The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Mar. 17, 2026

Filed:

Oct. 10, 2022
Applicant:

Microsoft Technology Licensing, Llc, Redmond, WA (US);

Inventors:

Ramarathnam Venkatesan, Redmond, WA (US);

Nishanth Chandran, Bangalore, IN;

Ganesh Ananthanarayanan, Sammamish, WA (US);

Panagiotis Antonopoulos, Redmond, WA (US);

Srinath T. V. Setty, Redmond, WA (US);

Daniel John Carroll, Jr., Columbia, MD (US);

Kiran Muthabatulla, Sammamish, WA (US);

Yuanchao Shu, Kirkland, WA (US);

Sanjeev Mehrotra, Kirkland, WA (US);

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/08 (2006.01);
U.S. Cl.
CPC ...
H04L 9/0825 (2013.01); H04L 9/085 (2013.01); H04L 9/0866 (2013.01);
Abstract

An access control system is disclosed for controlling access to a resource. A request is received by a location attribute policy (LAP) server to access an encrypted resource. The LAP server accesses a resource policy that identifies requirements for granting access to the encrypted resource, such as a list of attributes of the requestor that are required and a dynamic attribute requirement of the requestor. The LAP server receives a cryptographic proof from the computing device that the requestor possesses the attributes and validates the proof based at least on information obtained from a trusted ledger. Once the proof is validated, the LAP server provides a shared secret associated with the dynamic attribute requirement to a decryption algorithm. The decryption algorithm uses the dynamic attribute shared secret in combination with one or more attribute shared secrets from the requestor to generate a decryption key for the encrypted resource.


Find Patent Forward Citations

Loading…