会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • VOLUME COHERENCY VERIFICATION FOR SEQUENTIAL-ACCESS STORAGE MEDIA
    • 用于顺序访问存储介质的容量验证
    • US20110219199A1
    • 2011-09-08
    • US12719441
    • 2010-03-08
    • Kevin D. ButtPaul M. GrecoGlen A. JaquettePaul J. Seger
    • Kevin D. ButtPaul M. GrecoGlen A. JaquettePaul J. Seger
    • G06F12/00
    • G06F3/0644G06F3/0611G06F3/0619G06F3/068G06F3/0682
    • A method for determining volume coherency is disclosed herein. Upon completing a first write job to a volume partition, the method makes a copy of a volume change reference (VCR) value associated with the volume. The VCR value is configured to change in a non-repeating manner each time content on the volume is modified. Prior to initiating a second write job to the volume partition, the method retrieves the copy and compares the copy to the VCR value. If the copy matches the VCR value, the method determines that a logical object on the partition was not modified between the first and second write jobs. If the copy does not match the VCR value, the method determines that the logical object on the partition was modified between the first and second write jobs. A corresponding system and computer program product are also disclosed herein.
    • 本文公开了一种用于确定卷一致性的方法。 完成对卷分区的第一次写入作业后,该方法将创建与卷相关联的卷更改引用(VCR)值的副本。 每次修改卷上的内容时,将VCR值配置为以不重复的方式进行更改。 在向卷分区启动第二次写入作业之前,该方法将检索副本并将该副本与VCR值进行比较。 如果复制与VCR值匹配,则该方法确定在第一和第二写入作业之间没有修改分区上的逻辑对象。 如果副本与VCR值不匹配,则该方法确定分区上的逻辑对象在第一个和第二个写入作业之间已被修改。 本文还公开了相应的系统和计算机程序产品。
    • 2. 发明授权
    • Use of indirect data keys for encrypted tape cartridges
    • 对加密磁带使用间接数据密钥
    • US08656186B2
    • 2014-02-18
    • US11742837
    • 2007-05-01
    • Paul M. GrecoShai HaleviGlen A. Jaquette
    • Paul M. GrecoShai HaleviGlen A. Jaquette
    • H04L29/06
    • G11B20/1201G11B20/00086G11B20/0021G11B2220/90H04L9/083H04L9/14
    • A method, system and program are provided for enabling selective access to multiple users' encrypted data in a single storage cartridge. A unique, derived key is generated for each user's data by performing cryptographic operations on a combination of a common base key and metadata related to the data to be encrypted (e.g. its total block count). The base data key is wrapped with one or more encryption keys to form one or more encryption encapsulated data keys (EEDKs). The base key and the derived key are wrapped to create a session encrypted data key (SEDK), which along with the EEDKs, are conveyed to the tape drive, where the SEDK is decrypted. The EEDKs are then stored in one or more places on the storage cartridge. The base key and the derived key are used to encrypt a predetermined user's data, with the derived key stored on the cartridge with the encrypted data. The encrypted data may be subsequently decrypted by retrieving the EEDK and decrypting it with a decryption key to extract the base data key. The extracted base data key can then be used with other information to calculate the derived key. Once calculated, the derived key is used to decrypt its associated encrypted data.
    • 提供了一种方法,系统和程序,用于使得能够选择性地访问单个存储盒中的多个用户的加密数据。 通过对与要加密的数据相关的公共基本密钥和元数据的组合(例如,其总块计数)执行加密操作,为每个用户的数据生成唯一的派生密钥。 基本数据密钥用一个或多个加密密钥包裹以形成一个或多个加密封装数据密钥(EEDK)。 基础密钥和派生密钥被包装以创建会话加密数据密钥(SEDK),其与EEDK一起被传送到SEDK被解密的磁带驱动器。 然后将EEDK存储在存储盒上的一个或多个位置。 基本密钥和派生密钥用于加密预定用户的数据,其中导出的密钥存储在盒上,其中加密的数据。 可以随后通过检索EEDK并用解密密钥对加密数据进行解密,以提取基本数据密钥。 然后,提取的基本数据密钥可以与其他信息一起使用以计算导出密钥。 一旦计算,派生密钥用于解密其相关联的加密数据。
    • 3. 发明授权
    • Use of indirect data keys for encrypted tape cartridges
    • 对加密磁带使用间接数据密钥
    • US08494166B2
    • 2013-07-23
    • US11742819
    • 2007-05-01
    • Paul M. GrecoShai HaleviGlen A. Jaquette
    • Paul M. GrecoShai HaleviGlen A. Jaquette
    • G06F21/00
    • G11B20/00086G06F21/80G11B20/0021G11B20/00224G11B20/00333G11B2220/90
    • A method, system and program are provided for enabling selective access to multiple users' encrypted data in a single storage cartridge. A unique, derived key is generated for each user's data by performing cryptographic operations on a combination of a common base key and metadata related to the data to be encrypted (e.g. its total block count). The base data key is wrapped with one or more encryption keys to form one or more encryption encapsulated data keys (EEDKs). The base key and the derived key are wrapped to create a session encrypted data key (SEDK), which along with the EEDKs, are conveyed to the tape drive, where the SEDK is decrypted. The EEDKs are then stored in one or more places on the storage cartridge. The base key and the derived key are used to encrypt a predetermined user's data, with the derived key stored on the cartridge with the encrypted data. The encrypted data may be subsequently decrypted by retrieving the EEDK and decrypting it with a decryption key to extract the base data key. The extracted base data key can then be used with other information to calculate the derived key. Once calculated, the derived key is used to decrypt its associated encrypted data.
