Performing a tune-up procedure on a storage device during a boot process

    公开(公告)号:US11003369B1

    公开(公告)日:2021-05-11

    申请号:US16246771

    申请日:2019-01-14

    IPC分类号: G06F3/06 G06F9/4401

    摘要: Performing a tune-up procedure on a storage device including determining, during a boot process, that a first storage device is available for a tune-up procedure, wherein the tune-up procedure prepares the first storage device for use after being offline; reserving the first storage device to perform the tune-up procedure, wherein reserving the first storage device prevents another system from performing the tune-up procedure on the first storage device; and executing the tune-up procedure on the first storage device.

    Secret distribution among storage devices

    公开(公告)号:US11706024B2

    公开(公告)日:2023-07-18

    申请号:US17402024

    申请日:2021-08-13

    摘要: In a storage system that includes a plurality of storage devices configured into one or more write groups, quorum-aware secret sharing may include: encrypting a device key for each storage device using a master secret; generating a plurality of shares from the master secret such that a minimum number of storage devices required from each write group for a quorum to boot the storage system is not less than a minimum number of shares required to reconstruct the master secret; and storing the encrypted device key and a separate share of the plurality of shares in each storage device.

    Current key data encryption
    26.
    发明授权

    公开(公告)号:US10574454B1

    公开(公告)日:2020-02-25

    申请号:US15402954

    申请日:2017-01-10

    IPC分类号: H04L9/08

    摘要: Periodically re-encrypting user data stored on a storage device, including: detecting that a data encryption key should be decommissioned; and for user data stored on the storage device that is encrypted with the data encryption key: reading the user data that is encrypted with the data encryption key from the storage device; re-encrypting the user data utilizing a current data encryption key; and writing the user data that is encrypted utilizing the current data encryption key to the storage device.