×

Cryptographic erasure of selected encrypted data

  • US 8,918,651 B2
  • Filed: 05/14/2012
  • Issued: 12/23/2014
  • Est. Priority Date: 05/14/2012
  • Status: Expired due to Fees
First Claim
Patent Images

1. A method for cryptographic erasure of selected encrypted data by a processor device in a computing environment, the method comprising:

  • encrypting data files with a plurality of derived keys, wherein;

    each derived key comprises both a shred key for deleting the data files and a served key for encrypting the data files, andthe plurality of derived keys are adapted to be individually shredded in a subsequent erasure operation;

    placing the plurality of derived keys in a key store data set (KSDS);

    encrypting the KSDS with a different key than any of the plurality of derived keys;

    providing a label for each of the shred key and the served key in the KSDS;

    shredding the label, the shred key, and the served key, wherein failure to shred the shred key and the served key does not prohibit the shredding; and

    rewriting the KSDS without the deleted label, the shred key, and the served key.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×