Changeflow GovPing Telecom & Technology Managing Data Encryption During System Upgrades...
Routine Notice Added Final

Managing Data Encryption During System Upgrades - Red Hat Patent

Favicon for changeflow.com ChangeBridge: Patent Grants - Networking (H04L)
Published April 7th, 2026
Detected April 8th, 2026
Email

Summary

The USPTO granted Patent US12598065B2 to Red Hat, Inc. covering a system for managing data encryption during system upgrades. The patent contains 20 claims related to detecting component upgrades on computing devices with encrypted data, deactivating links between PCR values and decryption keys prior to boot, provisioning alternative network server links for key authorization, and updating PCR values post-boot.

What changed

The USPTO issued Patent US12598065B2 to Red Hat, Inc. inventors Yuval Kashtan, David Elie-Dit-Cosaque, and James Ramsay for a system managing data encryption during system upgrades. The patent addresses secure decryption key handling when platform configuration register values change during component upgrades, using alternative network server provisioning to authorize key access during boot processes.

Technology companies developing secure boot systems, encryption management software, or system upgrade technologies may need to assess whether their products or services implicate this patent. Competitors in enterprise software, cloud infrastructure, or cybersecurity sectors should review this grant for potential licensing implications or freedom-to-operate concerns.

What to do next

  1. Monitor for updates

Source document (simplified)

← USPTO Patent Grants

Managing data encryption during system upgrades

Grant US12598065B2 Kind: B2 Apr 07, 2026

Assignee

Red Hat, Inc.

Inventors

Yuval Kashtan, David Elie-Dit-Cosaque, James Ramsay

Abstract

A system can be provided for managing data encryption during system updates. For example, the system can detect an upgrade to a component of a computing device that includes encrypted data. In response to detecting the upgrade and prior to a boot process the system can deactivate a link between a set of platform configuration register (PCR) values and a decryption key usable to decrypt the encrypted data. The system can further authorize access to the decryption key during the boot process by provisioning an alternative link between a network server and the decryption key. Additionally, subsequent to the boot process, the system can update the set of PCR values and link the updated set of PCR values and the decryption key.

CPC Classifications

H04L 9/088 G06F 9/4401

Filing Date

2024-05-10

Application No.

18660445

Claims

20

View original document →

Get daily alerts for ChangeBridge: Patent Grants - Networking (H04L)

Daily digest delivered to your inbox.

Free. Unsubscribe anytime.

Classification

Agency
USPTO
Published
April 7th, 2026
Instrument
Notice
Legal weight
Binding
Stage
Final
Change scope
Minor
Document ID
US12598065B2

Who this affects

Applies to
Technology companies Manufacturers
Industry sector
5112 Software & Technology
Activity scope
Patent granting Encryption technology Secure boot systems
Geographic scope
United States US

Taxonomy

Primary area
Intellectual Property
Operational domain
Legal
Topics
Cybersecurity Software & Technology

Get alerts for this source

We'll email you when ChangeBridge: Patent Grants - Networking (H04L) publishes new changes.

Optional. Personalizes your daily digest.

Free. Unsubscribe anytime.