Invention Grant
- Patent Title: Enabling using external tenant master keys
-
Application No.: US18242137Application Date: 2023-09-05
-
Publication No.: US12143475B2Publication Date: 2024-11-12
- Inventor: Miguel Leonardo Chinchilla Cartagena , Karina Si-Woon Chan , Aswani Kaushik Chimthapalli , Michael Clarke , Amol Anant Deshmukh , Subha Gopalakrishnan , Bjorn Brook Hamel , Louis James LaTouche , Atlee Glen Lyden , Marcus Anthony Sanchez , Jasmine Teresa Schladen , Devaki Ajinkya Tarkunde , Harrison Yu
- Applicant: Workday, Inc.
- Applicant Address: US CA Pleasanton
- Assignee: Workday, Inc.
- Current Assignee: Workday, Inc.
- Current Assignee Address: US CA Pleasanton
- Agency: Van Pelt, Yi & James LLP
- Main IPC: H04L9/08
- IPC: H04L9/08 ; H04L9/14 ; H04L67/561

Abstract:
The present application discloses a method, system, and computer system for managing data using keys. The method includes receiving a request to access data, wherein the data is encrypted based on a tenant service encryption key (TSEK) corresponding to the tenant database, determining a wrapper key used in connection with encrypting the TSEK based on a TSEK metadata, determining a top-level key used in connection with encrypting the wrapper key based on wrapper key metadata stored in association with the encrypted version of the wrapper key, obtaining the data stored within the tenant database, comprising decrypting at least part of the data based on (i) the TSEK, (ii) the wrapper key, and (iii) the top-level key, and providing the data in response to the request. The TSEK metadata is stored in the tenant database. An encrypted version of the wrapper key is stored in a key management service.
Public/Granted literature
- US20230412368A1 ENABLING USING EXTERNAL TENANT MASTER KEYS Public/Granted day:2023-12-21
Information query