The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 14, 2020

Filed:

Dec. 27, 2017
Applicant:

Symantec Corporation, Mountain View, CA (US);

Inventors:

Kevin Alejandro Roundy, El Segundo, CA (US);

Yuqiong Sun, Mountain View, CA (US);

Christopher Gates, Marina Del rey, CA (US);

Michael Hart, Farmington, CT (US);

Saurabh Shintre, Sunnyvale, CA (US);

Brian T. Witten, Hermosa Beach, CA (US);

Assignee:

Symantec Corporation, Mountain View, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 21/62 (2013.01); H04L 29/06 (2006.01); G06F 21/31 (2013.01); G06F 21/53 (2013.01);
U.S. Cl.
CPC ...
G06F 21/6245 (2013.01); G06F 21/31 (2013.01); G06F 21/53 (2013.01); G06F 21/6227 (2013.01); H04L 63/06 (2013.01); H04L 63/0884 (2013.01); H04L 2463/082 (2013.01);
Abstract

Encrypting and decrypting sensitive files on a network device. In one embodiment, a method may include determining that a file stored on a network device is a sensitive file, encrypting the sensitive file, sending, to an authentication server, an encryption key, initializing, at the network device, a Software Guard Extension (SGX) enclave, loading, into the SGX enclave, a retrieval application, receiving, at the retrieval application, an attestation from the authentication server that the retrieval application is authentic, receiving, at the retrieval application, the encryption key from the authentication server, receiving, at the retrieval application, a user request to decrypt the encrypted sensitive file, authenticating, at the retrieval application, the user request, decrypting, at the network device, the particular encrypted sensitive file, and providing the sensitive file to the user.


Find Patent Forward Citations

Loading…