IP Library Granted Patent US 11,435,907
Granted Patent B2
US 11,435,907 · App. 16/455,320 · Granted Sep 6, 2022

Ensuring data authenticity using notary as a service

Inventors: Yossef Saad (Ganei Tikva, IL); Radia J. Perlman (Redmond, WA); Charles William Kaufman (Redmond, WA)
Assignee: EMC IP Holding Company LLC
G06F3/0622G06F3/067G06F3/0653H04L9/3242H04L9/3247
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,435,907
App. No.
16/455,320
Granted
Sep 6, 2022
Kind
B2
Abstract

One example method includes accessing stored data, associating a unique identifier with the data, creating a hash by hashing a combination that comprises the unique identifier and the data, transmitting the hash to a notary service, receiving, from the notary service, a digital signature that corresponds to the hash, appending the digital signature to the data, and storing, as an object, a combination that comprises the digital signature, the data, and the unique identifier.

Claims (38)

1. A non-transitory storage medium having stored therein instructions that are executable by one or more hardware processors to perform operations comprising:

detecting, at a cloud storage site, storage of data at the cloud storage site;

in response to the detecting of the storage of the data, invoking, at the cloud storage site, a function that operates at the cloud storage site by:

accessing the data;

generating and adding, to the data, a header that comprises a globally unique identifier of the data;

creating a hash by hashing a combination that comprises the globally unique identifier and the data;

transmitting the hash to a notary service;

when the hash is authenticated by the notary service, receiving, from the notary service, a digital signature that corresponds to the hash; and

appending the digital signature to the data; and

storing at the cloud storage site, as an object, a combination that comprises the digital signature, the data, and the globally unique identifier.

2. The non-transitory storage medium as recited in claim 1 , wherein when the hash is not authenticated by the notary service, the function receives a message from the notary service indicating that the hash is not authenticated.

3. The non-transitory storage medium as recited in claim 1 , wherein the digital signature is based on the hash and a private key.

4. The non-transitory storage medium as recited in claim 1 , wherein the hash includes a timestamp.

5. The non-transitory storage medium as recited in claim 1 , wherein the data whose storage is detected is received from a customer and/or from a cloud storage entity.

6. The non-transitory storage medium as recited in claim 1 , wherein the function is invoked automatically in response to the detecting of the storage of the data at the cloud storage site.

7. The non-transitory storage medium as recited in claim 1 , wherein the operations further comprise storing, at the cloud storage site, the hash in association with the data.

8. The non-transitory storage medium as recited in claim 1 , wherein authentication of the hash establishes that the data stored at the cloud storage site is the same as data that is represented by another hash that is stored at the notary service.

9. The non-transitory storage medium as recited in claim 1 , wherein the function is performed by a watch service that is running at the cloud storage site.

10. The non-transitory storage medium as recited in claim 1 , wherein the hash transmitted to the notary service enables a user to query the notary service to determine if the data exists and the object that includes the data has been signed with the digital signature.

11. The non-transitory storage medium as recited in claim 1 , wherein the object further comprises a second unique identifier and a second digital signature, and the second unique identifier and second digital signature correspond to a second cloud storage site different from a first cloud storage site to which the digital signature and the unique identifier correspond.

12. A method, comprising:

detecting, at a cloud storage site, storage of data at the cloud storage site;

in response to the detecting of the storage of the data, invoking, at the cloud storage site, a function that operates at the cloud storage site by:

accessing the data;

generating and adding, to the data, a header that comprises a globally unique identifier of the data;

creating a hash by hashing a combination that comprises the globally unique identifier and the data;

transmitting the hash to a notary service;

when the hash is authenticated by the notary service, receiving, from the notary service, a digital signature that corresponds to the hash; and

appending the digital signature to the data; and

storing at the cloud storage site, as an object, a combination that comprises the digital signature, the data, and the globally unique identifier.

13. The method as recited in claim 12 , wherein when the hash is not authenticated by the notary service, the function receives a message from the notary service indicating that the hash is not authenticated.

14. The method as recited in claim 12 , wherein the digital signature is based on the hash and a private key.

15. The method as recited in claim 12 , wherein the function is invoked automatically in response to the detecting of the storage of the data at the cloud storage site.

16. The method as recited in claim 12 , wherein the operations further comprise storing, at the cloud storage site, the hash in association with the data.

17. The method as recited in claim 12 , wherein authentication of the hash establishes that the data stored at the cloud storage site is the same as data that is represented by another hash that is stored at the notary service.

18. The method as recited in claim 12 , wherein the function is performed by a watch service that is running at the cloud storage site.

19. The method as recited in claim 12 , wherein the hash transmitted to the notary service enables a user to query the notary service to determine if the data exists and the object that includes the data has been signed with the digital signature.

20. The method as recited in claim 12 , wherein the object further comprises a second unique identifier and a second digital signature, and the second unique identifier and second digital signature correspond to a second cloud storage site different from a first cloud storage site to which the digital signature and the unique identifier correspond.

Assignments (9)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (050724/0571) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0088 →
RELEASE OF SECURITY INTEREST AT REEL 050406 FRAME 421 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 058213/0825 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Oct 15, 2019
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 050724/0571 →
SECURITY AGREEMENT Recorded Sep 17, 2019
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 050406/0421 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 27, 2019
From: SAAD, YOSSEF; PERLMAN, RADIA J.; KAUFMAN, CHARLES WILLIAM
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 049615/0974 →