Microsoft Corporation
ENHANCED SECURITY OF SECRET DATA FOR DYNAMIC USER GROUPS

Last updated:

Abstract:

A system can control access to encrypted data shared by a group of users by the use of a vault key that is associated with a group of users. The encrypted data can include encrypted secret data generated from the secret data using a secret key, an encrypted secret key can be generated from the secret key by the use of a vault key, and an encrypted vault key generated from the vault key by the use of a public key associated with a user of the group of users. The system can allow users to store and access the encrypted data only if the user is a current member of the group. The system can verify the user's membership status from a group manager, such as a system managing a channel or chat session.

Status:
Application
Type:

Utility

Filling date:

3 Dec 2019

Issue date:

3 Jun 2021