateJul 27, 2011
Publication dateMar 17, 2015
Grant dateMar 17, 2015

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

In a method for managing access to a secure content-part of a PPCD, a key reset point of the secure content-part during a workflow among workflow participants is determined. In addition, key-map files comprising subsets of access keys that provide access to the secure content-part during respective content access sessions are generated, in which at least one of the key-map files corresponds to the key reset point and comprises a first decryption key, a first verification key, a second encryption key, and a second signature key, in which the first decryption key does not correspond to the second encryption key, and in which the first verification key does not correspond to the second signature key. In addition, the plurality of key-map files are supplied to at least one of the participants.

First claim

Opening claim text (preview).

What is claimed is: 1. A method for managing access to a secure content-part of a publicly posted composite document (PPCD) by workflow participants, said method comprising: determining a key reset point of the secure content-part during a workflow among the workflow participants; and generating, by the processor, in a secure environment, a plurality of key-map files comprising subsets of access keys that provide access to the secure content-part during respective content access sessions, wherein at least one of the plurality of key-map files corresponds to the key reset point and comprises a first decryption key, a first verification key, a second encryption key, and a second signature key, wherein the first decryption key does not correspond to the second encryption key, wherein the first verification key does not correspond to the second signature key, and wherein the access keys contained in the at least one of the plurality of key-map files that corresponds to the key reset point are to be implemented to verify a signature of the secure content-part using the first verification key, to decrypt the secure content-part using the first decryption key, to re-encrypt the decrypted secure content-part using the second encryption key, and to sign the encrypted secure-content part using the second signature key; encrypting the plurality of key-map files using respective symmetric keys; encrypting the symmetric keys using respective public keys of the workflow participants; and supplying the PPCD and the plurality of key-map files to at least one of the workflow participants outside of the secure environment without the at least one of the workflow participants being granted access to the secure environment. 2. The method according to claim 1 , further comprising: determining which of the plurality of key-map files corresponds to access to a version of the secure content-part prior to the key reset point; and wherein generating the plurality of key-map files further comprises generating the key-map file that corresponds to the version of the secure content-part prior to the key reset point to comprise at least one of the encryption key corresponding to the first decryption key and the signature key corresponding to the first verification key. 3. The method according to claim 1 , further comprising: determining which of the plurality of key-map files correspond to access to a version of the secure content-part following the key reset point; and wherein generating the plurality of key-map files further comprises generating at least one of the plurality of key-map files that corresponds to the secure content-part following the key reset point to comprise at least one of a second decryption key and a second verification key, wherein the second decryption key corresponds to the second encryption key and the second verification key corresponds to the second signature key. 4. The method according to claim 1 , further comprising: determining that a participant is to have a first access to a version of the secure content-part prior to the key reset point and that the participant is to have a second access to a version of the secure content-part following the key reset point; and wherein generating the plurality of key-map files further comprises generating a first key-map file for the participant that includes a first set of keys that enables the participant to have the first type of access to the version of the secure content-part prior to the key reset point, wherein the first set of keys are unable to provide the second type of access to the version of the secure content-part following the key reset point. 5. The method according to claim 4 , wherein generating the plurality of key-map files further comprises generating a second key-map file for the participant that includes a second set of keys that enables the participant to have the second type of access to the version of the secure content-part following the key reset point, wherein the second set of keys are unable to provide the first type of access to the version of the secure content-part prior to the key reset point. 6. The method according to claim 1 , further comprising: determining that a participant is to have a first type of access to a version of the secure content-part prior to the key reset point and that the participant is to have no access to a version of the secure content-part following the key reset point; and wherein generating the plurality of key-map files further comprises generating a key-map file for the participant that includes a first set of keys that enable the participant to have the first type of access to the version of the secure content-part prior to the key reset point, wherein the first set of keys are unable to provide any access to the version of the secure content-part following the key reset point. 7. The method according to claim 1 , further comprising: determining that a participant is to have no access to a version of the secure content-part prior to the key reset point and that the participant is to have a second type of access to a version of the secure content-part following the key reset point; and wherein generating the plurality of key-map files further comprises generating a first key-map file for the participant that includes a first set of keys that enables the participant to have the second type of access to the version of the secure content-part following the key reset point, wherein the first set of keys are unable to provide any access to the version of the secure content-part prior to the key reset point. 8. The method according to claim 1 , further comprising: encrypting the secure content-part using a first encryption key, wherein the first decryption key corresponds to the first encryption key; signing the secure content-part using a first signature key, wherein the first verification key corresponds to the first signature key; and incorporating the secure content-part into a document serialization of the PPCD. 9. The method according to claim 1 , further comprising: incorporating the encrypted plurality of key-map files into the PPCD. 10. An apparatus for managing access to a secure content-part of a publicly posted composite document (PPCD) by workflow participants, said apparatus comprising: a processor; and a hardware memory on which is stored machine readable instructions that cause the processor to: determine a key reset point of the secure-content part during a workflow among the workflow participants to be a key reset point; generate, in a secure environment, a plurality of key-map files comprising subsets of access keys that provide access to the secure content-part during respective content access sessions, wherein at least one of the plurality of key-map files corresponds to the key reset point, and wherein the at least one of the plurality of key-map files comprises a first decryption key, a first verification key, a second encryption key, and a second signature key, wherein the first decryption key does not correspond to the second encryption key, and wherein the first verification key does not correspond to the second signature key; encrypt the plurality of key-map files using respective symmetric keys; encrypt the symmetric keys using respective public keys of the workflow participants; incorporate the encrypted plurality of key-map files into the PPCD; and supply the PPCD and the plurality of key-map files to at least one of the workflow participants outside of the secure environment without the at least one of the workflow participants being granted access to the secure environment. 11. The apparatus according to claim 10 , wherein the machine

Assignees

Inventors

Classifications

  • to a single file or object, e.g. in a secure envelope, encrypted and accessed using a key, or with access control rules appended to the object itself · CPC title

  • H04L9/088Primary

    Usage controlling of secret information, e.g. techniques for restricting cryptographic keys to pre-authorized uses, different access levels, validity of crypto-period, different key- or password length, or different strong and weak cryptographic algorithms (network architectures or network communication protocols for using time-dependent keys in a packet data network H04L63/068) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US8984298B2 cover?
In a method for managing access to a secure content-part of a PPCD, a key reset point of the secure content-part during a workflow among workflow participants is determined. In addition, key-map files comprising subsets of access keys that provide access to the secure content-part during respective content access sessions are generated, in which at least one of the key-map files corresponds to …
Who is the assignee on this patent?
Balinsky Helen, Simske Steven J, Hewlett Packard Development Co
What technology area does this patent fall under?
Primary CPC classification H04L9/088. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Mar 17 2015 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).