WO2018208787A1 - Gestion d'accès à hautes performances et protection de données pour des applications de messagerie distribuée - Google Patents

Gestion d'accès à hautes performances et protection de données pour des applications de messagerie distribuée Download PDF

Info

Publication number
WO2018208787A1
WO2018208787A1 PCT/US2018/031615 US2018031615W WO2018208787A1 WO 2018208787 A1 WO2018208787 A1 WO 2018208787A1 US 2018031615 W US2018031615 W US 2018031615W WO 2018208787 A1 WO2018208787 A1 WO 2018208787A1
Authority
WO
WIPO (PCT)
Prior art keywords
encryption key
message
public
channel
publish
Prior art date
Application number
PCT/US2018/031615
Other languages
English (en)
Inventor
Mikhail EGOROV
Maclane Scott Wilkison
David NUǸEZ
Isaac AGUDO
Original Assignee
ZeroDB, Inc.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZeroDB, Inc. filed Critical ZeroDB, Inc.
Publication of WO2018208787A1 publication Critical patent/WO2018208787A1/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0442Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply asymmetric encryption, i.e. different keys for encryption and decryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0464Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload using hop-by-hop encryption, i.e. wherein an intermediate entity decrypts the information and re-encrypts it before forwarding it
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/56Provisioning of proxy services
    • H04L67/562Brokering proxy services
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/56Provisioning of proxy services
    • H04L67/568Storing data temporarily at an intermediate stage, e.g. caching

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Storage Device Security (AREA)

Abstract

L'invention concerne un système informatique et un procédé qui permettent un accès délégué à des informations chiffrées pour des structures de messagerie distribuée et de mise en file d'attente, ou de manière générale à des architectures de publication/d'abonnement. Dans lesdites structures et architectures, des données sont publiées par des producteurs de données et organisées en canaux ou files d'attente auxquels les applications client peuvent s'abonner et qui sont gérés par une ou plusieurs entités de courtage.
PCT/US2018/031615 2017-05-08 2018-05-08 Gestion d'accès à hautes performances et protection de données pour des applications de messagerie distribuée WO2018208787A1 (fr)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US201762502938P 2017-05-08 2017-05-08
US62/502,938 2017-05-08

Publications (1)

Publication Number Publication Date
WO2018208787A1 true WO2018208787A1 (fr) 2018-11-15

Family

ID=64104942

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US2018/031615 WO2018208787A1 (fr) 2017-05-08 2018-05-08 Gestion d'accès à hautes performances et protection de données pour des applications de messagerie distribuée

Country Status (1)

Country Link
WO (1) WO2018208787A1 (fr)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109660555A (zh) * 2019-01-09 2019-04-19 上海交通大学 基于代理重加密的内容安全分享方法和系统
US20200076777A1 (en) * 2018-08-29 2020-03-05 International Business Machines Corporation Encrypted data according to a schema
CN112235205A (zh) * 2020-09-21 2021-01-15 珠海市卓轩科技有限公司 一种发送和消费mq消息的方法、装置及存储介质
CN113475038A (zh) * 2020-01-29 2021-10-01 思杰系统有限公司 使用半信任中介的安全消息传递
US20220270088A1 (en) * 2019-01-09 2022-08-25 Visa International Service Association Method, System, and Computer Program Product for Network Bound Proxy Re-Encryption and PIN Translation
CN117614751A (zh) * 2024-01-24 2024-02-27 上海银基信息安全技术股份有限公司 内网访问方法及系统

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20090150675A1 (en) * 2000-06-15 2009-06-11 Zix Corporation Secure message forwarding system detecting user's preferences including security preferences
US20110131222A1 (en) * 2009-05-18 2011-06-02 Telcordia Technologies, Inc. Privacy architecture for distributed data mining based on zero-knowledge collections of databases
WO2015055762A1 (fr) * 2013-10-18 2015-04-23 Robert Bosch Gmbh Système et procédé de chiffrement symétrique dynamique, non interactif et parallélisable
US20160182242A1 (en) * 2005-07-22 2016-06-23 OnePatont Software Ltd. Distributing Messages in a Network Environment
US20170054716A1 (en) * 2015-05-07 2017-02-23 ZeroDB, Inc. Zero-knowledge databases

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20090150675A1 (en) * 2000-06-15 2009-06-11 Zix Corporation Secure message forwarding system detecting user's preferences including security preferences
US20160182242A1 (en) * 2005-07-22 2016-06-23 OnePatont Software Ltd. Distributing Messages in a Network Environment
US20110131222A1 (en) * 2009-05-18 2011-06-02 Telcordia Technologies, Inc. Privacy architecture for distributed data mining based on zero-knowledge collections of databases
WO2015055762A1 (fr) * 2013-10-18 2015-04-23 Robert Bosch Gmbh Système et procédé de chiffrement symétrique dynamique, non interactif et parallélisable
US20170054716A1 (en) * 2015-05-07 2017-02-23 ZeroDB, Inc. Zero-knowledge databases

