The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 04, 2023

Filed:

Sep. 21, 2020
Applicant:

Netskope, Inc., Santa Clara, CA (US);

Inventors:

Ravi Ithal, Los Altos, CA (US);

Shaila Vasudev, Saratoga, CA (US);

Khurram Saqlain, Fremont, CA (US);

Mahesh Gupta, San Jose, CA (US);

Karan Mendiratta, San Jose, CA (US);

Krishna Narayanaswamy, Saratoga, CA (US);

Assignee:

netSkope, Inc., Santa Clara, CA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/62 (2013.01); H04L 9/06 (2006.01); G06F 16/22 (2019.01); G06F 16/245 (2019.01); H04L 9/40 (2022.01); H04L 9/08 (2006.01); G06F 21/60 (2013.01); H04L 9/32 (2006.01);
U.S. Cl.
CPC ...
G06F 21/6227 (2013.01); G06F 16/2255 (2019.01); G06F 16/245 (2019.01); G06F 21/602 (2013.01); G06F 21/6218 (2013.01); H04L 9/0643 (2013.01); H04L 9/088 (2013.01); H04L 9/0825 (2013.01); H04L 9/0877 (2013.01); H04L 9/0891 (2013.01); H04L 9/3239 (2013.01); H04L 63/0272 (2013.01);
Abstract

The technology disclosed teaches protecting sensitive data in the cloud via indexable databases. The method includes identifying sensitive fields of metadata for encryption and for hashing. The method also includes hashing at least partial values in the indexable sensitive fields to non-reversible hash values, concatenating the non-reversible hash values with the metadata for the network events, and encrypting the sensitive fields of metadata. Also included is sending the metadata for the network events, with the non-reversible hash values and the encrypted sensitive fields, to a remote database server that does not have a decryption key for the encrypted sensitive fields and that indexes the non-reversible hash values for indexed retrieval against the indexable sensitive fields. The disclosed technology also teaches retrieving sensitive information that is secured at rest: receiving a sensitive field query, hashing the query, querying and receiving network event metadata responsive to the query, and decrypting the metadata.


Find Patent Forward Citations

Loading…