发明名称 Perimeter encryption method and system
摘要 A method and system for consistent format preserving encryption (C-FPE) are provided to protect data while the data is in a domain while allowing encrypted data to be treated inside the domain as if it were the unencrypted data. The method includes inserting a coupling into a data flow at a perimeter of the domain, and translating a data element from an unprotected data element to a protected data element using the coupling such that the data element is a protected data element within the domain.
申请公布号 US8990553(B2) 申请公布日期 2015.03.24
申请号 US201314072402 申请日期 2013.11.05
申请人 CA, Inc. 发明人 Reno James Donald;Allen Robert Roy
分类号 H04L29/06;G06F21/60;H04L9/06;H04L9/08 主分类号 H04L29/06
代理机构 Vierra Magen Marcus LLP 代理人 Vierra Magen Marcus LLP
主权项 1. A method of protecting a data element within a domain, the method comprising: inserting a coupling into a data flow at a perimeter of the domain, wherein the data flow through the coupling into the domain comprises the data element; and translating the data element between an unprotected form and a protected form using the coupling; wherein translating the data element from the unprotected form to the protected form comprises encrypting the data element using an encryption mechanism that preserves syntax, internal semantics and coherence of the data element after translation to the protected form; wherein the encryption mechanism uses a keyset to encrypt the data element; wherein translating the data element from the unprotected form and the protected form comprises: consistently encrypting the data element to a corresponding encrypted element which is substantially the same encrypted element each time the data element is encrypted.
地址 New York NY US