Cryptographic Suite Management Unit for Cross-Jurisdiction Interoperability

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing cryptographic systems face challenges in securely exchanging and managing cryptographic suites between applications and devices with different cryptographic implementations, particularly across jurisdictions and platforms, leading to difficulties in secure data communication.

Innovation Solution

A cryptographic suite management system and method that enables the configuration, import, and export of cryptographic implementations between correspondents, using a protocol to negotiate security requirements and dynamically load cryptographic suites, while enforcing policies and ensuring secure communication and interoperability.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If different cryptographic techniques are used in different jurisdictions, then local security requirements are met, but secure data exchange between entities in different countries becomes difficult

Engineering Contradiction:
Improvesecurity complianceVSAvoidinteroperability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces a cryptographic suite management unit as an intermediary that mediates between entities using different cryptographic techniques. This unit translates and manages cryptographic suites, enabling secure data exchange between entities in different jurisdictions while maintaining compliance with local security requirements. The management unit acts as a bridge that reconciles conflicting cryptographic standards.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The cryptographic suite management unit is designed to support multiple cryptographic techniques and suites simultaneously. It can manage different cryptographic implementations (e.g., AES, RSA, ECC) and adapt to various jurisdictional requirements, providing a universal solution that works across different security standards and platforms.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If cryptographic implementations are tailored to different platforms and devices, then platform-specific security needs are addressed, but communication between applications on different platforms becomes complex

Engineering Contradiction:
Improveplatform securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The cryptographic suite management unit provides a universal interface that works across multiple platforms and devices. It manages platform-specific cryptographic implementations through a common management layer, reducing the complexity of inter-platform communication while maintaining platform-specific security requirements.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system segments cryptographic functionality into modular components managed by the suite management unit. This segmentation allows platform-specific cryptographic operations to be isolated and managed independently, reducing overall system complexity while maintaining security.

Inventive Principle:
Principle #1Segmentation

3Adaptability or versatility

If multiple cryptographic suites are supported for interoperability, then secure communication between different systems is enabled, but managing and securing the exchange of these suites becomes complex

Engineering Contradiction:
Improvecryptographic interoperabilityVSAvoidsuite management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The cryptographic suite management unit serves as an intermediary that handles the complex tasks of importing, exporting, and managing cryptographic suites. It provides a standardized interface for suite exchange, reducing the complexity of managing multiple cryptographic implementations while enabling broad interoperability.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements feedback mechanisms to track and manage cryptographic suite states, ensuring proper import/export operations and security compliance. This feedback loop helps manage the complexity of suite exchange by providing visibility and control over cryptographic resource distribution.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS9946884B2System and method for cryptographic suite management
Publication Date: 2018.04.17 INFOSEC GLOBAL
  • US9946884B2 patent drawing
  • US9946884B2 patent drawing
  • US9946884B2 patent drawing

AI summary

Systems and methods for cryptographic suite management are described. A system for cryptographic suite management has a cryptographic suite management unit comprising a series of APIs enabling diverse applications to call cryptographic functions. The system enables: multiple applications on an interface to access shared cryptographic resources; applications across multiple devices to share and license cryptographic resources between devices; encryption, decryption and sharing of data between devices having different cryptographic implementations; the definition, distribution and enforcement of policies governing the terms of use for cryptographic implementations, systems and methods to secure and protect shared and dynamically loaded cryptographic providers; use by an application of multiple cryptographic resources and the management of cryptographic provider bundles and associated policies across one or many cryptographic suite management unit instances.