    • 提供了一种方法,系统和程序,用于使得能够选择性地访问单个存储盒中的多个用户的加密数据。 通过对与要加密的数据相关的公共基本密钥和元数据的组合(例如,其总块计数)执行加密操作,为每个用户的数据生成唯一的派生密钥。 基本数据密钥用一个或多个加密密钥包裹以形成一个或多个加密封装数据密钥(EEDK)。 基础密钥和派生密钥被包装以创建会话加密数据密钥(SEDK),其与EEDK一起被传送到SEDK被解密的磁带驱动器。 然后将EEDK存储在存储盒上的一个或多个位置。 基本密钥和派生密钥用于加密预定用户的数据,其中导出的密钥存储在盒上,其中加密的数据。 可以随后通过检索EEDK并用解密密钥对加密数据进行解密,以提取基本数据密钥。 然后,提取的基本数据密钥可以与其他信息一起使用以计算导出密钥。 一旦计算,派生密钥用于解密其相关联的加密数据。
    • 4. 发明申请
    • Storing encrypted data keys to a tape to allow a transport mechanism
    • 将加密的数据密钥存储到磁带以允许传输机制
    • US20080063197A1
    • 2008-03-13
    • US11470785
    • 2006-09-07
    • Glen A. JaquettePaul M. Greco
    • Glen A. JaquettePaul M. Greco
    • H04N7/167
    • H04L9/0825H04L9/0822H04L9/083H04L9/0897
    • A method, system and program are provided for enabling access to encrypted data in a storage cartridge by separately wrapping the data key used to encrypt the data with separate encryption keys (e.g., a public key from a public/private key pair) to form encryption encapsulated data keys (EEDKs) that are stored on the storage cartridge along with the encrypted data. With multiple EEDKs stored on the cartridge, a multi-user transport mechanism is provided where each user can access and decode the encrypted data by retrieving and decrypting an EEDK with a decryption key (e.g., the private key from the public/private key pair) to extract the underlying data key, and then using the extracted data key to decrypt the encrypted data.
    • 提供了一种方法,系统和程序,用于通过用分开的加密密钥(例如,公共/私人密钥对的公共密钥)分开包装用于加密数据的数据密钥来访问存储盒中的加密数据,以形成加密 与加密数据一起存储在存储盒上的封装数据密钥(EEDK)。 通过存储在盒式磁带上的多个EEDK,提供多用户传输机制,其中每个用户可以通过用解密密钥检索和解密EEDK来访问和解码加密数据(例如,来自公/私钥对的私钥) 提取底层数据密钥,然后使用提取的数据密钥对加密数据进行解密。
    • 9. 发明申请
    • Use of Indirect Data Keys for Encrypted Tape Cartridges
    • 对加密磁带盒使用间接数据密钥
    • US20080273696A1
    • 2008-11-06
    • US11742819
    • 2007-05-01
    • Paul M. GrecoShai HaleviGlen A. Jaquette
    • Paul M. GrecoShai HaleviGlen A. Jaquette
    • H04L9/00H04K1/00
    • G11B20/00086G06F21/80G11B20/0021G11B20/00224G11B20/00333G11B2220/90
    • A method, system and program are provided for enabling selective access to multiple users' encrypted data in a single storage cartridge. A unique, derived key is generated for each user's data by performing cryptographic operations on a combination of a common base key and metadata related to the data to be encrypted (e.g. its total block count). The base data key is wrapped with one or more encryption keys to form one or more encryption encapsulated data keys (EEDKs). The base key and the derived key are wrapped to create a session encrypted data key (SEDK), which along with the EEDKs, are conveyed to the tape drive, where the SEDK is decrypted. The EEDKs are then stored in one or more places on the storage cartridge. The base key and the derived key are used to encrypt a predetermined user's data, with the derived key stored on the cartridge with the encrypted data. The encrypted data may be subsequently decrypted by retrieving the EEDK and decrypting it with a decryption key to extract the base data key. The extracted base data key can then be used with other information to calculate the derived key. Once calculated, the derived key is used to decrypt its associated encrypted data.
    • 提供了一种方法,系统和程序,用于使得能够选择性地访问单个存储盒中的多个用户的加密数据。 通过对与要加密的数据相关的公共基本密钥和元数据的组合(例如,其总块计数)执行加密操作,为每个用户的数据生成唯一的派生密钥。 基本数据密钥用一个或多个加密密钥包裹以形成一个或多个加密封装数据密钥(EEDK)。 基础密钥和派生密钥被包装以创建会话加密数据密钥(SEDK),其与EEDK一起被传送到SEDK被解密的磁带驱动器。 然后将EEDK存储在存储盒上的一个或多个位置。 基本密钥和派生密钥用于加密预定用户的数据,其中导出的密钥存储在盒上,其中加密的数据。 可以随后通过检索EEDK并用解密密钥对加密数据进行解密,以提取基本数据密钥。 然后,提取的基本数据密钥可以与其他信息一起使用以计算导出密钥。 一旦计算,派生密钥用于解密其相关联的加密数据。