METHOD AND ARRANGEMENT FOR PROTECTING FILE-BASED INFORMATION
    2.
    发明公开
    METHOD AND ARRANGEMENT FOR PROTECTING FILE-BASED INFORMATION 有权
    方法和系统是保护文件为基础的信息

    公开(公告)号:EP2449720A1

    公开(公告)日:2012-05-09

    申请号:EP10768267.6

    申请日:2010-06-29

    IPC分类号: H04L9/18 H04L9/06

    摘要: The invention represents a method for creating a ciphertext block from a plaintext block consisting of more than one consecutive plaintext character strings (M1, M2,...Mn), which are encrypted with an encryption block operating on counter mode. When encrypting a plaintext character string (M3, for example) a hash is formed from the preceding plaintext character string (M2). Preferably the hash is message authentication code MAC or CMAC, the generation algorithm of which uses as a key (Key2) the hash value formed from the plaintext character string (M1) preceding string M2. The hash formed from the plaintext character string (M2) is Counter input to encryption block (Ek) that outputs a key stream (Keystream 3). It is combined in XOR operation with the plaintext character string (M3) wherein the result is a cipher text character string (C3). The invention makes it possible to truncate a file size without losing information stored in the rest of the file.

    METHOD AND APPARATUS FOR IMPLEMENTING SECURE AND SELECTIVELY DENIABLE FILE STORAGE
    3.
    发明公开
    METHOD AND APPARATUS FOR IMPLEMENTING SECURE AND SELECTIVELY DENIABLE FILE STORAGE 有权
    方法和装置用于实现安全和选择性VERWEIGERBAREN文件存储

    公开(公告)号:EP2350908A1

    公开(公告)日:2011-08-03

    申请号:EP09814136.9

    申请日:2009-03-16

    IPC分类号: G06F21/00 G06F12/14 H04L9/08

    摘要: The invention concerns a method for writing data to a memory device arrangement comprising a first and a second memory device in which the first memory device comprises data blocks numbered with block numbers and the second memory device comprises at least one reference calculated from a data block digest and its physical block number. The invention is characterized in that it comprises the following steps: calculating the digest from at least part of the data block content, receiving at least one physical block number, to which the data block contents in the first memory device is stored, encrypting the data block content, storing the data block content to the first memory device to the position pointed by the physical block number, and storing or issuing a command to save the digest, or a number derived from it, and at least one said physical block number to the second memory device. Also a system, a computer program and server computer in accordance to the invention are presented.