Patent ReferencesDistributed cryptographic object method Graphical manipulation of encryption Apparatus and method for storing data Public key cryptosystem with roaming user capability Volatile key apparatus for safeguarding confidential data stored in a computer system memory Method and apparatus for securing and accessing data elements within a database Secure storage of private keys Database management apparatus and encrypting/decrypting system Patent #: 7093137 InventorsAssigneeApplicationNo. 10230462 filed on 08/29/2002US Classes:713/182, SYSTEM ACCESS CONTROL BASED ON USER IDENTIFICATION BY CRYPTOGRAPHY713/166, Security levels380/54, BY MODIFYING OPTICAL IMAGE (E.G., TRANSMISSIVE OVERLAY)713/193, By stored data protection713/168, Particular communication authentication technique707/201, Coherency (e.g., same view to multiple users)380/286, Key escrow or recovery380/282By public key methodExaminersPrimary: BarrĂ³n, GilbertoAssistant: Ho, Thomas Attorney, Agent or FirmInternational ClassH04L 9/00AbstractThe invention provides a transparent encryption infrastructure which allows the user to point-and-click on columns and tables to encrypt data. The creation of triggers and views are also easily implemented, to encrypt and decrypt data, to manage the encryption keys and to grant and revoke access to a column. Public and private key pairs are hashed and encrypted with a valid password. The process or encryption starts by creating a randomly generated symmetrical key, encrypting the symmetrical key with the private key for each user authorized to decrypt the data, and storing the encrypted symmetrical key, along with the user's name and the column name, in the database. | |