发明名称 Method and system for extending encrypting file system
摘要 Users can share encrypted files without having access to other users' public key certificates, by specifying only the other users' identity information. A client agent interacts with a trusted service account to transparently add user encryption certificates to encrypted files after it was created. A header of each encrypted file includes signed encrypted data blocks, file system metadata, and a digital signature. When a user attempting to open an encrypted file is denied access, the client agent transmits the header data and the encryption certificate of the user to the trusted service account, with a request that the user encryption certificate be added to modify the encrypting file system metadata. After the trusted service account determines tampering has not occurred enroute and the user is authorized to access the file, the modified header data are returned to the client agent to enable the user to open the file.
申请公布号 US8549326(B2) 申请公布日期 2013.10.01
申请号 US20080182948 申请日期 2008.07.30
申请人 MOHAMED AHMED;BLACKOUT, INC. 发明人 MOHAMED AHMED
分类号 G06F11/30;G06F12/14 主分类号 G06F11/30
代理机构 代理人
主权项
地址