IP Library Granted Patent US 8,086,857
Granted Patent B2
US 8,086,857 · App. 12/511,811 · Granted Dec 27, 2011

Identity-based-encryption messaging system

Assignee: Voltage Security, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,086,857
App. No.
12/511,811
Granted
Dec 27, 2011
Kind
B2
Abstract

A system is provided that uses identity-based encryption to support secure communications between senders and recipients over a communications network. Private key generators are used to provide public parameter information. Senders encrypt messages for recipients using public keys based on recipient identities and using the public parameter information as inputs to an identity-based encryption algorithm. Recipients use private keys to decrypt the messages. There may be multiple private key generators in the system and a given recipient may have multiple private keys. Senders can include private key identifying information in the messages they send to recipients. The private key identifying information may be used by the recipients to determine which of their private keys to use in decrypting a message. Recipients may obtain the correct private key to use to decrypt a message from a local database of private keys or from an appropriate private key server.

Claims (28)

1. A method for using identity-based encryption to support encryption and decryption using computing equipment in a system, wherein the system has a plurality of identity-based-encryption private key generators each of which generates associated identity-based-encryption public parameter information and associated identity-based-encryption private keys, the method comprising:

with the computing equipment, encrypting digital information using the identity-based-encryption public parameter information that is associated with a given one of the plurality of the identity-based-encryption private key generators; and

with the computing equipment, appending identification information to the encrypted digital information, wherein the identification information specifies which one of the plurality of identity-based-encryption private key generators is the given one of the plurality of identity-based-encryption private key generators that generated the identity-based-encryption public parameter information that was used to encrypt the digital information.

2. The method defined in claim 1 further comprising:

obtaining the encrypted digital information and the appended identification information; and

using the identification information to determine which one of the plurality of identity-based-encryption private key generators is the given one of the plurality of identity-based-encryption private key generators that generated the identity-based-encryption public parameter information that was used to encrypt the digital information.

3. The method defined in claim 1 further comprising:

decrypting the encrypted digital information using an identity-based-encryption private key generated by the given identity-based-encryption private key generator that generated the identity-based-encryption public parameter information that was used to encrypt the digital information.

4. The method defined in claim 1 further comprising:

with the identification information, identifying which one of the plurality of identity-based-encryption private key generators is the given one of the plurality of identity-based-encryption private key generators that generated the identity-based-encryption public parameter information that was used to encrypt the digital information;

retrieving an identity-based-encryption private key from the identified identity-based-encryption private key generator; and

decrypting the encrypted digital information using the identity-based-encryption private key.

5. The method defined in claim 1 further comprising:

with the identification information, identifying which one of the plurality of identity-based-encryption private key generators is the given one of the plurality of identity-based-encryption private key generators that generated the identity-based-encryption public parameter information that was used to encrypt the digital information;

obtaining an identity-based-encryption private key that was generated by the identified identity-based-encryption private key generator from a local private key database; and

decrypting the encrypted digital information with the identity-based-encryption private key.

6. The method defined in claim 1 wherein the encrypted digital information comprises encrypted text, the method further comprising decrypting the encrypted text.

7. The method defined in claim 1 wherein the encrypted digital information comprises an encrypted email message, the method further comprising decrypting the encrypted email message.

8. The method defined in claim 1 wherein the encrypted digital information comprises encrypted executable code, the method further comprising decrypting the encrypted executable code.

9. A method for using identity-based encryption to support encryption and decryption using computing equipment in a system, wherein the system has a plurality of identity-based-encryption private key generators each of which generates associated identity-based-encryption public parameter information and associated identity-based-encryption private keys, the method comprising:

with the computing equipment, encrypting digital information using the identity-based-encryption public parameter information that is associated with a given one of the plurality of the identity-based-encryption private key generators; and

with the computing equipment, creating a data item that includes the encrypted digital information and that includes identification information that specifies which one of the plurality of identity-based-encryption private key generators is the given one of the plurality of identity-based-encryption private key generators that generated the identity-based-encryption public parameter information that was used to encrypt the digital information.

10. The method defined in claim 9 wherein the data item comprises a message that has an information field that includes the identification information and that has a payload that includes the encrypted digital information, the method further comprising sending the message to a recipient.

11. The method defined in claim 10 further comprising:

using computing equipment associated with the recipient, obtaining the message;

with the identification information from the information field, identifying which one of the plurality of identity-based-encryption private key generators is the given one of the plurality of identity-based-encryption private key generators that generated the identity-based-encryption public parameter information that was used to encrypt the digital information;

retrieving an identity-based-encryption private key from the identified identity-based-encryption private key generator; and

decrypting the encrypted digital information using the identity-based-encryption private key.

Assignments (8)
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0577 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC)
Reel/Frame 063560/0001 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0718 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC); BORLAND SOFTWARE CORPORATION; MICRO FOCUS (US), INC.; SERENA SOFTWARE, INC; ATTACHMATE CORPORATION; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.); NETIQ CORPORATION
Reel/Frame 062746/0399 →
CHANGE OF NAME Recorded Dec 17, 2018
From: VOLTAGE SECURITY, INC.
To: VOLTAGE SECURITY, LLC
Reel/Frame 051198/0611 →
MERGER AND CHANGE OF NAME Recorded Dec 17, 2018
From: VOLTAGE SECURITY, LLC; ENTIT SOFTWARE LLC
To: ENTIT SOFTWARE LLC
Reel/Frame 051199/0074 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ENTIT SOFTWARE LLC; ARCSIGHT, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0577 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ATTACHMATE CORPORATION; BORLAND SOFTWARE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE, INC.; ENTIT SOFTWARE LLC; ARCSIGHT, LLC; SERENA SOFTWARE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0718 →
RELEASE OF SECURITY INTEREST Recorded Feb 27, 2015
From: VENTURE LENDING & LEASING VI, INC.; VENTURE LENDING & LEASING VII, INC.
To: VOLTAGE SECURITY, INC.
Reel/Frame 035110/0726 →
SECURITY AGREEMENT Recorded Feb 7, 2014
From: VOLTAGE SECURITY, INC.
To: VENTURE LENDING & LEASING VI, INC.; VENTURE LENDING & LEASING VII, INC.
Reel/Frame 032170/0273 →
Continuity (2)
Continuation 10390058 · Mar 14, 2003
Related Publication 20090307497A1 · Dec 10, 2009