IP Library › Granted Patent US 9,231,952
Granted Patent B2
US 9,231,952 · App. 14/329,051 · Granted Jan 5, 2016

Key-based content management and access systems and methods

Inventors: Donald H. Relyea (Dallas, TX); Brian F. Roberts (Dallas, TX); Michelle Felt (Randolph, NJ)
Assignee: Verizon Patent and Licensing Inc.
H04L63/10G06F21/10H04L63/062H04L63/0876H04L63/102G06F2221/2141G11B20/0021G11B20/00731H04L9/0819H04L2463/101
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,231,952
App. No.
14/329,051
Granted
Jan 5, 2016
Kind
B2
Abstract

An exemplary method includes receiving data representative of a content instance over a network from an access device associated with a first user, encrypting the content instance in response to a command initiated by the user by way of one or more graphical user interfaces, providing a key configured to facilitate decryption of the encrypted content instance, creating at least one access rule corresponding to the encrypted content instance, transmitting data representative of the encrypted content instance to a requesting access device associated with a requesting user, receiving, from the requesting access device, data representative of a request to access the key over the network, and performing a predefined action related to the key in response to the request and in accordance with the at least one access rule.

Claims (44)

1. A method comprising:

receiving data representative of a content instance over a network from an access device associated with a first user;

encrypting the content instance in response to a command initiated by the first user by way of one or more graphical user interfaces, the encrypting resulting in an encrypted content instance;

providing, in response to the command initiated by the first user to encrypt the content instance, a key configured to facilitate decryption of the encrypted content instance;

creating, subsequent to the command initiated by the first user to encrypt the content instance and based on input provided by the first user by way of the one or more graphical user interfaces, at least one access rule corresponding to the encrypted content instance, the at least one access rule specifying an allowed level of access to the encrypted content instance for each of a plurality of different users and an allowed level of access to the encrypted content instance for each of a plurality of different types of access devices;

transmitting data representative of the encrypted content instance to a requesting access device associated with a requesting user;

receiving, from the requesting access device, data representative of a request to access the key over the network; and

performing a predefined action related to the key in response to the request and in accordance with the at least one access rule.

2. The method of claim 1 , further comprising providing an interface configured to allow the first user to specify the at least one access rule.

3. The method of claim 1 , wherein the predefined action comprises transmitting the key to the requesting access device.

4. The method of claim 3 , further comprising using the key to decrypt the encrypted content instance.

5. The method of claim 4 , further comprising deleting data representative of the key from the requesting access device after the encrypted content instance is decrypted.

6. The method of claim 1 , further comprising requiring the requesting access device to request the key over the network each time the requesting access device attempts to access the encrypted content instance.

7. The method of claim 1 , wherein the predefined action comprises denying the requesting access device access to the key.

8. The method of claim 1 , further comprising defining the at least one access rule to grant the requesting access device associated with an access device profile at least one type of access to the encrypted content instance.

9. The method of claim 1 , further comprising encrypting the key and providing another key configured to facilitate decryption of the key.

10. The method of claim 1 , further comprising modifying the at least one access rule in response to another command initiated by the first user.

11. The method of claim 10 , wherein the modifying of the at least one access rule comprises revoking access to the encrypted content instance for the requesting user.

12. The method of claim 1 , wherein the at least one access rule specifies a content formatting procedure for the encrypted content instance transmitted to the requesting access device associated with the requesting user.

13. The method of claim 1 , wherein the allowed level of access to the encrypted content instance for each of the plurality of different types of access devices comprises a full access level to the encrypted content instance for a first type of access device included in the plurality of different types of access devices, a read-only access level to the encrypted content instance for a second type of access device included in the plurality of different types of access devices, and a no access level to the encrypted content instance for a third type of access device included in the plurality of different types of access devices.

14. A system comprising:

an access subsystem, associated with a first user, that transmits data representative of a content instance associated with the first user over a network; and

a content management subsystem that:

receives the data representative of the content instance from the access subsystem, and

encrypts the content instance in response to a command initiated by the first user by way of one or more graphical user interfaces;

wherein the access subsystem creates, subsequent to the command initiated by the first user to encrypt the content instance and based on input provided by the first user by way of one or more graphical user interfaces, at least one access rule corresponding to the content instance, the at least one access rule specifying an allowed level of access to the content instance for each of a plurality of different users and an allowed level of access to the content instance for each of a plurality of different types of access devices; and

wherein the content management system:

provides, in response to the command initiated by the first user to encrypt the content instance, a key configured to facilitate decryption of the content instance,

receives, from a requesting access device associated with a requesting user, data representative of a request to access the key, and

performs a predefined action related to the key in response to the request and in accordance with the at least one access rule.

15. The system of claim 14 , wherein the predefined action comprises transmitting the key to the requesting access device.

16. The system of claim 14 , wherein the predefined action comprises denying the requesting access device access to the key.

17. The system of claim 14 , wherein the at least one access rule grants the requesting access device associated with the requesting user at least one type of access to the encrypted content instance.

18. The system of claim 14 , wherein the content management subsystem encrypts the key and provides another key configured to facilitate decryption of the key.

19. The system of claim 14 , wherein the content management subsystem modifies the at least one access rule in response to another command initiated by the first user.

20. A system comprising:

at least one computing device that

receives data representative of a content instance over a network from an access device associated with a first user;

encrypts the content instance in response to a command initiated by the first user by way of one or more graphical user interfaces, the encrypting resulting in an encrypted content instance;

provides, in response to the command initiated by the first user to encrypt the content instance, a key configured to facilitate decryption of the encrypted content instance;

creates, subsequent to the command initiated by the first user to encrypt the content instance and based on input provided by the first user by way of the one or more graphical user interfaces, at least one access rule corresponding to the encrypted content instance, the at least one access rule specifying an allowed level of access to the encrypted content instance for each of a plurality of different users and an allowed level of access to the encrypted content instance for each of a plurality of different types of access devices;

transmits data representative of the encrypted content instance to a requesting access device associated with a requesting user;

receives, from the requesting access device, data representative of a request to access the key over the network; and

performs a predefined action related to the key in response to the request and in accordance with the at least one access rule.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 11, 2014
From: RELYEA, DONALD H.; ROBERTS, BRIAN F.; FELT, MICHELLE
To: VERIZON DATA SERVICES LLC
Reel/Frame 033295/0748 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 11, 2014
From: VERIZON DATA SERVICES LLC
To: VERIZON PATENT AND LICENSING INC.
Reel/Frame 033295/0801 →
Continuity (2)
Continuation 12164364 · Jun 30, 2008
Related Publication 20140321650A1 · Oct 30, 2014