-
公开(公告)号:US10095882B2
公开(公告)日:2018-10-09
申请号:US14462012
申请日:2014-08-18
Applicant: Cisco Technology Inc.
Inventor: Erez Waisbard , Anna Schnaiderman
Abstract: In one embodiment, a method for securing data on a semi-trusted server is implemented on a computing device and includes: receiving at least a current session key from a user device for use during a current session, where the current session key is suitable for encrypting data and for decrypting data encrypted with the current session key, decrypting communications received from the user device during the session with said session key, encrypting with the session key at least one of communications to be sent to said user device and personal data generated during the session, storing the encrypted personal data, and discarding the current session key upon completion of the session, thereby limiting possible access to the stored encrypted personal data other than during the session. Related apparatus and methods are also described.
-
2.
公开(公告)号:US20150082019A1
公开(公告)日:2015-03-19
申请号:US14462012
申请日:2014-08-18
Applicant: Cisco Technology Inc.
Inventor: Erez Waisbard , Anna Schnaiderman
CPC classification number: G06F21/6245 , H04L63/0435 , H04L63/068
Abstract: In one embodiment, a method for securing data on a semi-trusted server is implemented on a computing device and includes: receiving at least a current session key from a user device for use during a current session, where the current session key is suitable for encrypting data and for decrypting data encrypted with the current session key, decrypting communications received from the user device during the session with said session key, encrypting with the session key at least one of communications to be sent to said user device and personal data generated during the session, storing the encrypted personal data, and discarding the current session key upon completion of the session, thereby limiting possible access to the stored encrypted personal data other than during the session. Related apparatus and methods are also described.
Abstract translation: 在一个实施例中,在计算设备上实现用于保护半信任服务器上的数据的方法,并且包括:从用户设备至少接收当前会话密钥以在当前会话期间使用,其中当前会话密钥适合于 加密数据和解密利用当前会话密钥加密的数据,解密在与会话密钥的会话期间从用户设备接收到的通信,用会话密钥加密要发送给所述用户设备的通信中的至少一个以及在 会话,存储加密的个人数据,以及在会话完成时丢弃当前会话密钥,从而限制对于在会话期间以外的所存储的加密个人数据的可能访问。 还描述了相关装置和方法。
-