IP Library Granted Patent US 8,874,902
Granted Patent B2
US 8,874,902 · App. 14/064,274 · Granted Oct 28, 2014

Methods and systems for distributing cryptographic data to authenticated recipients

Inventor: William Rodgers Ackerly (Washington, DC)
Assignee: Virtru Corporation
H04L63/08H04L63/10H04L63/0815H04L2463/101G06F21/6218H04L2209/603
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,874,902
App. No.
14/064,274
Granted
Oct 28, 2014
Kind
B2
Abstract

A method for distributing cryptographic data to authenticated recipients includes receiving, by an access control management system, from a first client device, information associated with an encrypted data object. The method includes receiving, by the access control management system, from a second client device, a request for the information associated with the encrypted data object. The method includes verifying, by the access control management system, that a user of the second client device is identified in the received information associated with the encrypted data object. The method includes authenticating, by the access control management system, with an identity provider, the user of the second client device. The method includes sending, by the access control management system, to the second client device, the received information associated with the encrypted data object.

Claims (21)

1. A method comprising:

receiving, by an access control management system, from a first client device, information associated with an encrypted data object, the information including an identification of a role assigned to a user authorized to access the encrypted data object;

receiving, by the access control management system, from a second client device, a request for the information associated with the encrypted data object;

verifying, by the access control management system, that a user of the second client device is identified in the received information associated with the encrypted data object;

verifying, by the access control management system, that the user of the second client device is assigned the role identified in the received information;

selecting, by the access control management system, an identity provider from a plurality of identity providers, based on a user identifier included in the request for the received information associated with the encrypted data object, the user identifier associated with the user of the second client device;

requesting, by the access control management system, from the selected identity provider, authentication of the user of the second client device; and

sending, by the access control management system, to the second client device, the received information associated with the encrypted data object, responsive to the authentication by the selected identity provider of the user of the second client device.

2. A method comprising:

generating, by a first client device, an encrypted data object and information associated with the encrypted data object;

selecting, by the first client device, one of a plurality of remote access control management systems;

transmitting, by the first client device, to the selected one of the plurality of remote access control management systems, the information associated with the encrypted data object;

transmitting, by the first client device, to a second client device, the encrypted data object;

selecting, by the first client device, a second of the plurality of remote access control management systems;

transmitting, by the first client device, to the selected second of the plurality of remote access control management systems, the information associated with the encrypted data object; and

transmitting, by the first client device, to a third client device, the encrypted data object.

3. A method comprising:

receiving, by an access control management system, from a first client device, information associated with an encrypted data object, the information including a specification that a second user may receive the information within a time period; receiving, by the access control management system, from a second client device, a request for the information associated with the encrypted data object; verifying, by the access control management system, that a user of the second client device is identified in the received information associated with the encrypted data object; selecting, by the access control management system, an identity provider from a plurality of identity providers, based on a user identifier included in the received information associated with the encrypted data object, the user identifier associated with the user of the second client device;

requesting, by the access control management system, from the selected identity provider, authentication of the user of the second client device; and

sending, by the access control management system, to the second client device, the received information associated with the encrypted data object, responsive to the authentication by the selected identity provider of the user of the second client device.

4. The method of claim 2 further comprising receiving, by the access control management system, from the first client device, a modified version of the information associated with the encrypted data object, the modified version revoking access by the user of the second client device during the time period.

Assignments (4)
RELEASE OF SECURITY INTEREST Recorded Feb 7, 2024
From: FIRST-CITIZENS BANK & TRUST COMPANY
To: VIRTRU CORPORATION
Reel/Frame 066412/0348 →
SECURITY INTEREST Recorded Feb 6, 2024
From: VIRTRU CORPORATION
To: STIFEL BANK
Reel/Frame 066398/0565 →
SECURITY INTEREST Recorded Oct 6, 2021
From: VIRTRU CORPORATION
To: SILICON VALLEY BANK
Reel/Frame 057718/0099 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 14, 2014
From: ACKERLY, WILLIAM RODGERS
To: VIRTRU CORPORATION
Reel/Frame 032887/0813 →
Continuity (3)
Continuation 13340732 · Dec 30, 2011
Provisional Application 61432181 · Jan 12, 2011
Related Publication 20140052982A1 · Feb 20, 2014