METHOD AND SYSTEM FOR DATA SECURITY WITHIN INDEPENDENT COMPUTER SYSTEMS AND DIGITAL NETWORKS
A system and method for authentication, authorization, and access management based on personally identifiable information and data sets pertaining to individual identity and its attributes within independent computer systems and digital networks.
1 - 20 . (canceled)
21 . A method for data security management, comprising:
generating a pair of cryptographic keys on a client device, the pair of cryptographic keys comprising a public key and a private key;
accessing, using the private key, an associated ledger identification smart contract of a distributed ledger;
providing an authentication request from the client device to an authenticator, wherein the authenticator creates a ledger request transaction in the distributed ledger using an authenticator smart contract of the distributed ledger; and
producing, using the associated ledger identification smart contract, at least one authentication response ledger transaction in the distributed ledger, wherein the at least one authentication response ledger transaction comprises a verification of possession of the private key by the client device to the authenticator.
22 . The method of claim 21 , wherein the ledger identification smart contract is identified by a contract identifier.
23 . The method of claim 21 , wherein the authenticator generates a random value, transmits the random value to the client device, and produces authenticator cryptographic data using a cryptographic function based on the generated random value.
24 . The method of claim 23 , wherein producing the at least one authentication response ledger transaction comprises producing client cryptographic data at the client device using the cryptographic function and the transmitted random value.
25 . The method of claim 21 , wherein the ledger request transaction comprises authenticator cryptographic data, and wherein the at least one authentication response ledger transaction comprises client cryptographic data.
26 . The method of claim 21 , further comprising:
storing personal data on the client device, wherein the authenticator generates a sharing request ledger transaction of the distributed ledger; and
providing a data sharing response from the client to the authenticator by generating a sharing ledger transaction within the distributed ledger, wherein the personal data is verified for proof of ownership.
27 . The method of claim 21 , wherein generating the pair of cryptographic keys comprises protecting the pair of cryptographic keys with biometric data.
28 . The method of claim 21 , wherein generating the pair of cryptographic keys comprises encrypting the generated private key using a cryptographic primitive.
29 . The method of claim 21 , wherein the distributed ledger comprises at least one of an immutable distributed ledger, a public ledger, and a private ledger.
30 . A system for data security management, comprising:
one or more computer systems programmed to perform operations comprising:
generating a pair of cryptographic keys on a client device, the pair of cryptographic keys comprising a public key and a private key;
accessing, using the private key, an associated ledger identification smart contract of a distributed ledger;
providing an authentication request from the client device to an authenticator, wherein the authenticator creates a ledger request transaction in the distributed ledger using an authenticator smart contract of the distributed ledger; and
producing, using the associated ledger identification smart contract, at least one authentication response ledger transaction in the distributed ledger, wherein the at least one authentication response ledger transaction comprises a verification of possession of the private key by the client device to the authenticator.
31 . The system of claim 30 , wherein the ledger identification smart contract is identified by a contract identifier.
32 . The system of claim 30 , wherein the authenticator generates a random value, transmits the random value to the client device, and produces authenticator cryptographic data using a cryptographic function based on the generated random value.
33 . The system of claim 32 , wherein producing the at least one authentication response ledger transaction comprises producing client cryptographic data at the client device using the cryptographic function and the transmitted random value.
34 . The system of claim 30 , wherein the ledger request transaction comprises authenticator cryptographic data, and wherein the at least one authentication response ledger transaction comprises client cryptographic data.
35 . The system of claim 30 , the operations further comprising:
storing personal data on the client device, wherein the authenticator generates a sharing request ledger transaction of the distributed ledger; and
providing a data sharing response from the client to the authenticator by generating a sharing ledger transaction within the distributed ledger, wherein the personal data is verified for proof of ownership.
36 . The system of claim 30 , wherein generating the pair of cryptographic keys comprises protecting the pair of cryptographic keys with biometric data.
37 . The system of claim 30 , wherein generating the pair of cryptographic keys comprises encrypting the generated private key using a cryptographic primitive.
38 . The system of claim 30 , wherein the distributed ledger comprises at least one of an immutable distributed ledger, a public ledger, and a private ledger.
39 . A non-transitory computer-readable medium having instructions stored thereon that, when executed by one or more computer processors, cause the one or more computer processors to perform operations comprising:
generating a pair of cryptographic keys on a client device, the pair of cryptographic keys comprising a public key and a private key;
accessing, using the private key, an associated ledger identification smart contract of a distributed ledger;
providing an authentication request from the client device to an authenticator, wherein the authenticator creates a ledger request transaction in the distributed ledger using an authenticator smart contract of the distributed ledger; and
producing, using the associated ledger identification smart contract, at least one authentication response ledger transaction in the distributed ledger, wherein the at least one authentication response ledger transaction comprises a verification of possession of the private key by the client device to the authenticator.