IP Library › Granted Patent US 10,726,104
Granted Patent B2
US 10,726,104 · App. 15/876,409 · Granted Jul 28, 2020

Secure document management

Inventor: Simon Bain (Berwickshire, GB)
Assignee: Business Partners Limited
G06F21/10G06F21/6209G06F21/6272G06F21/645H04L9/0631H04L9/3247H04L63/0428H04L63/0435G06F2221/0724
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,726,104
App. No.
15/876,409
Granted
Jul 28, 2020
Kind
B2
Abstract

Systems and methods for controlling access to digital works are described herein, e.g., including receiving a request for a digital work from a requestor; retrieving the digital work from a repository; incorporating a digital signature throughout the digital work specific to a device, wherein the incorporated digital signature includes information identifying the device having the ability to access to the digital work; providing the identified device with a device key associated with the device; encrypting the digital work, wherein the digital work is decryptable using the device key and the identified device; and providing the requestor with the encrypted digital work.

Claims (31)

1. A method for controlling access to data, the method comprising the steps of:

incorporating a digital signature throughout the data, the digital signature being specific to a device, wherein the incorporated digital signature includes information identifying the device having the ability to access to the data, wherein incorporating the digital signature throughout the data comprises scattering the digital signature whole or in portions throughout the data;

providing the identified device with a device key associated with the device; and

encrypting the data based on the device key and a signature key, wherein the data is decryptable using the device key and the identified device, wherein the device key enables decryption of an encrypted portion of the digital signature that contains the signature key that enables decryption of the data on the device in conjunction with the device key, wherein the portion of the digital signature is less than the entire digital signature and comprises the signature key.

2. The method of claim 1 , further comprising providing the data to a recipient.

3. The method of claim 2 , wherein the digital signature incorporated throughout the data further identifies the recipient.

4. The method according to claim 1 , wherein the digital signature incorporated throughout the data is encrypted.

5. The method of claim 4 , wherein the encryption is AES encryption.

6. The method of claim 4 , wherein the digital signature incorporated throughout the data is verifiable by a key different to the device key.

7. The method of claim 1 , wherein providing the identified device with a device key includes the step of generating the device key with the identified device.

8. The method of claim 1 further comprising incorporating in to the digital signature at least one access date of the data.

9. The method of claim 1 further comprising incorporating in to the digital signature non-validating information describing the device.

10. The method of claim 1 , wherein the device is one of: a server, a portable device, a smartphone, a personal computer, a desktop computer, a portable computer and a tablet computer.

11. The method according to claim 1 , wherein the data is: software code, text, a digital work, a video file, a technical document, a text document, a distributed file, a document, a word processing document, an image, a file, an audio recording or a presentation.

12. A system comprising:

one or more processors;

at least one memory for storing computer executable instructions, wherein execution of the computer executable instructions by the at least one processor causes the system to:

incorporate a digital signature throughout data, the digital signature being specific to a device, wherein the incorporated digital signature includes information identifying the device having the ability to access to the data, wherein incorporating the digital signature throughout the data comprises scattering the digital signature whole or in portions throughout the data;

provide the identified device with a device key associated with the device;

encrypt the data based on the device key and a signature key, wherein the data is decryptable using the device key and the identified device, wherein the device key enables decryption of an encrypted portion of the digital signature that contains the signature key that enables decryption of the data on the device in conjunction with the device key, wherein the portion of the digital signature is less than the entire digital signature and comprises the signature key.

13. The system of claim 12 further comprising one or more agents executing on one or more devices remote from the one or more processors, wherein each agent is configured to:

obtain encrypted data; and

decrypt the data by the identified device using a device key, wherein the decrypted data includes a digital signature identifying the device executing the agent.

14. The system of claim 12 , wherein the identified device is: a server, a portable device, a smartphone, a personal computer, a desktop computer, a portable computer and a tablet computer.

15. The system of claim 12 , wherein the data is: software code, text, a digital work, a video file, a technical document, a text document, a distributed file, a document, a word processing document, an image, a file, an audio recording or a presentation.

16. One or more non-transitory computer readable media storing computer readable instructions that, when executed, cause an apparatus to:

incorporate a digital signature throughout the data specific to a device, wherein the incorporated digital signature includes information identifying the device having the ability to access to the data, wherein incorporating the digital signature throughout the data comprises scattering the digital signature whole or in portions throughout the data;

provide the identified device with a device key associated with the device; and

encrypt the data based on the device key and a signature key, wherein the data is decryptable using the device key and the identified device, wherein the device key enables decryption of an encrypted portion of the digital signature that contains the signature key that enables decryption of the data on the device in conjunction with the device key, wherein the portion of the digital signature is less than the entire digital signature and comprises the signature key.

17. The computer readable media of claim 16 , wherein the identified device is: a server, a portable device, a smartphone, a personal computer, a desktop computer, a portable computer and a tablet computer.

18. The computer readable media of claim 16 , wherein the data is: software code, text, a digital work, a video file, a technical document, a text document, a distributed file, a document, a word processing document, an image, a file, an audio recording or a presentation.

Priority Claims (1)
GB 1421672.5 · Dec 5, 2014 · national
Continuity (2)
Division 15221725
Related Publication 20190012435A1 · Jan 10, 2019