首页> 外国专利> IDENTIFYING AND ENFORCING STRICT FILE CONFIDENTIALITY IN THE PRESENCE OF SYSTEM AND STORAGE ADMINISTRATORS IN A NAS SYSTEM

IDENTIFYING AND ENFORCING STRICT FILE CONFIDENTIALITY IN THE PRESENCE OF SYSTEM AND STORAGE ADMINISTRATORS IN A NAS SYSTEM

机译:NAS系统中存在系统和存储管理员的严格文件机密性的识别和增强

摘要

A data storage architecture for networked access by clients includes a file server capable of communication with the clients via the network, physical storage organized as a plurality of logical volumes, and an encryption device in communication with both the file server and the physical storage. The encryption device is operable in response to signaling from the file server to cause encryption of data being moved into the physical storage, and decryption of data being retrieved from storage. Two logical paths are provided for I/O operations. A first path is reserved for use by a first type of requestor, such as file owners. Data retrieved via the first path is decrypted by the encryption device, and Writes via the first path are allowed. A second path is employed for others than the owners, e.g., administrators. Data retrieved via the second path is not decrypted by the encryption device, and attempted Writes via the second first path are denied. Metadata may be delivered in-the-clear via both paths in response to a Read so that legitimate management tasks can be performed.
机译:用于客户机的网络访问的数据存储体系结构包括能够经由网络与客户机通信的文件服务器,组织为多个逻辑卷的物理存储器以及与文件服务器和物理存储器两者通信的加密设备。加密设备可响应于来自文件服务器的信令而进行操作,以引起将数据移动到物理存储器中的加密以及对从存储器中检索到的数据的解密。为I / O操作提供了两个逻辑路径。保留第一路径以供第一类型的请求者使用,例如文件所有者。通过第一路径检索的数据由加密设备解密,并允许通过第一路径进行写操作。第二条路径用于所有者以外的其他人,例如管理员。经由第二路径检索的数据未被加密设备解密,并且经由第二第一路径的尝试写入被拒绝。响应读取,可以通过两条路径清晰地传递元数据,以便可以执行合法的管理任务。

著录项

  • 公开/公告号US2007300062A1

    专利类型

  • 公开/公告日2007-12-27

    原文格式PDF

  • 申请/专利权人 ROGER F. OSMOND;GIL GOREN;

    申请/专利号US20060426645

  • 发明设计人 ROGER F. OSMOND;GIL GOREN;

    申请日2006-06-27

  • 分类号H04L9/00;G06F12/14;H04L9/32;G06F11/30;

  • 国家 US

  • 入库时间 2022-08-21 20:12:59

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号