-
公开(公告)号:US12299153B2
公开(公告)日:2025-05-13
申请号:US17547520
申请日:2021-12-10
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Stefano Stefani
Abstract: A distributed data store may implement passive distribution encryption keys to enable access to encrypted data stored in the distributed data store. Keys to encrypt a data volume stored in the distributed data store may be encrypted according to a distribution key and provided to a client of the distributed data store. Storage nodes that maintain portions of the data volume may receive the encrypted key from a client to enable access to the data volume. The storage nodes may decrypt the key according to the distribution key and enable access to the data volume at the storage nodes. In some embodiments, a key hierarchy may be implemented to encrypt the keys that provide access to the encrypted data. The key hierarchy may include a user key.
-
公开(公告)号:US20200186602A1
公开(公告)日:2020-06-11
申请号:US16791154
申请日:2020-02-14
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Raman Mittal , Stefano Stefani
IPC: H04L29/08
Abstract: A distributed data store may provide continuous backup for data stored in the distributed data store. Updates to data may be replicated amongst storage nodes according to a peer-to-peer replication scheme. A backup node may participate in the peer-to-peer replication scheme to identify additional updates to be applied to a backup version of the data in a separate data store. The backup node may obtain the updates according to the peer-to-peer replication scheme and update the backup version of the data. In some embodiments, configuration changes to the data in the distributed data store may be detected via the peer-to-peer replication scheme such that a backup node can adapt performance of backup operations in conformity with the configuration change.
-
公开(公告)号:US20220100883A1
公开(公告)日:2022-03-31
申请号:US17547520
申请日:2021-12-10
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Stefano Stefani
Abstract: A distributed data store may implement passive distribution encryption keys to enable access to encrypted data stored in the distributed data store. Keys to encrypt a data volume stored in the distributed data store may be encrypted according to a distribution key and provided to a client of the distributed data store. Storage nodes that maintain portions of the data volume may receive the encrypted key from a client to enable access to the data volume. The storage nodes may decrypt the key according to the distribution key and enable access to the data volume at the storage nodes. In some embodiments, a key hierarchy may be implemented to encrypt the keys that provide access to the encrypted data. The key hierarchy may include a user key.
-
公开(公告)号:US11153380B2
公开(公告)日:2021-10-19
申请号:US16791154
申请日:2020-02-14
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Raman Mittal , Stefano Stefani
Abstract: A distributed data store may provide continuous backup for data stored in the distributed data store. Updates to data may be replicated amongst storage nodes according to a peer-to-peer replication scheme. A backup node may participate in the peer-to-peer replication scheme to identify additional updates to be applied to a backup version of the data in a separate data store. The backup node may obtain the updates according to the peer-to-peer replication scheme and update the backup version of the data. In some embodiments, configuration changes to the data in the distributed data store may be detected via the peer-to-peer replication scheme such that a backup node can adapt performance of backup operations in conformity with the configuration change.
-
公开(公告)号:US11200332B2
公开(公告)日:2021-12-14
申请号:US16530895
申请日:2019-08-02
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Stefano Stefani
Abstract: A distributed data store may implement passive distribution encryption keys to enable access to encrypted data stored in the distributed data store. Keys to encrypt a data volume stored in the distributed data store may be encrypted according to a distribution key and provided to a client of the distributed data store. Storage nodes that maintain portions of the data volume may receive the encrypted key from a client to enable access to the data volume. The storage nodes may decrypt the key according to the distribution key and enable access to the data volume at the storage nodes. In some embodiments, a key hierarchy may be implemented to encrypt the keys that provide access to the encrypted data. The key hierarchy may include a user key.
-
公开(公告)号:US10567500B1
公开(公告)日:2020-02-18
申请号:US14977453
申请日:2015-12-21
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Raman Mittal , Stefano Stefani
Abstract: A distributed data store may provide continuous backup for data stored in the distributed data store. Updates to data may be replicated amongst storage nodes according to a peer-to-peer replication scheme. A backup node may participate in the peer-to-peer replication scheme to identify additional updates to be applied to a backup version of the data in a separate data store. The backup node may obtain the updates according to the peer-to-peer replication scheme and update the backup version of the data. In some embodiments, configuration changes to the data in the distributed data store may be detected via the peer-to-peer replication scheme such that a backup node can adapt performance of backup operations in conformity with the configuration change.
-
公开(公告)号:US20190354710A1
公开(公告)日:2019-11-21
申请号:US16530895
申请日:2019-08-02
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Stefano Stefani
Abstract: A distributed data store may implement passive distribution encryption keys to enable access to encrypted data stored in the distributed data store. Keys to encrypt a data volume stored in the distributed data store may be encrypted according to a distribution key and provided to a client of the distributed data store. Storage nodes that maintain portions of the data volume may receive the encrypted key from a client to enable access to the data volume. The storage nodes may decrypt the key according to the distribution key and enable access to the data volume at the storage nodes. In some embodiments, a key hierarchy may be implemented to encrypt the keys that provide access to the encrypted data. The key hierarchy may include a user key.
-
公开(公告)号:US10372926B1
公开(公告)日:2019-08-06
申请号:US14977464
申请日:2015-12-21
Applicant: Amazon Technologies, Inc.
Inventor: Yan Valerie Leshinsky , Lon Lundgren , Stefano Stefani
Abstract: A distributed data store may implement passive distribution encryption keys to enable access to encrypted data stored in the distributed data store. Keys to encrypt a data volume stored in the distributed data store may be encrypted according to a distribution key and provided to a client of the distributed data store. Storage nodes that maintain portions of the data volume may receive the encrypted key from a client to enable access to the data volume. The storage nodes may decrypt the key according to the distribution key and enable access to the data volume at the storage nodes. In to some embodiments, a key hierarchy may be implemented to encrypt the keys that provide access to the encrypted data. The key hierarchy may include a user key.
-
-
-
-
-
-
-