Invention Grant
- Patent Title: Managing private key access in multiple nodes
-
Application No.: US16241888Application Date: 2019-01-07
-
Publication No.: US10938554B2Publication Date: 2021-03-02
- Inventor: Nicholas Thomas Sullivan , Brendan Scott McMillion
- Applicant: Cloudflare, Inc.
- Applicant Address: US CA San Francisco
- Assignee: Cloudflare, Inc.
- Current Assignee: Cloudflare, Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Nicholson De Vos Webster & Elliott LLP
- Main IPC: H04L9/08
- IPC: H04L9/08 ; H04L9/14

Abstract:
Managing private key access in multiple nodes is described. A piece of data (e.g., a private key) is encrypted using identity-based broadcast encryption and identity-based revocation encryption so that only certain servers in a distributed network of servers can decrypt the piece of data. The piece of data is encrypted with a key encryption key (KEK). The KEK is split into two pieces. The first piece is encrypted using identity-based broadcast encryption with a first set of identities as input such that only servers of the first set of identities can decrypt the first piece, and the second piece is encrypted using identity-based revocation encryption so that all servers except those that have the second set of identities can decrypt the second piece. The keys are transmitted to the servers.
Public/Granted literature
- US20190140825A1 MANAGING PRIVATE KEY ACCESS IN MULTIPLE NODES Public/Granted day:2019-05-09
Information query