发明授权
- 专利标题: Method and apparatus for accessing sensitive information on-demand
- 专利标题(中): 按需访问敏感信息的方法和装置
-
申请号: US14726166申请日: 2015-05-29
-
公开(公告)号: US09355259B1公开(公告)日: 2016-05-31
- 发明人: Jia Hua Choo
- 申请人: Flexera Software LLC
- 申请人地址: US CA San Jose
- 专利权人: FLEXERA SOFTWARE LLC
- 当前专利权人: FLEXERA SOFTWARE LLC
- 当前专利权人地址: US CA San Jose
- 代理机构: Perkins Coie LLP
- 代理商 Michael A. Glenn
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F21/60 ; G06F21/62 ; H04L9/08
摘要:
Exposure of sensitive tenant information is minimized in a multi-tenant/multi-user environment. A unique encryption key is provided for each tenant. The tenant encryption key is never stored in the clear and each copy of the tenant encryption key is protected by a user derived password. A secure folder is created for each tenant and encrypted by the tenant encryption key. Secure folders are mounted only on-demand, i.e. when an authenticated request is received for that tenant. The secure folders are mounted only for specific durations only. Otherwise, they are un-mounted. When a secure folder is mounted, any read/write operation to the secure folder is encrypted/decrypted on-the-fly. When the secure folder is un-mounted, all file contents in the secure folder, and the secure folder itself, are not visible in the file system and no application can browse to the secure folder without the tenant encryption key.
信息查询