IP Library › Granted Patent US 10,083,315
Granted Patent B2
US 10,083,315 · App. 14/753,225 · Granted Sep 25, 2018

Privacy enhanced personal search index

Inventor: Ho John Lee (Palo Alto, CA)
Assignee: Microsoft Technology Licensing, LLC
G06F21/6227G06F17/30G06F17/30011G06F17/30321G06F17/30864G06F21/6245
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,083,315
App. No.
14/753,225
Granted
Sep 25, 2018
Kind
B2
Abstract

Examples of the present disclosure describe systems and methods for enhancing the privacy of a personal search index. In some aspects, a personal cleartext document may be used to generate an encrypted document digest and an encrypted document on a first device. A second device may decrypt the document digest, build a personal search index based on the decrypted document digest, and store the encrypted document in a data store. The first device may subsequently receive a cleartext search query that is used to query the personal search index on the second device for encrypted documents.

Claims (57)

1. A system for creating a privacy enhanced personal search index, the system comprising:

at least one processor; and

memory coupled to the at least one processor, the memory comprising computer executable instructions that, when executed by the at least one processor, perform a method comprising:

at a server, receiving an encrypted opaque document digest from a client device, wherein the encrypted opaque document digest is associated with a user;

at the server, receiving an index key from the client device;

at the server, decrypting the encrypted opaque document digest with the index key;

at the server, indexing the decrypted opaque document digest; and

at the server, creating a user-specific opaque search index using the indexed decrypted opaque document digest, wherein the user-specific opaque search index is personal to the user, and wherein authorized access to the user-specific opaque search index is restricted to the user.

2. The system of claim 1 , wherein the method further comprises receiving an encrypted document.

3. The system of claim 2 , wherein the decrypted opaque document digest comprises one or more opaque terms and opaque metadata describing the encrypted document.

4. The system of claim 3 , wherein the decrypted opaque document digest further comprises document snippets from the encrypted document, wherein the document snippets comprise at least one of:

a summary of the encrypted document;

metadata associated with the encrypted document; and

one or more sentences from the encrypted document.

5. The system of claim 1 , wherein a transformation key is used to convert the decrypted opaque document digest to a cleartext document digest.

6. The system of claim 5 , wherein the transformation key is not accessible by the system.

7. The system of claim 1 , wherein the system is a partially trusted environment, wherein cleartext data associated with the decrypted opaque document digest remains opaque in the partially trusted environment.

8. A system for searching a privacy enhanced personal search index, the system comprising:

at least one processor; and

memory coupled to the at least one processor, the memory comprising computer executable instructions that, when executed by the at least one processor, perform a method comprising:

at a server device, receiving an opaque query digest from a client device, comprising at least one opaque term associated with a user;

at the server, receiving an index key from the client device;

at the server, decrypting the encrypted opaque document digest with the index key;

at the server, indexing the decrypted opaque document digest; and

at the server, creating a user-specific opaque search index using the indexed decrypted opaque document digest, wherein the user-specific opaque search index is personal to the user, and wherein authorized access to the user-specific opaque search index is restricted to the user;

identifying the at least one opaque term in the user-specific opaque search index;

retrieving query results from the user-specific opaque search index;

ranking the query results according to a relevance of the at least one opaque term to create ranked query results; and

transmitting the ranked query results to a processing device associated with the user.

9. The system of claim 8 , wherein the method further comprises:

using the query results, retrieving an encrypted document from a data store; and

transmitting the encrypted document to the processing device.

10. The system of claim 9 , wherein the system is a partially trusted environment, wherein cleartext data associated with the opaque query digest, the query results and the encrypted document remains opaque in the partially trusted environment.

11. The system of claim 9 , wherein the query results comprise at least an opaque document name, wherein the at least opaque document name is provided to a storage management utility that retrieves the encrypted document from the data store.

12. The system of claim 8 , wherein the query results comprise:

the at least one opaque index term; and

at least one document snippet from at least one of a plurality of encrypted documents.

13. The system of claim 8 , wherein the opaque query digest comprises one or more opaque terms and opaque metadata describing a query.

14. The system of claim 13 , wherein a transform key was applied to a cleartext query digest to create the opaque query digest.

15. The system of claim 14 , wherein an index key was applied to the cleartext query digest to create the opaque query digest.

16. A method for searching a privacy enhanced personal search index, the method comprising:

at a server, receiving an encrypted opaque document digest from a client device, wherein the encrypted opaque document digest is associated with a user;

at the server, receiving an index key from the client device;

at the server, decrypting the encrypted opaque document digest with the index key;

at the server, indexing the decrypted opaque document digest; and

at the server, creating a user-specific opaque search index using the indexed decrypted opaque document digest, wherein the user-specific opaque search index is personal to the user, and wherein authorized access to the user-specific opaque search index is restricted to the user;

at a server, receiving an opaque query digest, wherein the opaque query digest comprises one or more opaque terms associated with a query;

searching the user-specific opaque search index using the at least one opaque index term, wherein the user-specific opaque search index is personal to the user, and wherein authorized access to the user-specific opaque search index is restricted to the user;

upon identifying the at least one opaque index term in the user-specific opaque search index, retrieving query results from the user-specific opaque search index;

ranking the query results according to a relevance of the at least one opaque term to create ranked query results; and

transmitting the ranked query results to the client device.

17. The method of claim 16 , wherein the client device executes a trusted environment that is configured to expose cleartext data associated with the ranked query results and the encrypted document.

18. The method of claim 16 , wherein the user-specific opaque search index comprises information identifying an encrypted document and at least one of the one or more opaque terms associated with the query.

19. The method of claim 16 , the method further comprising:

searching a data store using the at least one opaque index term;

upon identifying the at least one opaque index term in the data store, retrieving an encrypted document associated with the at least one opaque index term, wherein a document key was applied to a cleartext document to create the encrypted document, wherein the document key is not accessible by the system; and

transmitting the encrypted document to the client device.

Assignments (2)
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE ADDRESS PREVIOUSLY RECORDED ON REEL 035926 FRAME 0332. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jul 30, 2018
From: LEE, HO JOHN
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 047257/0707 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 29, 2015
From: LEE, HO JOHN
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 035926/0332 →
Continuity (1)
Related Publication 20160379009A1 · Dec 29, 2016