US 11,870,886 B2
System and method for multitenant key derivation
Margarita Vald, Tel Aviv (IL); Olla Nasirov, Tel Aviv (IL); Gleb Keselman, Tel Aviv (IL); Yaron Sheffer, Tel Aviv (IL); and Sergey Banshats, Tel Aviv (IL)
Assigned to INTUIT INC., Mountain View, CA (US)
Filed by INTUIT INC., Mountain View, CA (US)
Filed on Apr. 17, 2023, as Appl. No. 18/301,886.
Application 18/301,886 is a continuation of application No. 16/991,218, filed on Aug. 12, 2020, granted, now 11,646,871.
Prior Publication US 2023/0261855 A1, Aug. 17, 2023
Int. Cl. H04L 9/08 (2006.01); H04L 9/32 (2006.01)
CPC H04L 9/0822 (2013.01) [H04L 9/083 (2013.01); H04L 9/0861 (2013.01); H04L 9/0891 (2013.01); H04L 9/3247 (2013.01); H04L 2209/04 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A computer implemented method, comprising:
receiving, from a first remote server, a client key over a network connection;
generating a derivation input using the client key and by hashing derivation data;
transmitting the derivation input to a second remote server;
receiving, from the second remote server, a blinded derived key generated by the second remote server using a root key and the derivation input;
unblinding the blinded derived key to generate a derived key; and
using the derived key to encrypt or decrypt data.