Rekeying encryption for removable storage media
    91.
    发明授权
    Rekeying encryption for removable storage media 有权
    对可移动存储介质进行密钥加密

    公开(公告)号:US08130959B2

    公开(公告)日:2012-03-06

    申请号:US11470994

    申请日:2006-09-07

    IPC分类号: H04L9/08 H04L1/00 H04L29/06

    摘要: Provided are a method, system, and article of manufacture for rekeying encryption keys for removable storage media. A rekey request is received for a coupled removable storage media, wherein encryption on the coupled removable storage media uses a first key and wherein the rekey request indicates a second key. The first key and the second key are accessed in response to the rekey request. The first key is used to perform decryption for the coupled removable storage media and the second key is used to perform encryption for the coupled removable storage media.

    摘要翻译: 提供了用于对用于可移动存储介质的加密密钥进行密钥密钥的方法,系统和制品。 接收到用于耦合的可移动存储介质的重新密钥请求,其中耦合的可移动存储介质上的加密使用第一密钥,并且其中重新密钥请求指示第二密钥。 响应重新密钥请求访问第一个密钥和第二个密钥。 第一个密钥用于对耦合的可移动存储介质执行解密,第二个密钥用于对耦合的可移动存储介质执行加密。

    REDUNDANT KEY SERVER ENCRYPTION ENVIRONMENT
    92.
    发明申请
    REDUNDANT KEY SERVER ENCRYPTION ENVIRONMENT 有权
    冗余主要服务器加密环境

    公开(公告)号:US20110261964A1

    公开(公告)日:2011-10-27

    申请号:US12767723

    申请日:2010-04-26

    IPC分类号: H04L9/08 H04L9/00

    CPC分类号: H04L9/083 H04L9/0825

    摘要: Provided are a computer program product, system and method for a redundant key server encryption environment. A key server transmits public keys associated with the key server and at least one device to at least one remote key server. The key server receives from the at least one remote key server public keys associated with the at least one remote key server. The key server receives a request for an encryption key from a requesting device comprising one of the at least one device and generates the encryption key for use by the requesting device to unlock a storage. The key server generates a first wrapped encryption key by encrypting the encryption key with a requesting device public key associated with the requesting device. The key server generates a second wrapped encryption key by encrypting the encryption key with a public key associated with the key server. At least one additional wrapped encryption key is generated for each of the at least one remote key server by encrypting the encryption key with the at least one public key provided by the at least one remote key server. The key server transmits the first, second and the at least one additional wrapped encryption key to the requesting device.

    摘要翻译: 提供了一种用于冗余密钥服务器加密环境的计算机程序产品,系统和方法。 密钥服务器将与密钥服务器和至少一个设备相关联的公钥传送到至少一个远程密钥服务器。 密钥服务器从与至少一个远程密钥服务器相关联的至少一个远程密钥服务器公钥接收。 密钥服务器从包括至少一个设备之一的请求设备接收到对加密密钥的请求,并且生成加密密钥以供请求设备使用以解锁存储。 密钥服务器通过使用与请求设备相关联的请求设备公钥对加密密钥进行加密来生成第一封包加密密钥。 密钥服务器通过使用与密钥服务器相关联的公钥加密加密密钥来生成第二封包加密密钥。 通过利用由至少一个远程密钥服务器提供的至少一个公共密钥对加密密钥进行加密,为至少一个远程密钥服务器中的每一个生成至少一个附加的包装加密密钥。 密钥服务器将第一,第二和至少一个附加的包装加密密钥发送到请求设备。

    Method, system, and program for securely providing keys to encode and decode data in a storage cartridge
    93.
    发明授权
    Method, system, and program for securely providing keys to encode and decode data in a storage cartridge 失效
    用于安全地提供密钥以对存储盒中的数据进行编码和解码的方法,系统和程序

    公开(公告)号:US07865440B2

    公开(公告)日:2011-01-04

    申请号:US09977159

    申请日:2001-10-11

    IPC分类号: G06F17/00

    摘要: Provided is a method, system, and program for enabling access to data in a storage medium within one of a plurality of storage cartridges capable of being mounted into a interface device. An association is provided of at least one coding key to a plurality of storage cartridges. A determination is made of one coding key associated with one target storage cartridge, wherein the coding key is capable of being used to access data in the storage medium within the target storage cartridge. The determined coding key is encrypted. The coding key is subsequently decrypted to use to decode and code data stored in the storage medium.

    摘要翻译: 提供了一种方法,系统和程序,用于能够访问能够被安装到接口设备中的多个存储盒之一内的存储介质中的数据。 向多个存储盒提供至少一个编码密钥的关联。 确定与一个目标存储盒相关联的一个编码密钥,其中编码密钥能够用于访问目标存储盒中的存储介质中的数据。 所确定的编码密钥被加密。 随后将编码密钥解密以用于解码和编码存储在存储介质中的数据。

    Automatically filling a drive table
    94.
    发明授权
    Automatically filling a drive table 有权
    自动填充驱动器表

    公开(公告)号:US07752463B2

    公开(公告)日:2010-07-06

    申请号:US11530013

    申请日:2006-09-07

    IPC分类号: G06F21/00 H04L9/14

    CPC分类号: G06F21/6209 G06F21/73

    摘要: Provided are techniques for filling a drive table. A key request including at least one of a drive serial number and a world wide node name is received from a data storage drive. It is determined whether the drive serial number or a world wide node name are in an entry in a drive table. In response to determining that the drive serial number or a world wide node name are not in an entry in a drive table, a new entry is automatically added in the drive table that includes the at least one of a drive serial number and a world wide node name.

