IP Library Granted Patent US 9,762,553
Granted Patent B2
US 9,762,553 · App. 15/405,260 · Granted Sep 12, 2017

Systems and methods of secure data exchange

Inventors: Christopher Todd Ford (Winchester, MA); Visal Chandrakant Acharya (Everett, MA); Richard David Anstey (Cheltenham, GB); Wasif Qayyum Awan (Lexington, MA); Amir M. Azmi (Belmont, MA); Selom Harry Azuma (Boston, MA); Wade Michael Callison (Acton, MA); Clement Cazalot (Boston, MA); Mayank Choudhary (Shrewsbury, MA); Peter W. Cleary (Colorado Springs, CO); Benedict Robert Dsilva (Cambridge, MA); Fuat Ertunc (Boston, MA); Simon Genzer (Brookline, MA); John William Giudice (Lexington, MA); Douglas McLean Gordon (Wellesley, MA); Jonathan Gorin (Forest Hills, NY); Mushegh Hakhinian (Westwood, MA); John Held (North Aurora, IL); Ronald W. Hovsepian (Holliston, MA); Ganesh Kannan (Wayland, MA); John Landy (Cohasset, MA); David Scott Lindsay (Marshfield, MA); Dario R. Lirio (Newton, MA); Himali Mahajan (Medford, MA); Olivier Mangez (Maisons Laffitte, FR); Kevin L. McCarthy (Arlington, MA); Kevin McNulty (Dedham, MA); Jerry Lee Meyer (Charlestown, MA); Anupam Miharia (Winchester, MA); Constantin Miroslav (Bucharest, RO); Andrew James Mitchell (Binfield, GB); Uli P. Mittermaier (Boston, MA); Harshal Morparia (Lexington, MA); Alex Negrea (Bucharest, RO); Yana Nikolayeva (Manalapan, NJ); Madhavi Parimi (Quincy, MA); Matthew A. Porzio (Centerport, NY); Vedang Shailesh Purohit (Saugus, MA); Liviu Rozin (Wilmington, MA); Godsway Sappor (Watertown, MA); Glenn Schwartz (Rochester, NY); Fahim Siddiqui (Boston, MA); Nanu Swamy (Nashua, NH); Paul Tearnen (Seattle, WA); Karla Toyloy-Mattera (Saugus, MA); Sudhakar Velamoor (Sharon, MA); Margin Vora (Lynnfield, MA); Michael Joseph Waluk (Pembroke, MA); Charlie Weiblen (Wrentham, MA); Peter Wenzel (Pasadena, CA); Jeffery Chi Wong (South Dennis, MA); Tony Yip (Melrose, MA); Khurram Ghafoor (Medford, MA)
H04L63/0428H04L63/061H04L63/083H04L63/101H04L2463/101
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,762,553
App. No.
15/405,260
Granted
Sep 12, 2017
Kind
B2
Abstract

In embodiments of the present invention improved capabilities are described for managing digital rights management (DRM) protected content sharing in a networked secure collaborative computer data exchange environment through a secure exchange facility managed by an intermediate organizational entity amongst users of a plurality of other organizational entities, wherein computer data content and access rights for the computer data content is shared between a first and second user, the computer data content and access rights for the computer data content are transformed into a DRM protected computer data content through communications with a DRM engine, wherein the DRM engine is selected based on a content type of the computer data content, and the DRM engine is provided by an entity other than the intermediate organizational entity and other than any of the plurality of other organizational entities.

Claims (36)

1. A method for managing digital rights management (DRM) protected content sharing in a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange facility managed by an intermediate organizational entity, a user login data authentication procedure that allows user access through at least one client computing device to the secure exchange facility, where communication between the secure exchange facility and the at least one client computing device is through a communications network;

receiving computer data content and at least one indicator of access rights for the computer data content from a first client computing device of a first user associated with a first organizational entity, wherein the secure exchange facility permits sharing access to the computer data content by at least a second user associated with a second organizational entity based on the at least one indicator of access rights, wherein the second organizational entity is a distinct entity from the first organizational entity;

transforming the computer data content and the at least one indicator of access rights into DRM protected computer data content through communications with a DRM engine, wherein the DRM engine is selected based on a content type of the computer data content, and wherein the DRM engine is provided by an entity distinct from the intermediate organizational entity and any other organizational entity that accesses content shared through the secure exchange facility; and

