IP Library Granted Patent US 10,990,687
Granted Patent B2
US 10,990,687 · App. 15/666,095 · Granted Apr 27, 2021

System and method for user managed encryption recovery using blockchain for data at rest

Inventors: Charles D. Robison (Buford, GA); Christopher D. Burchett (Lewisville, TX); David Konetski (Austin, TX)
Assignee: Dell Products L.P.
G06F21/602G06F21/566G06F21/64H04L9/0637H04L9/0866H04L9/0894H04L9/3213H04L9/3226H04L9/3239H04L9/3278G06F2221/034H04L2209/38
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,990,687
App. No.
15/666,095
Granted
Apr 27, 2021
Kind
B2
Abstract

An information handling system includes a memory for storing user data and a processor. The processor is configured to create a key, create a puzzle from the key, publish the puzzle to a ledger; encrypt user data in the memory using the key; retrieve the puzzle from the ledger when a user has lost access to the key; solve the puzzle to recover the key; and decrypt the user data.

Claims (47)

1. An information handling system comprising:

a memory for storing user data; and

a processor configured to:

create a key;

store the key in a secure memory;

create a puzzle to secure the key stored in the secure memory, wherein the puzzle is solvable through a finite amount of work using an appropriate algorithm without use of any additional encryption keys, wherein the puzzle has a scalable complexity and a strength of the puzzle is set based on a user preference;

publish the puzzle to a ledger, wherein the ledger is a shared immutable ledger to ensure the key is secure and recoverable without dependency on a technology, service or device provider being available;

encrypt the user data in the memory using the key stored in the secure memory;

retrieve the puzzle from the ledger when a user has lost access to the key;

solve the puzzle using the appropriate algorithm to recover the key stored in the secure memory; and

decrypt the user data.

2. The information handling system of claim 1 , wherein the memory includes a secure memory for key storage, the secure memory encrypted with an encryption token.

3. The information handling system of claim 2 , wherein the encryption token includes a personal identification number.

4. The information handling system of claim 2 , wherein the encryption token includes a value generated by a physical unclonable function.

5. The information handling system of claim 1 , wherein the ledger is a blockchain ledger.

6. The information handling system of claim 1 , wherein the ledger is indexed with a user identification number.

7. The information handling system of claim 1 , wherein the processor is further configured to encrypt the puzzle before storing in the ledger.

8. A method for encryption recovery, comprising:

creating a key;

storing the key in a secure memory;

creating a puzzle to secure the key stored in the secure memory, wherein the puzzle is solvable through a finite amount of work using an appropriate algorithm without use of any additional encryption keys, wherein the puzzle has a scalable complexity and a strength of the puzzle is set based on a user preference;

publishing the puzzle to a ledger, wherein the ledger is a shared immutable ledger to ensure the key is secure and recoverable without dependency on a technology, service or device provider being available;

encrypting user data using the key;

retrieving the puzzle from the ledger when a user has lost access to the key;

solving using the appropriate algorithm the puzzle to recover the key stored in the secure memory; and

decrypting the user data.

9. The method of claim 8 , further comprising storing the key in a secure memory encrypted with an encryption token.

10. The method of claim 9 , wherein the encryption token includes a personal identification number.

11. The method of claim 9 , wherein the encryption token includes a value generated by a physical unclonable function.

12. The method of claim 8 , wherein the ledger is a blockchain ledger.

13. The method of claim 8 , wherein the ledger is indexed with a user identification number.

14. The method of claim 8 , further comprising encrypting the puzzle prior to publishing the puzzle in the ledger.

15. An information handling system comprising:

a hardware processor configured to:

create a key;

store the key in a secure memory;

encrypt user data using the key stored in the secure memory;

decrypt the user data using a recovered key when access to the secure memory is unavailable;

create a puzzle to secure the key stored in the secure memory, wherein the puzzle is solvable through a finite amount of work using an appropriate algorithm without use of any additional encryption keys, wherein the puzzle has a scalable complexity and a strength of the puzzle is set based on a user preference;

publish the puzzle to a ledger, wherein the ledger is a shared immutable ledger to ensure the key is secure and recoverable without dependency on a technology, service or device provider being available;

retrieve the puzzle from the ledger when access to the key stored in the secure memory is lost; and

solve the puzzle using the appropriate algorithm to recover the key stored in the secure memory.

16. The information handling system of claim 15 , wherein the hardware processor is further configured to store the key in the secure memory encrypted with an encryption token.

17. The information handling system of claim 16 , wherein the encryption token includes a personal identification number.

18. The information handling system of claim 16 , wherein the encryption token includes a value generated by a physical unclonable function.

19. The information handling system of claim 15 , wherein the ledger is a blockchain ledger.

20. The information handling system of claim 15 , wherein the ledger is indexed with a user identification number.

Assignments (8)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (043775/0082) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060958/0468 →
RELEASE OF SECURITY INTEREST AT REEL 043772 FRAME 0750 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 058298/0606 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 7, 2017
From: ROBISON, CHARLES D; BURCHETT, CHRISTOPHER D; KONETSKI, DAVID
To: DELL PRODUCTS, LP
Reel/Frame 043527/0918 →
PATENT SECURITY AGREEMENT (CREDIT) Recorded Sep 6, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 043772/0750 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Sep 6, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 043775/0082 →
Continuity (1)
Related Publication 20190266334A1 · Aug 29, 2019