IP Library › Granted Patent US 10,326,593
Granted Patent B2
US 10,326,593 · App. 15/296,568 · Granted Jun 18, 2019

Shared keys based on multiple features

Inventor: Salil Kumar Jain (Jackson Heights, NY)
Assignee: AETNA INC.
H04L9/14H04L9/085H04L9/0866H04L63/0435H04L63/0861H04L63/06H04L2463/061
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,326,593
App. No.
15/296,568
Granted
Jun 18, 2019
Kind
B2
Abstract

A method for secret sharing utilizing multiple features of an input includes: receiving a registration input; obtaining features from the registration input; generating a secret key and a plurality of shared keys according to a shared secret scheme; associating each of the plurality of shared keys with a respective feature of the registration input; generating a plurality of additional features associated with additional keys having a similar format as a shared key associated with a respective feature; storing the plurality of shared keys associated with respective features together with the plurality of additional keys associated with additional features; and encrypting an element to be protected by the secret key using the secret key.

Claims (26)

1. A non-transitory computer-readable medium having processor-executable instructions stored thereon for secret sharing utilizing multiple features of an input, the processor-executable instructions, when executed, facilitating performance of the following:

receiving a registration input from a user;

obtaining features from the registration input;

generating a secret key and a plurality of shared keys according to a shared secret scheme, wherein the secret key is re-creatable using the plurality of shared keys;

generating a plurality of key-feature data elements based on the features of the registration input and the plurality of shared keys, wherein each of the key-feature data elements is based on a respective shared key of the plurality of shared keys and a respective feature of the registration input;

generating a plurality of additional data elements having a similar format as the plurality of key-feature data elements such that the key-feature data elements and the additional data elements are indistinguishable from one another to an attacker;

storing the plurality of key-feature data elements together with the plurality of additional data elements, wherein the secret key is not stored with the plurality of key-feature data elements and the plurality of additional data elements; and

encrypting an element to be protected by the secret key using the secret key.

2. The non-transitory computer-readable medium according to claim 1 , wherein the shared secret scheme is based on Shamir's scheme, Blakley's scheme, or the Chinese remainder theorem.

3. The non-transitory computer-readable medium according to claim 1 , wherein generating the plurality of key-feature data elements further comprises associating a respective shared key and a shared key parameter corresponding to the respective shared key with a respective feature of the registration input; and

wherein generating the plurality of additional data elements includes generating an additional parameter having a similar format as a shared key parameter.

4. The non-transitory computer-readable medium according to claim 1 , wherein generating the plurality of key-feature data elements comprises storing each of the plurality of shared keys in one or more extended dimensions of the respective feature of the registration input.

5. The non-transitory computer-readable medium according to claim 1 , wherein the number of shared keys generated is based on the number of features obtained.

6. A method for secret sharing utilizing multiple features of an input, the method comprising:

receiving, by a computing system, a registration input from a user;

obtaining, by the computing system, features from the registration input;

generating, by the computing system, a secret key and a plurality of shared keys according to a shared secret scheme, wherein the secret key is re-creatable using the plurality of shared keys;

generating, by the computing system, a plurality of key-feature data elements based on the features of the registration input and the plurality of shared key, wherein each of the key-feature data elements is based on a respective shared key of the plurality of shared keys and a respective feature of the registration input;

generating, by the computing system, a plurality of additional data elements having a similar format as the plurality of key-feature data elements such that the key-feature data elements and the additional data elements are indistinguishable from one another to an attacker;

storing, by the computing system, the plurality of key-feature data elements together with the plurality of additional data elements, wherein the secret key is not stored with the plurality of key-feature data elements and the plurality of additional data elements; and

encrypting, by the computing system, an element to be protected by the secret key using the secret key.

7. The method according to claim 6 , wherein the shared secret scheme is based on Shamir's scheme, Blakley's scheme, or the Chinese remainder theorem.

8. The method according to claim 6 , wherein generating the plurality of key-feature data elements further comprises associating a respective shared key and a shared key parameter corresponding to the respective shared key with a respective feature of the registration input; and

wherein generating the plurality of additional data elements includes generating an additional parameter having a similar format as a shared key parameter.

9. The method according to claim 6 , wherein generating the plurality of key-feature data elements comprises storing each of the plurality of shared keys in one or more extended dimensions of the respective feature of the registration input.

10. The method according to claim 6 , wherein the number of shared keys generated is based on the number of features obtained.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 18, 2016
From: JAIN, SALIL KUMAR
To: AETNA INC.
Reel/Frame 040046/0740 →
Continuity (3)
Provisional Application 62354324 · Jun 24, 2016
Provisional Application 62360692 · Jul 11, 2016
Related Publication 20170373861A1 · Dec 28, 2017