granting, by the secure exchange facility, shared access to the DRM protected computer data content to at least the second user;

receiving, by the secure exchange facility from a second client computing device of the second user, a request for download of the computer data content;

transmitting the DRM protected computer data content to the second client computing device, wherein each time an access is requested to the DRM protected computer data stored on the second client computing device the second client computing device is required to request access permission from the DRM engine;

receiving, from the DRM engine, a request for access rights to the DRM protected computer data content as a result of the second client computing device requesting access permission from the DRM engine to the DRM protected computer data content; and

providing the DRM engine with updated access rights for the DRM protected computer data content as a result of a received updated indicator of access rights to the secure exchange facility from the first client computing device, wherein the second client computing device is granted access to the DRM protected computer data content by the DRM engine as determined by the updated indicator of access rights,

wherein the first client computing device provides the updated indicator of access rights to the secure exchange facility as a result of the secure exchange facility requesting an update of access rights from the first client computing device as a result of the secure exchange facility receiving the request for access rights from the DRM engine.

2. The method of claim 1 , wherein the step of transforming comprises translating the indicator of access rights into a format recognizable by the DRM engine.

3. The method of claim 2 , wherein the translated access rights are provided by the DRM engine to the second client computing device where the translated access policies are enforced in managing any potential access to the DRM protected computer data content.

4. The method of claim 3 , wherein the translated access rights are enforced by a DRM agent resident on the second client computing device.

5. The method of claim 1 , wherein receiving the request for access rights from the DRM engine comprises user credentials for authentication.

6. The method of claim 1 , wherein the step of transforming comprises the secure exchange facility encrypting the computer data content.

7. The method of claim 6 , wherein an encryption protocol utilized in the encrypting is determined by the secure exchange facility based on a type of the received computer data content.

8. The method of claim 6 , wherein the encrypted computer data content is registered at the DRM engine.

9. The method of claim 1 , wherein the DRM engine is selected from a plurality of DRM engines.

10. A system for managing digital rights management (DRM) protected content sharing in a networked secure collaborative computer data exchange environment, the system comprising:

a secure exchange facility managed by an intermediate organizational entity, wherein a user login data authentication procedure is established that allows user access through at least one client computing device to the secure exchange facility, where communication between the secure exchange facility and the at least one client computing device is through a communications network,

wherein the secure exchange facility is adapted to receive, transform, and grant access to computer data content in relation to at least one indicator of access rights for the computer data content from a first client computing device of a first user associated with a first organizational entity, wherein the secure exchange facility permits sharing access to the computer data content by at least a second user associated with a second organizational entity based on the at least one indicator of access rights, wherein the second organizational entity is a distinct entity from the first organizational entity,

wherein transforming the computer data content and the at least one indicator of access rights into DRM protected computer data content is implemented through communications with a DRM engine, wherein the DRM engine is selected based on a content type of the computer data content, and wherein the DRM engine is provided by an entity distinct from the intermediate organizational entity and any other organizational entity that accesses content shared through the secure exchange facility,

wherein the secure exchange facility receives from a second client computing device of the second user a request for download of the computer data content,

wherein the DRM protected computer data content is transmitted to the second client computing device, wherein each time an access is requested to the DRM protected computer data stored on the second client computing device the second client computing device is required to request access permission from the DRM engine,

wherein a request for access rights to the DRM protected computer data content is received from the DRM engine as a result of the second client computing device requesting access permission from the DRM engine to the DRM protected computer data content,

wherein the DRM engine is provided with updated access rights for the DRM protected computer data content as a result of a received updated indicator of access rights to the secure exchange facility from the first client computing device,

wherein the second client computing device is granted access to the DRM protected computer data content by the DRM engine as determined by the updated indicator of access rights, and

wherein the first client computing device provides the updated indicator of access rights to the secure exchange facility as a result of the secure exchange facility requesting an update of access rights from the first client computing device as a result of the secure exchange facility receiving the request for access rights from the DRM engine.

11. The system of claim 10 , wherein the step of transforming comprises translating the indicator of access rights into a format recognizable by the DRM engine.

12. The system of claim 11 , wherein the translated access rights are provided by the DRM engine to the second client computing device where the translated access policies are enforced in managing any potential access to the DRM protected computer data content.

13. The system of claim 12 , wherein the translated access rights are enforced by a DRM agent resident on the second client computing device.

