Invention Grant
- Patent Title: Content aware hierarchical encryption for secure storage systems
- Patent Title (中): 用于安全存储系统的内容感知分层加密
-
Application No.: US14229364Application Date: 2014-03-28
-
Publication No.: US09432192B1Publication Date: 2016-08-30
- Inventor: Prashant Pogde , Fabiano C. Botelho , Nitin Garg
- Applicant: EMC Corporation
- Applicant Address: US MA Hopkinton
- Assignee: EMC Corporation
- Current Assignee: EMC Corporation
- Current Assignee Address: US MA Hopkinton
- Agency: Blakely, Sokoloff, Taylor & Zafman LLP
- Main IPC: H04K1/00
- IPC: H04K1/00 ; H04L9/30

Abstract:
In one embodiment, metadata of a data object to be stored in a storage system is received, where the metadata is in a hierarchical structure having multiple levels, each level having multiple nodes and each node being one of a root node, a leaf node and an intermediate node. Each leaf node represents a deduplicated segment associated with the data object. The hierarchical structure is traversed to encrypt each of the nodes in a bottom-up approach, starting from leaf nodes, using different keys. A child key for encrypting content of a child node is stored in a parent node that references the child node, and the child key is encrypted by a parent key associated with the parent node. The encrypted content of the nodes are then stored in one or more storage units of the storage system in a deduplicated manner.
Information query