METHOD AND APPARATUS FOR FACILITATING ROLE-BASED CRYPTOGRAPHIC KEY MANAGEMENT FOR A DATABASE
Patent №
US 8,064,604
Granted
2011-11-22
Filed 2007
Owner
ORACLE INTERNATIONAL CORPORATION
Lab
—
AI components
1
kr
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
11651283
One embodiment of the present invention provides a system that facilitates role-based cryptographic key management. The system operates by receiving a request at a database server from a user to perform a cryptographic operation on data on the database server, wherein the user is a member of a role, and wherein the role has been granted permission to perform the cryptographic operation on the data. Next, the system receives from the user at the database server a user key, which is associated with the user. The system then unwraps a wrapped role key with the user key to obtain a role key, which is associated with the role. Next, the system unwraps a wrapped data key with the role key to obtain a data key, which is used to encrypt and decrypt the data. Finally, the system uses the data key to perform the cryptographic operation on the data.
AI classification
Ownership
ORACLE INTERNATIONAL CORPORATION
assignment · 187820751
Assignors
YOUN, PAUL
On an employer assignment, the assignors are typically the inventors.