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20200076777A1 (en) * 2018-08-29 2020-03-05 International Business Machines Corporation Encrypted data according to a schema
US11722470B2 (en) * 2018-08-29 2023-08-08 International Business Machines Corporation Encrypted data according to a schema
CN109660555A (zh) * 2019-01-09 2019-04-19 上海交通大学 基于代理重加密的内容安全分享方法和系统
US20220270088A1 (en) * 2019-01-09 2022-08-25 Visa International Service Association Method, System, and Computer Program Product for Network Bound Proxy Re-Encryption and PIN Translation
EP4220385A1 (fr) * 2019-01-09 2023-08-02 Visa International Service Association Procédé, système et produit de programme informatique pour rechiffrement de mandataire lié à un réseau et traduction de pin
US11736295B2 (en) 2019-01-09 2023-08-22 Visa International Service Association Method, system, and computer program product for network bound proxy re-encryption and PIN translation
US11757644B2 (en) * 2019-01-09 2023-09-12 Visa International Service Association Method, system, and computer program product for network bound proxy re-encryption and PIN translation
CN113475038A (zh) * 2020-01-29 2021-10-01 思杰系统有限公司 使用半信任中介的安全消息传递
CN112235205A (zh) * 2020-09-21 2021-01-15 珠海市卓轩科技有限公司 一种发送和消费mq消息的方法、装置及存储介质
CN112235205B (zh) * 2020-09-21 2022-07-01 珠海市卓轩科技有限公司 一种发送和消费mq消息的方法、装置及存储介质
CN117614751A (zh) * 2024-01-24 2024-02-27 上海银基信息安全技术股份有限公司 内网访问方法及系统
CN117614751B (zh) * 2024-01-24 2024-04-02 上海银基信息安全技术股份有限公司 内网访问方法及系统

Similar Documents

Publication Publication Date Title
US10574440B2 (en) High-performance access management and data protection for distributed messaging applications
Wei et al. RS-HABE: Revocable-storage and hierarchical attribute-based access scheme for secure sharing of e-health records in public cloud
US10691817B2 (en) Encryption for distributed storage and processing
EP3811560B1 (fr) Systèmes et procédés pour infrastructure à chaînes de blocs à permissions avec contrôle d'accès à granularité fine et messagerie de publication/d'abonnement préservant la confidentialité
US10581603B2 (en) Method and system for secure delegated access to encrypted data in big data computing clusters
EP3054648B1 (fr) Structure de contrôle d'accès pour réseautage centrique d'informations
WO2018208787A1 (fr) Gestion d'accès à hautes performances et protection de données pour des applications de messagerie distribuée
Esposito et al. On security in publish/subscribe services: A survey
Borcea et al. PICADOR: End-to-end encrypted Publish–Subscribe information distribution with proxy re-encryption
WO2013144553A1 (fr) Procédé et système permettant l'accès à des données réseau
US10404450B2 (en) Schematized access control in a content centric network
Duan et al. A comprehensive security framework for publish/subscribe-based IoT services communication
WO2018208786A1 (fr) Procédé et système pour un accès délégué sécurisé à des données chiffrées dans des grappes de calcul de mégadonnées
Hahn et al. Efficient IoT management with resilience to unauthorized access to cloud storage
Huang et al. YI Cloud: Improving user privacy with secret key recovery in cloud storage
Swetha et al. Security on mobile cloud computing using cipher text policy and attribute based encryption scheme
Pareek et al. Proxy re-encryption scheme for access control enforcement delegation on outsourced data in public cloud
US9294447B2 (en) Access control
Liu et al. Non-interactive Zero Knowledge Proof Based Access Control in Information-Centric Internet of Things
Ghoubach et al. Efficient and secure data sharing with outsourced decryption and efficient revocation for cloud storage systems
Fakude et al. The effect of data transmission and storage security between device–cloudlet communication
Cheng et al. Privacy-preserving publish/subscribe service in untrusted third-party platform
Radhakrishnan et al. Attribute and Time Factors Combined CP-ABE and RSA based Access Control Scheme for Public Cloud
Xiong et al. Cloud storage access control scheme of ciphertext algorithm based on digital envelope
Song et al. A decentralized crypto network with dynamic threshold change

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 18798361

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 18798361

Country of ref document: EP

Kind code of ref document: A1