Invention Grant
- Patent Title: Methods and systems that efficiently and securely store encryption keys
-
Application No.: US15908349Application Date: 2018-02-28
-
Publication No.: US11070374B2Publication Date: 2021-07-20
- Inventor: Asaf Kariv , Ittai Abraham , Yotam Harchol
- Applicant: VMware, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: VMware, Inc.
- Current Assignee: VMware, Inc.
- Current Assignee Address: US CA Palo Alto
- Main IPC: H04L9/08
- IPC: H04L9/08 ; H04L29/06 ; H04L9/30

Abstract:
The current document is directed to distributed-secure-storage systems, and processes carried out within the distributed-secure-storage systems, that provide for secure storage and retrieval of secrets within distributed computer systems, including private encryption keys used for client authentication during establishment of secure communications channels. The secret-storage systems partition an input secret into multiple secret shares and distribute the secret shares among multiple secret-share-storing node subsystems, without persistently storing the secret itself. An agent within a client device subsequently requests a secret share corresponding to a secret, or a share of data derived from the secret share, from each of the multiple secret-share-storing nodes. Each secret-share-storing node transmits the requested secret share or derived-data share to the agent, which reconstructs the secret from all or a portion of the secret shares or a data value from all or a portion of the derived-data shares transmitted to the agent.
Public/Granted literature
- US20190268149A1 METHODS AND SYSTEMS THAT EFFICIENTLY AND SECURELY STORE ENCRYPTION KEYS Public/Granted day:2019-08-29
Information query