发明名称 Methods and systems for enabling secure storage of sensitive data
摘要 Systems and methods are disclosed for storing sensitive data in a database, such as an application database or a dedicated application security database or store. In accordance with one aspect of the invention, user passwords are not directly stored in a database; but instead, when a password is entered, a one-way hash of the password phrase is produced for storage and/or comparison purposes. In accordance with another aspect, individual authorized application users are each aligned with their own version of an application-wide security key such that it becomes unnecessary to directly store the key in its original form. The security key is used to process sensitive data. In accordance with another aspect, a user's version of the application-wide security reflects an encryption-based relationship to the user's password. Various embodiments also support flexible access to particular collections of sensitive data based on user account and/or user role information.
申请公布号 US7412603(B2) 申请公布日期 2008.08.12
申请号 US20030728396 申请日期 2003.12.05
申请人 MICROSOFT CORPORATION 发明人 YEATES ANTHONY;DOURNOV PAVEL;BLACKWOOD KIRK
分类号 H04L9/00;G06F21/00;H04L9/08 主分类号 H04L9/00
代理机构 代理人
主权项
地址