发明名称 BLUESALT SECURITY
摘要 Embodiments of the present invention disclose a method, system, and computer program product for bluesalt security. A computer receives a confidential data configuration wherein specific sensor are assigned to specific confidential information. The assigned sensors are measured for values as a system administrator enters a password corresponding to the confidential information. The measured values are converted into a salt and concatenated with the password to generate a primary key. The primary key is used to encrypt the confidential information, then the primary key is encrypted using a secondary key comprised of a second password with a second set of sensor information as the salt. The encrypted key is saved securely while the secondary key is destroyed. In order to decrypt the confidential information, a user must replicate the password and sensor values to generate the primary or secondary key.
申请公布号 US2017061147(A1) 申请公布日期 2017.03.02
申请号 US201514843390 申请日期 2015.09.02
申请人 International Business Machines Corporation 发明人 Dash Samir K.
分类号 G06F21/62;H04L9/32;H04L29/06 主分类号 G06F21/62
代理机构 代理人
主权项 1. A method for a bluesalt security program, the method comprising: receiving an access request which includes a resource and an access password; referencing one or more primary sensors to obtain one or more access sensor values, wherein the one or more primary sensors are associated with the resource; converting the one or more access sensor values into an access salt value; concatenating the access password and the access salt value into an access hash key; determining whether the access hash key decrypts a data; based on determining that the access hash key decrypts the data, providing access to the data; based on determining that the access hash key does not decrypt the data, determining whether the access hash key decrypts an encrypted key; and based on the determining that the access hash key decrypts the encrypted key, decrypting the encrypted key and decrypting the data with the decrypted, encrypted key, wherein one or more steps of the above method are performed using one or more computers.
地址 Armonk NY US