Microsoft Corporation
LABEL-BASED DOUBLE KEY ENCRYPTION
Last updated:
Abstract:
Double key encryption encrypts sensitive data using a content key, obtains a user public key from a key management service, encrypts the content key using the user public key, and encrypts the result using a cloud service provider key. Data confidentiality is protected efficiently through multilevel encryption and also by utilizing keys that are managed by different entities. Sensitivity labeling allows analytics to track sensitive data without compromising confidentiality. Compliance mechanisms may use attribute-based access control to support storage of sensitive data in a cloud, but only inside a permitted region, and without giving the cloud service provider access to the sensitive data.
Status:
Application
Type:
Utility
Filling date:
1 May 2020
Issue date:
4 Nov 2021