The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Feb. 22, 2022

Filed:

Aug. 28, 2019
Applicant:

Amazon Technologies, Inc., Seattle, WA (US);

Inventors:

Petr Shveykin, North Vancouver, CA;

Kelvin Yiu, Bellevue, WA (US);

Jakub Wojciak, Vancouver, CA;

Assignee:

Amazon Technologies, Inc., Seattle, WA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/08 (2006.01); H04L 9/14 (2006.01);
U.S. Cl.
CPC ...
H04L 9/083 (2013.01); H04L 9/0822 (2013.01); H04L 9/0894 (2013.01); H04L 9/14 (2013.01); H04L 63/0435 (2013.01); H04L 63/064 (2013.01); H04L 63/068 (2013.01);
Abstract

Systems and processes are described for a message service with distributed key caching for server-side encryption. Message requests are received by message handlers of the message service that cache data encryption keys used to encrypt and decrypt messages that are stored to message containers in back end storage. A metadata service obtains the data encryption keys from a key management service, caches the keys locally, and sends the keys to the message handlers upon request, where the keys are cached, again. The key management service may generate the data encryption keys based on a master key (e.g., a client's master key). The message handlers may send both message data encrypted using the data encryption key and an encrypted copy of the data encryption key to be stored together in the data store.


Find Patent Forward Citations

Loading…