SYSTEM AND METHOD FOR RECOVERING FROM AN INTERRUPTED ENCRYPTION AND DECRYPTION OPERATION PERFORMED ON A VOLUME

    公开(公告)号:US20130067210A1

    公开(公告)日:2013-03-14

    申请号:US13663738

    申请日:2012-10-30

    IPC分类号: G06F21/00

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. An information handling system may include a processor, a memory communicatively coupled to the processor, and a computer-readable medium communicatively coupled to the processor. The computer-readable medium may have instructions stored thereon, the instructions configured to, when executed by the processor: (i) periodically store, during an encryption or decryption operation performed on the computer-readable medium, one or more variables indicative of an encryption status of a volume of the computer-readable medium; (ii) determine, based on the one or more variables, whether the volume is in a partially encrypted or decrypted state; and (iii) in response to a determination that the volume is in a partially encrypted or decrypted state, boot from the volume and continue the encryption or decryption operation.

    System and Method for Encryption and Decryption of Data
    2.
    发明申请
    System and Method for Encryption and Decryption of Data 有权
    数据加密和解密的系统和方法

    公开(公告)号:US20110225428A1

    公开(公告)日:2011-09-15

    申请号:US12721355

    申请日:2010-03-10

    IPC分类号: H04L9/00

    CPC分类号: G06F21/72 G06F21/62 G06F21/78

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. A method for encryption and decryption of data, may include encrypting or decrypting data associated with an input/output operation based on at least one of an encryption key and a cryptographic function, wherein at least one of the encryption key and the cryptographic function are selected based on one or more characteristics associated with the data to be encrypted or decrypted. Another method may include encrypting an item of data based on at least one of a first-layer encryption key and a first-layer cryptographic function to produce first-layer encrypted data and encrypting the first-layer encrypted data based on at least one of a second-layer encryption key and a second-layer cryptographic function to produce second-layer encrypted data.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 数据的加密和解密方法可以包括基于加密密钥和加密功能中的至少一个加密或解密与输入/输出操作相关联的数据,其中加密密钥和加密功能中的至少一个被选择 基于与要加密或解密的数据相关联的一个或多个特性。 另一方法可以包括基于第一层加密密钥和第一层密码函数中的至少一个加密数据项,以产生第一层加密数据,并且基于以下各项中的至少一个来加密第一层加密数据: 第二层加密密钥和第二层加密功能,以产生第二层加密数据。

    System and method for encryption and decryption of data
    4.
    发明授权
    System and method for encryption and decryption of data 有权
    用于数据加密和解密的系统和方法

    公开(公告)号:US09135471B2

    公开(公告)日:2015-09-15

    申请号:US12721355

    申请日:2010-03-10

    IPC分类号: G06F21/72 G06F21/78 G06F21/62

    CPC分类号: G06F21/72 G06F21/62 G06F21/78

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. A method for encryption and decryption of data, may include encrypting or decrypting data associated with an input/output operation based on at least one of an encryption key and a cryptographic function, wherein at least one of the encryption key and the cryptographic function are selected based on one or more characteristics associated with the data to be encrypted or decrypted. Another method may include encrypting an item of data based on at least one of a first-layer encryption key and a first-layer cryptographic function to produce first-layer encrypted data and encrypting the first-layer encrypted data based on at least one of a second-layer encryption key and a second-layer cryptographic function to produce second-layer encrypted data.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 数据的加密和解密方法可以包括基于加密密钥和加密功能中的至少一个加密或解密与输入/输出操作相关联的数据,其中加密密钥和加密功能中的至少一个被选择 基于与要加密或解密的数据相关联的一个或多个特性。 另一方法可以包括基于第一层加密密钥和第一层密码函数中的至少一个加密数据项,以产生第一层加密数据,并且基于以下各项中的至少一个来加密第一层加密数据: 第二层加密密钥和第二层加密功能,以产生第二层加密数据。

    System and Method for General Purpose Encryption of Data
    5.
    发明申请
    System and Method for General Purpose Encryption of Data 有权
    数据通用加密的系统和方法

    公开(公告)号:US20110225431A1

    公开(公告)日:2011-09-15

    申请号:US12721334

    申请日:2010-03-10

    IPC分类号: G06F21/22

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. An information handling system may include a processor, a memory communicatively coupled to the processor, and an encryption accelerator communicatively coupled to the processor. The encryption accelerator may be configured to encrypt and decrypt information in accordance with a plurality of cryptographic functions, receive a command from the processor to perform an encryption or decryption task upon data associated with an input/output operation, and in response to receiving the command, encrypt or decrypt the data associated with the input/output operation based on a particular one of the plurality of cryptographic functions.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 信息处理系统可以包括处理器,通信地耦合到处理器的存储器和通信地耦合到处理器的加密加速器。 加密加速器可以被配置为根据多个密码函数加密和解密信息,从处理器接收命令以对与输入/输出操作相关联的数据执行加密或解密任务,并且响应于接收到命令 基于所述多个密码函数中的特定一个对所述输入/输出操作相关联的数据进行加密或解密。

    System and method for recovering from an interrupted encryption and decryption operation performed on a volume
    6.
    发明授权
    System and method for recovering from an interrupted encryption and decryption operation performed on a volume 有权
    用于从对卷执行的中断的加密和解密操作中恢复的系统和方法

