IP Library Granted Patent US 9,258,297
Granted Patent B2
US 9,258,297 · App. 14/010,924 · Granted Feb 9, 2016

Methods, devices, and mediums for securely sharing restricted content

Inventors: Paul Alexander Lipton (Kitchener, CA); Mohannad A K Hussain (Waterloo, CA); Ronald James Leisti (Kitchener, CA)
Assignee: AGFA HEALTHCARE
H04L63/083H04L63/0428G06F9/45525
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,258,297
App. No.
14/010,924
Granted
Feb 9, 2016
Kind
B2
Abstract

A computing device is disclosed for securely sharing restricted content. The computing device includes a memory storing computer readable instructions, and one or more processors configured to execute the computer readable instructions. The computer readable instructions configure the one or more processors to, collectively, receive a share request to share the restricted content; in response to the share request, encode a link with encrypted access information, the access information including a first password and identifying the restricted content; receive an access request for access to the restricted content from a client device executing the link, the access request including the encrypted access information; receive a second password from the client device in association with the access request; and grant the client device access to the restricted content in response to determining the first password matches the second password. A method and a computer readable medium are also disclosed.

Claims (82)

1. A computing device for securely sharing restricted content, the computing device comprising:

a memory storing computer readable instructions; and

one or more processors configured to execute the computer readable instructions,

the computer readable instructions configuring the one or more processors to collectively:

receive a share request to share the restricted content;

in response to the share request, encode a link with encrypted access information, the access information including a first password and the access information identifying the restricted content;

receive an access request for access to the restricted content from a client device executing the link, the access request including the encrypted access information;

receive a second password from the client device in association with the access request; and

grant the client device access to the restricted content in response to

determining that the first password matches the second password,

wherein

the encrypted access information includes one or more access rights for the restricted content, and

the access is limited to the one or more access rights.

2. The computing device of claim 1 , wherein:

determining that the first password matches the second password comprises:

decrypting the first password from the encrypted access information received in the access request; and

comparing the decrypted first password to the second password.

3. The computing device of claim 1 , wherein determining that the first password matches the second password comprises:

decrypting the first password from the encrypted access information received in the access request;

hashing the second password to generate a second password hash; and

comparing the decrypted first password to the second password hash.

4. The computing device of claim 1 , wherein configuring the one or more processors to collectively grant the client device the access comprises configuring the one or more processors to collectively:

decrypt the one or more access rights from the encrypted access information received in the access request; and

grant the client device the access limited to the decrypted one or more access rights.

5. The computing device of claim 1 , wherein:

the encrypted access information defines a time window; and

the access is limited to the time window.

6. The computing device of claim 5 , wherein the computer readable instructions further configure the one or more processors to collectively:

revoke the granted access upon expiry of the time window.

7. The computing device of claim 5 , wherein configuring the one or more processors to collectively grant the client device the access comprises:

configuring the one or more processors to collectively grant the client device access to the restricted content in response to determining, both of

the first password matches the second password, and

the time window is still valid.

8. The computing device of claim 1 , wherein the computer readable instructions further configure the one or more processors to collectively:

communicate the link to the client device.

9. The computing device of claim 1 , wherein:

the link is a two dimensional bar code.

10. A non-transitory computer-readable medium comprising instructions executable by one or more processors, wherein the instructions when executed configure the one or more processors to collectively:

receive a share request the restricted content;

in response to the share request, encode a link with encrypted access information, the access information including a first password and the access information identifying the restricted content;

receive an access request to the restricted content from a client device executing the link, the access request including the encrypted access information;

receive a second password from the client device in association with the access request; and

grant the client device access to the restricted content in response to determining that the first password matches the second password,

wherein

the encrypted access information includes one or more access rights for the restricted content, and

the access is limited to the one or more access rights.

11. The non-transitory computer-readable medium of claim 10 , wherein determining that the first password matches the second password comprises:

decrypting the first password from the encrypted access information received in the access request; and

comparing the decrypted first password to the second password.

12. The non-transitory computer-readable medium of claim 10 , wherein determining that the first password matches the second password comprises:

decrypting the first password from the encrypted access information received in the access request;

hashing the second password to generate a second password hash; and

comparing the decrypted first password to the second password hash.

13. A method of securely sharing restricted content, the method comprising:

receiving a share request the restricted content;

in response to the share request, encoding a link with encrypted access information, the access information including a first password and the access information identifying the restricted content;

receiving an access request to the restricted content from a client device executing the link, the access request including the encrypted access information;

receiving a second password from the client device in association with the access request; and

granting the client device access to the restricted content in response to determining that the first password matches the second password,

wherein

the encrypted access information includes one or more access rights for the restricted content, and

the access is limited to the one or more access rights.

14. The method of claim 13 , wherein:

determining that the first password matches the second password comprises:

decrypting the first password from the encrypted access information received in the access request; and

comparing the decrypted first password to the second password.

15. The method of claim 13 , wherein:

determining that the first password matches the second password comprises: decrypting the first password from the encrypted access information received in the access request; hashing the second password to generate a second password hash; and comparing the decrypted first password to the second password hash.

16. The method of claim 13 , wherein granting the client device the access comprises:

decrypting the one or more access rights from the encrypted access information received in the access request; and

granting the client device the access limited to the decrypted one or more access rights.

17. The method of claim 13 , wherein:

the encrypted access information defines a time window; and

the access is limited to the time window.

18. The method of claim 17 , further comprising:

revoking the granted access upon expiry of the time window.

19. The method of claim 17 , further comprising:

configuring the one or more processors to collectively grant the client device access to the restricted content in response to determining, both of

the first password matches the second password, and

the time window is still valid.

20. The method of claim 13 , further comprising:

communicating the link to the client device.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 6, 2018
From: AGFA HEALTHCARE INC.
To: AGFA HEALTHCARE N.V.
Reel/Frame 046282/0786 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE NAME PREVIOUSLY RECORDED ON REEL 031461 FRAME 0228. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNEE NAME IS AGFA HEALTHCARE INC. THE CORRECTED, CONFIRMATORY ASSIGNMENT WAS EXECUTED BY THE ASSIGNORS ON AUG. 24 & 25, 2017. Recorded Jan 10, 2018
From: LIPTON, PAUL ALEXANDER; HUSSAIN, MOHANNAD A.K.; LEISTI, RONALD JAMES
To: AGFA HEALTHCARE INC.
Reel/Frame 045033/0127 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 23, 2013
From: LIPTON, PAUL ALEXANDER; HUSSAIN, MOHANNAD A.K.; LEISTI, RONALD JAMES
To: AGFA HEALTHCARE
Reel/Frame 031461/0228 →
Continuity (1)
Related Publication 20150067327A1 · Mar 5, 2015