14. The system of claim 10 , wherein receiving the request for access rights from the DRM engine comprises user credentials for authentication.

15. The system of claim 10 , wherein the step of transforming comprises the secure exchange facility encrypting the computer data content.

16. The system of claim 15 , wherein an encryption protocol utilized in the encrypting is determined by the secure exchange facility based on a type of the received computer data content.

17. The system of claim 15 , wherein the encrypted computer data content is registered at the DRM engine.

18. The system of claim 10 , wherein the DRM engine is selected from a plurality of DRM engines.

Assignments (11)
RELEASE OF 1ST LIEN SECURITY INTEREST Recorded Nov 16, 2018
From: ROYAL BANK OF CANADA
To: INTRALINKS, INC.
Reel/Frame 047587/0828 →
RELEASE OF 2ND LIEN SECURITY INTEREST Recorded Nov 16, 2018
From: ROYAL BANK OF CANADA
To: INTRALINKS, INC.
Reel/Frame 047587/0836 →
SECURITY INTEREST Recorded Nov 16, 2018
From: INTRALINKS, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 047526/0542 →
SECOND LIEN SECURITY AGREEMENT Recorded Nov 16, 2017
From: INTRALINKS, INC.
To: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
Reel/Frame 044477/0445 →
FIRST LIEN SECURITY AGREEMENT Recorded Nov 15, 2017
From: INTRALINKS, INC.
To: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
Reel/Frame 044455/0479 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2017
From: ALVAREZ & MARSAL BUSINESS CONSULTING, LLC
To: INTRALINKS, INC.
Reel/Frame 041002/0244 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2017
From: MCNULTY, KEVIN
To: INTRALINKS, INC.
Reel/Frame 041002/0265 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2017
From: SWAMY, NANU
To: INTRALINKS, INC.
Reel/Frame 041002/0286 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2017
From: WALUK, MICHAEL J.
To: INTRALINKS, INC.
Reel/Frame 041002/0296 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2017
From: FORD, CHRISTOPHER TODD; ACHARYA, VISAL CHANDRAKANT; ANSTEY, RICHARD DAVID; AWAN, WASIF QAYYUM; AZMI, AMIR M.; AZUMA, SELOM HARRY; CALLISON, WADE MICHAEL; CAZALOT, CLEMENT; CHOUDHARY, MAYANK; CLEARY, PETER W.; DSILVA, BENEDICT ROBERT; ERTUNC, FUAT; GENZER, SIMON; GIUDICE, JOHN WILLIAM; GORDON, DOUGLAS MCLEAN; GORIN, JONATHAN; HAKHINIAN, MUSHEGH; HOVSEPIAN, RONALD W.; KANNAN, GANESH; LANDY, JOHN; LINDSAY, DAVID SCOTT; LIRIO, DARIO R.; MAHAJAN, HIMALI; MANGEZ, OLIVIER; MCCARTHY, KEVIN L.; MEYER, JERRY LEE; MIHARIA, ANUPAM; MIROSLAV, CONSTANTIN; MITCHELL, ANDREW JAMES; MITTERMAIER, ULI P.; MORPARIA, HARSHAL; NEGREA, ALEX; NIKOLAYEVA, YANA; PARIMI, MADHAVI; PORZIO, MATTHEW A.; PUROHIT, VEDANG SHAILESH; ROZIN, LIVIU; SAPPOR, GODSWAY; SCHWARTZ, GLENN; SIDDIQUI, FAHIM; TOYLOY-MATTERA, KARLA; VELAMOOR, SUDHAKAR; VORA, MARGIN; WEIBLEN, CHARLIE; WONG, JEFFERY CHI; YIP, TONY; GHAFOOR, KHURRAM
To: INTRALINKS, INC.
Reel/Frame 041044/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2017
From: TEARNEN, PAUL; WENZEL, PETER; HELD, JOHN
To: ALVAREZ & MARSAL BUSINESS CONSULTING, LLC
Reel/Frame 041002/0227 →
Continuity (8)
Continuation 14693643 · Apr 22, 2015
Provisional Application 61983272 · Apr 23, 2014
Provisional Application 62009680 · Jun 9, 2014
Provisional Application 62040171 · Aug 21, 2014
Provisional Application 62096087 · Dec 23, 2014
Provisional Application 62110985 · Feb 2, 2015
Provisional Application 62130875 · Mar 10, 2015
Related Publication 20170142076A1 · May 18, 2017