发明申请
US20090323970A1 SYSTEM AND METHOD FOR PROTECTING DATA IN A SECURE SYSTEM 有权
用于保护安全系统中的数据的系统和方法

SYSTEM AND METHOD FOR PROTECTING DATA IN A SECURE SYSTEM
摘要:
A system for protecting data in a security system generates and encodes a backup key for encoding long-lived secrets. The system generates a distribution plan for distributing cryptographic splits of the encoded backup key to selected persons based on geographic and organizational diversity. The distribution plan specifies a number M of the cryptographic splits to be generated and a number N of the cryptographic splits required to recover the backup key. The system processes utilize an init file comprising system parameters and state files each comprising parameters reflecting a state of the secure system after a transaction. Any of the state files may be used for any of the system processes. The state files and the init file are encoded by the backup key, thus protecting the long-lived secrets.
公开/授权文献
信息查询
0/0