会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • COMPUTER SYSTEM AND VOLUME MIGRATION CONTROL METHOD USING THE SAME
    • 使用它的计算机系统和体积移动控制方法
    • WO2013088485A1
    • 2013-06-20
    • PCT/JP2011/007055
    • 2011-12-16
    • HITACHI, LTD.NAKAGAWA, HirotakaMORI, Mioko
    • NAKAGAWA, HirotakaMORI, Mioko
    • G06F21/78
    • G06F21/78
    • A computer system regarding which there is no possibility that data loss or data leakage will occur caused by volume migration is provided. The computer system includes: a memory resource to be accessed by a host computer; a storage system for providing a volume, which logicizes the memory resource, to the host computer; and a management device for managing migration of the volume. When detecting a task of migration of the volume based on a request from a first administrator, the management device compares an encryption function setting status of the volume with the encryption function setting status of a migration destination object of the volume; and sends notice of this comparison result to a second administrator, who is different from the first administrator, for security management of the storage system.
    • 提供了一种计算机系统,其不存在由体积迁移引起的数据丢失或数据泄漏的可能性。 计算机系统包括:由主计算机访问的存储器资源; 存储系统,用于向主计算机提供将存储器资源逻辑化的卷; 以及用于管理卷的迁移的管理装置。 当基于来自第一管理员的请求检测到卷的迁移任务时,管理装置将卷的加密功能设置状态与卷的迁移目的地对象的加密功能设置状态进行比较; 并将该比较结果的通知发送给与第一管理员不同的第二管理员,用于存储系统的安全管理。
    • 2. 发明申请
    • DATA STORAGE SYSTEM AND MANAGEMENT METHOD THEREFOR
    • 数据存储系统及其管理方法
    • WO2012147135A1
    • 2012-11-01
    • PCT/JP2011/002501
    • 2011-04-28
    • HITACHI, LTD.NAKAGAWA, HirotakaMORI, Mioko
    • NAKAGAWA, HirotakaMORI, Mioko
    • G06F3/06
    • G06F3/0683G06F3/0604G06F3/0647G06F3/067
    • Resources migrated from migration source storage apparatuses to a migration destination storage apparatus are appropriately allocated to each migration source user. A migration destination storage apparatus among a plurality of storage apparatuses and has a controller for sending or receiving information to or from a host computer and managing each migration destination volume as an access target of the host computer. The controller manages each migration destination volume by dividing the migration destination volumes into a plurality of resource groups based on identification information for identifying each migration source volume; manages a plurality of resources related to each migration destination volume by associating them with each resource group; and manages each migration destination volume and each resource belonging to each resource group as operation targets to be allocated individually to each migration source user who uses each migration source volume, and as operation targets over which only each migration source user has operation authority.
    • 从迁移源存储装置迁移到迁移目的地存储装置的资源被适当地分配给每个迁移源用户。 多个存储装置中的迁移目的地存储装置,具有用于向主计算机发送信息或从主机接收信息的控制器,并且管理每个迁移目的地卷作为主计算机的访问目标。 控制器基于用于识别每个迁移源卷的标识信息将迁移目的地卷划分为多个资源组来管理每个迁移目的地卷; 通过将它们与每个资源组相关联来管理与每个迁移目的地卷相关的多个资源; 并将属于每个资源组的每个迁移目标卷和每个资源的每个资源作为操作目标进行管理,作为单独分配给使用每个迁移源卷的每个迁移源用户的操作对象,以及作为仅每个迁移源用户具有操作权限的操作目标。
    • 6. 发明申请
    • COMPUTER SYSTEM EQUIPPED WITH AN ENCRYPTION KEY MANAGEMENT FUNCTION AT THE TIME OF HOT SWAP OF A STORAGE MEDIUM
    • 在存储介质的热交换器时刻配备加密密钥管理功能的计算机系统
    • WO2013121457A1
    • 2013-08-22
    • PCT/JP2012/001003
    • 2012-02-15
    • HITACHI, LTD.MORIGUCHI, MiokoNAKAGAWA, Hirotaka
    • MORIGUCHI, MiokoNAKAGAWA, Hirotaka
    • G06F21/02
    • G06F21/805G06F2221/2143
    • When removing an HDD, in which a failure has occurred, after the execution of hot swap in a storage apparatus having a stored data encryption function, an encryption key assigned to that HDD is shredded and thereby data in the HDD is automatically crypto-shredded; and after a new HDD is installed, data in a spare disk regarding which copy back to the new HDD is completed is automatically crypto-shredded and key generation for the spare disk is requested to a security administrator in preparation for the next hot swap. Then, with the storage apparatus which imports and uses an encryption key generated by an external key management server for encryption/decoding of stored data, the encryption key for the spare disk is imported from the external key management server in advance and the encryption key is prevented from the use other than the intended use in preparation for a case where the encryption key may not be imported due to a communication failure with the external key management server at the time of the hot swap, thereby causing a shortage of encryption keys.
    • 当在具有存储的数据加密功能的存储装置中去除发生故障的HDD之后,分配给该HDD的加密密钥被切割,从而HDD中的数据被自动加密; 并且在安装了新的HDD之后,自动密码将关于哪个复制到新的HDD的备用磁盘的数据加密,并且向安全管理员请求备用磁盘的密钥生成以准备下一个热插拔。 然后,在导入并使用由外部密钥管理服务器生成的加密密钥进行存储数据的加密/解码的加密密钥的存储装置中,预先从外部密钥管理服务器导入备用盘的加密密钥,加密密钥 由于在热插拔时由于与外部密钥管理服务器的通信故障而导致加密密钥不能导入的情况,所以防止使用以外的使用,从而导致加密密钥短缺。
    • 9. 发明申请
    • DATA STORAGE SYSTEM AND CONTROL METHOD FOR DATA STORAGE SYSTEM
    • 数据存储系统和数据存储系统的控制方法
    • WO2014106872A1
    • 2014-07-10
    • PCT/JP2013/000005
    • 2013-01-07
    • HITACHI, LTD.
    • NAKAGAWA, HirotakaSAITO, HideoMORI, NobuhitoKAWAGUCHI, TomohiroJOHRI, AbhishekIKEGAYA, NaokoGOTO, YoichiNASHIMOTO, KunihikoYAMAMOTO, Akira
    • G06F3/06
    • G06F17/30194G06F3/0605G06F3/0659G06F3/0665G06F3/067
    • An example of the present invention is a storage system comprising a first real storage apparatus including a plurality of real resources. The first real storage apparatus includes: real resource groups allocated to a plurality of virtual storage apparatuses; first management information for associating virtual resource identifiers individually assigned to real resources in a namespace independently defined for each of the plurality of virtual storage apparatuses with real resource identifiers individually assigned to the real resources in a namespace defined for the first real storage apparatus; and a controller for receiving a command including a designation with a virtual resource identifier, converting the virtual resource identifier in the command into a real resource identifier with reference to the first management information, and processing the command with the converted real resource identifier.
    • 本发明的一个实例是一种存储系统,包括包括多个实际资源的第一真实存储装置。 第一实际存储装置包括:分配给多个虚拟存储装置的实际资源组; 第一管理信息,用于将在多个虚拟存储设备中为每个虚拟存储设备独立地定义的命名空间中分别分配的虚拟资源标识符分别分配给在为第一真实存储设备定义的命名空间中分配给实际资源的实际资源标识符; 以及控制器,用于接收包括具有虚拟资源标识符的指定的命令,参考所述第一管理信息将所述命令中的虚拟资源标识符转换为真实资源标识符,以及用所转换的真实资源标识符处理所述命令。