Security measure for exchanging keys over networks
View Patent ↗Aspects of the present disclosure relate to systems and methods for exchanging keys within a peer-to-peer network. Exchanging keys within a peer-to-peer network may include generating one or more keys for encrypting and decrypting content that is communicated between one or more client computing devices of a network. The one or more keys may be transmitted over the peer-to-peer network between the one or more client computing devices. A security measure value for each key that has been transmitted may be generated and/or updated based on at least one condition associated with transmitting the one or more keys over the peer-to-peer network. Content may be encrypted and decrypted using one of the one or more keys based on a desired security measure value of the key. All copies of the key used to encrypt and decrypt the content may be deleted such that the content is unrecoverable.
1. A method of exchanging keys within a peer-to-peer network, the method comprising:
generating a first key, at a first computing device, for encrypting and decrypting content that is communicated between the first computing device and at least a second computing device, wherein the first key is generated using a stream of bits;
assigning a security measure value to the first key, wherein the security measure value indicates a level of security associated with transmitting the first key over the peer-to-peer network;
transmitting a copy of the first key over the peer-to-peer network to at least the second computing device;
in response to transmitting the copy of the first key over the peer-to-peer network, updating the security measure value of the first key based on a first condition based on transmitting the copy of the first key over the peer-to-peer network, wherein the first condition is based on at least one of: a type of network over which the copy of the first key is transmitted, a type of method used to transmit the copy of the first key, a type of computing device that generated the first key, or a time stamp associated with the first key;
generating, at the first computing device, encrypted content using the first key based at least upon a desired security measure value of the first key; and
sending the encrypted content over a network to the second computing device; and
after a second condition based on expiring the copy of the first key has been satisfied, deleting the copy of the first key.
2. The method of claim 1 , wherein the first key is used to decrypt the encrypted content at the second device.
3. The method of claim 2 , wherein the first key is deleted when the content is accessed at the at least second computing device.
4. The method of claim 2 , wherein the first key is deleted upon the expiration of a period of time.
5. The method of claim 1 , wherein a maximum value for the desired security measure value indicates a highest level of security.
6. The method of claim 1 , wherein a minimum value for the desired security measure value indicates a lowest level of security.
7. The method of claim 1 , wherein the first key comprises an infinite stream of bits.
8. The method of claim 1 , further comprising:
transmitting a second key over the peer-to-peer network to at least a third computing device; and
updating the security measure value of the second key based on a third at least one condition associated with transmitting the second key over the peer-to-peer network.
9. The method of claim 1 , wherein the copy of the first key is deleted when the content is accessed on the second computing device.
10. The method of claim 1 , wherein the second condition is specified by a user sending the encrypted content to the second computing device.
11. A non-transitory computer storage medium encoding computer executable instructions that, when executed by at least one processor, perform a method for exchanging keys within a peer-to-peer network, the method comprising:
generating a first key, at a first computing device, for encrypting and decrypting content that is communicated between the first computing device and at least a second computing device, wherein the first key is generated using a stream of bits;
assigning a security measure value to the first key, wherein the security measure value indicates a level of security associated with transmitting the first key over the peer-to-peer network;
transmitting a copy of the first key over the peer-to-peer network to at least the second computing device;
in response to transmitting the copy of the first key over the peer-to-peer network, updating the security measure value of the first key based on a first condition based on transmitting the copy of the first key over the peer-to-peer network, wherein the first condition is based on at least one of: a type of network over which the copy of the first key is transmitted, a type of method used to transmit the copy of the first key, a type of computing device that generated the first key, or a time stamp associated with the first key
generating, at the first computing device, encrypted content using the first key based at least upon a desired security measure value of the first key;
sending the encrypted content over a network to the second computing device, and
after a second condition based on expiring the copy of the first key has been satisfied, deleting the copy of the first key.
12. The non-transitory computer storage medium of claim 11 , wherein the method further comprises generating encrypted content using the first key based on a desired security measure value of the first key.
13. The non-transitory computer storage medium of claim 12 , wherein the method further comprises sending the encrypted content over a network to at least the second computing device.
14. The non-transitory computer storage medium of claim 13 , wherein the method further comprises deleting the first key from the first computing device.
15. The non-transitory computer storage medium of claim 14 , wherein the first key is used to decrypt the encrypted content at the second device.
16. The non-transitory computer readable medium of claim 11 , wherein the method further comprises:
transmitting a second key of the one or more keys over the peer-to-peer network to at least a third computing device; and
updating the security measure value of the second key based on the first e condition associated with transmitting the second key over the peer-to-peer network.
17. The non-transitory computer readable medium of claim 11 , wherein a maximum value for the security measure value indicates a highest level of security, and wherein a minimum value for the security measure value indicates a lowest level of security.
18. A system comprising:
at least one processor; and
memory encoding computer executable instructions that, when executed by the at least one processor, perform a method for exchanging keys within a peer-to-peer network, the method comprising:
generating a first key, at a first computing device, for encrypting and decrypting content that is communicated between the first computing device and at least a second computing device, wherein the first key is generated using a stream of bits;
assigning a security measure value to the first key, wherein the security value measure indicates a level of security associated with transmitting the first key over the peer-to-peer network;
transmitting a copy of the first key over the peer-to-peer network to at least the second computing device;
in response to transmitting the copy of the first key over the peer-to-peer network, updating the security measure value of the first key based on a first condition based on transmitting the first key over the peer-to-peer network, wherein the first condition is based on at least one of: a type of network over which the copy of the first key is transmitted, a type of method used to transmit the copy of the first key, a type of computing device that generated the first key, or a time stamp associated with the first key;
generating, at the first computing device, encrypted content using the first key based on a desired security measure value of the first key;
sending the encrypted content over a network to at least the second computing device; and
after a second condition based on expiring the copy of the first key has been satisfied, deleting the copy of the first key.
19. The system of claim 18 , wherein the copy of the first key is deleted from the second computing device when the content is accessed at the second computing device.
20. The system of claim 18 , wherein the copy of the first key is deleted from the second computing device when a period of time has expired.