IP Library Granted Patent US 7,809,142
Granted Patent B2
US 7,809,142 · App. 11/765,105 · Granted Oct 5, 2010

Data scrambling and encryption of database tables

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,809,142
App. No.
11/765,105
Granted
Oct 5, 2010
Kind
B2
Abstract

An apparatus, program product and method protect data in a database table from unauthorized access through the combination of scrambling the data in the rows and columns of a database table and encrypting the data in different rows and/or columns using different encryption keys. A complementary descrambling and decryption process may then be used by an authorized party to recover the data stored in the scrambled and encrypted table.

Claims (15)

1. A method for protecting data, the data arranged within a plurality of column entries, and the column entries arranged in a plurality of columns, the method comprising:

with at least one hardware-implemented processor, encrypting the data within each column entry using an encryption key associated with the column within which such column entry is arranged;

with the at least one hardware-implemented processor, rearranging at least a subset of the column entries into different columns such that each rearranged column entry is arranged in a different column than that associated with the encryption key used to encrypt the data in such rearranged column entry; and

after encrypting the data and rearranging at least a subset of the column entries into different columns, rearranging at least a subset of the column entries into different columns such that each rearranged column entry is arranged in the column that is associated with the encryption key used to encrypt the data in such rearranged column entry, and decrypting the data within each column entry.

2. The method of claim 1 , wherein the column entries and columns are disposed within a database table, the method further comprising restricting access to the table by a user based upon a Media Access Control (MAC) address associated with the user.

3. The method of claim 1 , wherein the column entries and columns are disposed within a database table, and wherein rearranging at least the subset of column entries into different columns includes changing the number of columns in the table.

4. The method of claim 1 , wherein the column entries and columns are disposed within a database table, and wherein each column in the table is associated with a different encryption key from every other column in the table.

5. The method of claim 1 , wherein the plurality of column entries are further arranged into a plurality of rows, the method further comprising rearranging at least a subset of the column entries into different rows.

6. An apparatus, comprising:

data resident in a computer readable medium and arranged within a plurality of column entries, with the column entries arranged in a plurality of columns;

at least one processor; and

program code configured to be executed by the at least one processor to protect the data by encrypting the data within each column entry using an encryption key associated with the column within which such column entry is arranged, and rearranging at least a subset of the column entries into different columns such that each rearranged column entry is arranged in a different column than that associated with the encryption key used to encrypt the data in such rearranged column entry, wherein the column entries and columns are disposed within a database table, and wherein each column in the table is associated with a different encryption key from every other column in the table.

7. An article of manufacture, comprising:

a non-transitory computer readable medium; and

program code stored on the computer readable medium and configured upon execution to protect data arranged within a plurality of column entries, with the column entries arranged in a plurality of columns, by encrypting the data within each column entry using an encryption key associated with the column within which such column entry is arranged, and rearranging at least a subset of the column entries into different columns such that each rearranged column entry is arranged in a different column than that associated with the encryption key used to encrypt the data in such rearranged column entry, wherein the plurality of column entries are further arranged into a plurality of rows, the program code further configured to rearrange at least a subset of the column entries into different rows.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 13, 2015
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: LINKEDIN CORPORATION
Reel/Frame 035201/0479 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 19, 2007
From: BOHUSH, JOHN DAVID; RAND, CHRISTINE ROSE; ROTHSCHILD, MICHAEL ALLEN; VENZ, MICHAEL ALAN
To: INTERNATIONAL BUISNESS MACHINES CORPORATION
Reel/Frame 019450/0922 →