    公开(公告)号:US09098727B2

    公开(公告)日:2015-08-04

    申请号:US13663738

    申请日:2012-10-30

    IPC分类号: G06F21/78

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. An information handling system may include a processor, a memory communicatively coupled to the processor, and a computer-readable medium communicatively coupled to the processor. The computer-readable medium may have instructions stored thereon, the instructions configured to, when executed by the processor: (i) periodically store, during an encryption or decryption operation performed on the computer-readable medium, one or more variables indicative of an encryption status of a volume of the computer-readable medium; (ii) determine, based on the one or more variables, whether the volume is in a partially encrypted or decrypted state; and (iii) in response to a determination that the volume is in a partially encrypted or decrypted state, boot from the volume and continue the encryption or decryption operation.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 信息处理系统可以包括处理器,通信地耦合到处理器的存储器和通信地耦合到处理器的计算机可读介质。 计算机可读介质可以具有存储在其上的指令,所述指令被配置为当由处理器执行时:(i)在对计算机可读介质执行的加密或解密操作期间周期性地存储指示加密的一个或多个变量 计算机可读介质的容量的状态; (ii)基于所述一个或多个变量来确定所述卷是处于部分加密或解密状态; 和(iii)响应于确定卷处于部分加密或解密状态,从卷引导并继续加密或解密操作。

    System and Method for Pre-Operating System Encryption and Decryption of Data
    7.
    发明申请
    System and Method for Pre-Operating System Encryption and Decryption of Data 有权
    数据预处理系统加密和解密的系统和方法

    公开(公告)号:US20110225406A1

    公开(公告)日:2011-09-15

    申请号:US12721369

    申请日:2010-03-10

    IPC分类号: G06F21/22 G06F9/24 G06F21/00

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. An information handling system may include a processor, a memory communicatively coupled to the processor, an encryption accelerator communicatively coupled to the processor, and a computer-readable medium communicatively coupled to the processor. The encryption accelerator may be configured to encrypt or decrypt data in response to a command from the processor to perform an encryption or decryption task upon data associated with an input/output operation. The computer-readable medium may have instructions stored thereon, the instructions configured to, when executed by the processor: (i) monitor for input/output operations occurring prior to loading of an operating system into the memory; and (ii) in response to detection of an input/output operation, communicate a command to the encryption accelerator to perform an encryption or decryption task upon data associated with an input/output operation.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 信息处理系统可以包括处理器,通信地耦合到处理器的存储器,通信地耦合到处理器的加密加速器以及通信地耦合到处理器的计算机可读介质。 加密加速器可以被配置为响应于来自处理器的命令来加密或解密数据,以在与输入/输出操作相关联的数据上执行加密或解密任务。 计算机可读介质可以具有存储在其上的指令,所述指令被配置为当由处理器执行时:(i)监视在将操作系统加载到存储器之前发生的输入/输出操作; 和(ii)响应于输入/输出操作的检测,将命令传达给加密加速器,以在与输入/输出操作相关联的数据上执行加密或解密任务。

    System and method for general purpose encryption of data
    9.
    发明授权
    System and method for general purpose encryption of data 有权
    用于数据通用加密的系统和方法

    公开(公告)号:US08930713B2

    公开(公告)日:2015-01-06

    申请号:US12721334

    申请日:2010-03-10

    IPC分类号: G06F21/00 G06F21/62

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. An information handling system may include a processor, a memory communicatively coupled to the processor, and an encryption accelerator communicatively coupled to the processor. The encryption accelerator may be configured to encrypt and decrypt information in accordance with a plurality of cryptographic functions, receive a command from the processor to perform an encryption or decryption task upon data associated with an input/output operation, and in response to receiving the command, encrypt or decrypt the data associated with the input/output operation based on a particular one of the plurality of cryptographic functions.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 信息处理系统可以包括处理器,通信地耦合到处理器的存储器和通信地耦合到处理器的加密加速器。 加密加速器可以被配置为根据多个密码函数加密和解密信息,从处理器接收命令以对与输入/输出操作相关联的数据执行加密或解密任务,并且响应于接收到命令 基于所述多个密码函数中的特定一个对所述输入/输出操作相关联的数据进行加密或解密。

    System and method for pre-operating system encryption and decryption of data
    10.
    发明授权
    System and method for pre-operating system encryption and decryption of data 有权
    用于数据预处理系统加密和解密的系统和方法

    公开(公告)号:US08856550B2

    公开(公告)日:2014-10-07

    申请号:US12721369

    申请日:2010-03-10

    IPC分类号: G06F21/00 G06F21/57 G06F11/00

    摘要: Systems and methods for reducing problems and disadvantages associated with traditional approaches to encryption and decryption of data are provided. An information handling system may include a processor, a memory communicatively coupled to the processor, an encryption accelerator communicatively coupled to the processor, and a computer-readable medium communicatively coupled to the processor. The encryption accelerator may be configured to encrypt or decrypt data in response to a command from the processor to perform an encryption or decryption task upon data associated with an input/output operation. The computer-readable medium may have instructions stored thereon, the instructions configured to, when executed by the processor: (i) monitor for input/output operations occurring prior to loading of an operating system into the memory; and (ii) in response to detection of an input/output operation, communicate a command to the encryption accelerator to perform an encryption or decryption task upon data associated with an input/output operation.

    摘要翻译: 提供了用于减少与传统数据加密和解密方法相关的问题和缺点的系统和方法。 信息处理系统可以包括处理器,通信地耦合到处理器的存储器,通信地耦合到处理器的加密加速器以及通信地耦合到处理器的计算机可读介质。 加密加速器可以被配置为响应于来自处理器的命令来加密或解密数据,以在与输入/输出操作相关联的数据上执行加密或解密任务。 计算机可读介质可以具有存储在其上的指令,所述指令被配置为当由处理器执行时:(i)监视在将操作系统加载到存储器之前发生的输入/输出操作; 和(ii)响应于输入/输出操作的检测,将命令传达给加密加速器,以在与输入/输出操作相关联的数据上执行加密或解密任务。