    摘要翻译: 提供了用于填充驱动器表的技术。 从数据存储驱动器接收到包括驱动器序列号和世界范围节点名称中的至少一个的关键请求。 确定驱动器序列号或全球节点名称是否在驱动器表中的条目中。 响应于确定驱动器序列号或全球节点名称不在驱动器表中的条目中,新的条目被自动添加到驱动器表中,该驱动器表包括驱动器序列号和世界范围中的至少一个 节点名称。

    Auto-Configuration of a Drive List for Encryption
    96.
    发明申请
    Auto-Configuration of a Drive List for Encryption 审中-公开
    自动配置驱动器列表进行加密

    公开(公告)号:US20090028339A1

    公开(公告)日:2009-01-29

    申请号:US11782580

    申请日:2007-07-24

    IPC分类号: H04L9/08 G06F12/02

    CPC分类号: G06F21/80

    摘要: A method, a system and a computer program product are provided to auto configure a drive list. When information is received for a drive, the key manager compares the information to drive information on a drive list. If the drive is not on the drive list the drive list is auto configured by adding the drive to the drive list. By adding the drive to the drive list the drive is able to obtain keys from the key manager to perform encryption and decryption.

    摘要翻译: 提供了一种方法,系统和计算机程序产品来自动配置驱动器列表。 当接收到驱动器的信息时,密钥管理器将信息与驱动器列表中的信息进行比较。 如果驱动器不在驱动器列表上,则通过将驱动器添加到驱动器列表来自动配置驱动器列表。 通过将驱动器添加到驱动器列表中,驱动器能够从密钥管理器获取密钥以执行加密和解密。

    APPARATUS, SYSTEM, AND METHOD FOR SELF-DESCRIBING HETEROGENEOUS MAGNETIC TAPE FORMATTING
    97.
    发明申请
    APPARATUS, SYSTEM, AND METHOD FOR SELF-DESCRIBING HETEROGENEOUS MAGNETIC TAPE FORMATTING 审中-公开
    用于自描述异质磁带形成的装置,系统和方法

    公开(公告)号:US20080205635A1

    公开(公告)日:2008-08-28

    申请号:US11679736

    申请日:2007-02-27

    IPC分类号: H04L9/28 H04K1/00

    摘要: An apparatus, system, and method are disclosed for self-describing, heterogeneous magnetic tape formatting. A detection module determines if data is to be encrypted when written to a magnetic tape in response to a host command and if the data is already encrypted. An encryption module encrypts the data if the data is to be encrypted and if the data is not already encrypted. A write module writes a reserved codeword followed by the data to the magnetic tape wherein the reserved codeword is configured as an encryption reserved codeword if the data is encrypted. If the data is not encrypted, the reserved codeword is configured as a clear reserved codeword. The encrypted and unencrypted data segments are intermixed on the magnetic tape.

    摘要翻译: 公开了用于自描述,异构磁带格式化的装置,系统和方法。 当检测模块响应于主机命令写入磁带并且数据已被加密时,确定数据是否被加密。 如果数据要被加密,并且数据尚未加密,则加密模块对数据进行加密。 写入模块将保留的码字后跟数据写入磁带,其中如果数据被加密,则保留的码字被配置为加密保留的码字。 如果数据未加密,则保留的码字被配置为清除保留的码字。 加密和未加密的数据段被混合在磁带上。

    AUTOMATICALLY FILLING A DRIVE TABLE
    98.
    发明申请
    AUTOMATICALLY FILLING A DRIVE TABLE 有权
    自动填充驱动台

    公开(公告)号:US20080066193A1

    公开(公告)日:2008-03-13

    申请号:US11530013

    申请日:2006-09-07

    IPC分类号: G06F17/30

    CPC分类号: G06F21/6209 G06F21/73

    摘要: Provided are techniques for filling a drive table. A key request including at least one of a drive serial number and a world wide node name is received from a data storage drive. It is determined whether the drive serial number or a world wide node name are in an entry in a drive table. In response to determining that the drive serial number or a world wide node name are not in an entry in a drive table, a new entry is automatically added in the drive table that includes the at least one of a drive serial number and a world wide node name.

    摘要翻译: 提供了用于填充驱动器表的技术。 从数据存储驱动器接收到包括驱动器序列号和世界范围节点名称中的至少一个的关键请求。 确定驱动器序列号或全球节点名称是否在驱动器表中的条目中。 响应于确定驱动器序列号或全球节点名称不在驱动器表中的条目中,新的条目被自动添加到驱动器表中,该驱动器表包括驱动器序列号和世界范围中的至少一个 节点名称。

    Tamper resistant write once recording of a data storage cartridge having rewritable media
    100.
    发明授权
    Tamper resistant write once recording of a data storage cartridge having rewritable media 有权
    一旦记录具有可重写介质的数据存储盒,就可以防篡改

    公开(公告)号:US06982846B2

    公开(公告)日:2006-01-03

    申请号:US10440886

    申请日:2003-05-19

    IPC分类号: G11B15/18

    摘要: A cartridge handling system and method initialize a data storage cartridge having rewritable media for tamper resistant write once recording. A write once flag is written to a lockable section of a cartridge memory; the lockable section is locked to read-only; and a write once flag is written to a required data set of the rewritable media. Thus, write once flags are provided both at the locked read-only section of the cartridge memory, and at the required data set of the rewritable media.

    摘要翻译: 盒式磁带处理系统和方法初始化具有用于防篡改一次记录的可重写介质的数据存储盒。 写入一次标志被写入盒式存储器的可锁定部分; 可锁定部分被锁定为只读; 并且写入一次标志被写入可重写介质的所需数据集。 因此,一旦在盒式存储器的锁定的只读部分和可重写介质的所需数据集处提供标志。