IP Library Granted Patent US 12,626,002
Granted Patent B2
US 12,626,002 · App. 18/416,497 · Granted May 12, 2026

Logical log generation in enclave database

Inventor: Xinying Yang (Beijing, CN)
Assignee: Beijing Volcano Engine Technology Co., Ltd.
G06F21/6227
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,626,002
App. No.
18/416,497
Granted
May 12, 2026
Kind
B2
Abstract

A database management system (DBMS) in an enclave for a data privacy preservation database is provided. The system comprising a DBMS engine configured to parse a database command for execution, set an access control status to a first status for a field of the data privacy preservation database when the parsed database command includes the field corresponding to a record in a system catalog table, and log the database command into a logical log. When the access control status is set to the first status and the database command includes a content of the field, the DBMS engine is further configured to log a predetermined identifier, an identification of the field, and a length of the content immediately before the content in the logical log.

Claims (47)

1 . A database management system (DBMS) in an enclave, the DBMS comprising:

a DBMS engine configured to:

parse a database command for execution;

set an access control status to a first status for a field of a system catalog table of a data privacy preservation database when the parsed database command includes the field corresponding to a record in the system catalog table;

log the database command into a logical log; and

when the access control status is set to the first status and the database command includes a content of the field, log, in the logical log, a predetermined identifier, an identification of the field, and a length of the content of the field, for data privacy preservation.

2 . The DBMS of claim 1 , wherein the first status for the field corresponds to the field being a private field, the first status is indicative of the private field being invisible to a user,

the database command is configured to access the content of the field, and

the logical log is configured to log the database command.

3 . The DBMS of claim 2 , wherein the record in the system catalog table includes the identification of the field and a secret level,

the DBMS engine is configured to set the access control status to the first status for the field when the secret level corresponding to the field is a predetermined value.

4 . The DBMS of claim 3 , wherein upon receiving a request to set the field as the private field, the DBMS engine is configured to generate or update the record in the system catalog table to set the secret level corresponding to the field to the predetermined value after the request, and

wherein the request is independent to the database command.

5 . The DBMS of claim 1 , wherein the length of the content of the field corresponds to a size of the content of the field in the logical log.

6 . The DBMS of claim 1 , wherein the predetermined identifier has a unique value different from identifiers of database commands to be logged in the logical log.

7 . The DBMS of claim 1 , wherein an entirety of the DBMS is in the enclave for runtime execution.

8 . A method, the method comprising:

parsing, by a database management system (DBMS) engine of a DBMS, a database command for execution;

setting an access control status to a first status for a field of a system catalog table of a data privacy preservation database when the parsed database command includes the field corresponding to a record in the system catalog table;

logging the database command into a logical log; and

when the access control status is set to the first status and the database command includes a content of the field, logging, in the logical log, a predetermined identifier, an identification of the field, and a length of the content, for data privacy preservation.

9 . The method of claim 8 , wherein the first status for the field corresponds to the field being a private field, the first status is indicative of the private field being invisible to a user,

the database command is configured to access the content of the field, and

the logical log is configured to log the database command.

10 . The method of claim 9 , wherein the record in the system catalog table includes the identification of the field and a secret level, the method further comprises:

setting the access control status to the first status for the field when the secret level corresponding to the field is a predetermined value.

11 . The method of claim 10 , wherein the method further comprises:

upon receiving a request to set the field as the private field, generating or updating the record in the system catalog table to set the secret level corresponding to the field to the predetermined value after the request,

wherein the request is independent to the database command.

12 . The method of claim 8 , wherein the length of the content of the field corresponds to a size of the content of the field in the logical log.

13 . The method of claim 8 , wherein the predetermined identifier has a unique value different from identifiers of database commands to be logged in the logical log.

14 . The method of claim 8 , wherein an entirety of the DBMS is in an enclave for runtime execution.

15 . A non-transitory computer-readable medium having computer-executable instructions stored thereon that, upon execution, cause one or more processors to perform operations comprising:

parsing, by a database management system (DBMS) engine of a DBMS, a database command for execution;

setting an access control status to a first status for a field of a system catalog table of a data privacy preservation database when the parsed database command includes the field corresponding to a record in the system catalog table;

logging the database command into a logical log; and

when the access control status is set to the first status and the database command includes a content of the field, logging, in the logical log, a predetermined identifier, an identification of the field, and a length of the content, for data privacy preservation.

16 . The non-transitory computer-readable medium of claim 15 , wherein the first status for the field corresponds to the field being a private field, the first status is indicative of the private field being invisible to a user,

the database command is configured to access the content of the field, and

the logical log is configured to log the database command.

17 . The non-transitory computer-readable medium of claim 16 , wherein the record in the system catalog table includes the identification of the field and a secret level, the operations further comprise:

setting the access control status to the first status for the field when the secret level corresponding to the field is a predetermined value.

18 . The non-transitory computer-readable medium of claim 17 , wherein the operations further comprise:

upon receiving a request to set the field as the private field, generating or updating the record in the system catalog table to set the secret level corresponding to the field to the predetermined value after the request,

wherein the request is independent to the database command.

19 . The non-transitory computer-readable medium of claim 15 , wherein the predetermined identifier has a unique value different from identifiers of database commands to be logged in the logical log.

20 . The non-transitory computer-readable medium of claim 15 , wherein an entirety of the DBMS is in an enclave for runtime execution.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2025
From: YANG, XINYING
To: DOUYIN VISION CO., LTD.
Reel/Frame 072956/0921 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2025
From: DOUYIN VISION CO., LTD.
To: BEIJING VOLCANO ENGINE TECHNOLOGY CO., LTD.
Reel/Frame 072957/0119 →
Continuity (1)
Related Publication 20250238543A1 · Jul 24, 2025
References Cited (9)
US 8201216B2 · Cha · 2012 [cited by examiner]
US 8544104B2 · Burke · 2013 [cited by examiner]
US 10133746B1 · McCline · 2018 [cited by examiner]
US 10977384B2 · Benaloh · 2021 [cited by examiner]
US 20050251865A1 · Mont · 2005 [cited by examiner]
US 20110067084A1 · Byun · 2011 [cited by examiner]
US 20150113614A1 · Sarkuni · 2015 [cited by examiner]
US 20230085763A1 · Soundararajan · 2023 [cited by examiner]
US 20230269093A1 · Ben-Ari · 2023 [cited by examiner]