-
公开(公告)号:US08335915B2
公开(公告)日:2012-12-18
申请号:US10478386
申请日:2002-05-14
Applicant: Serge Plotkin , Dan Avida
Inventor: Serge Plotkin , Dan Avida
IPC: H04L9/00
CPC classification number: H04L9/085 , G06F21/85 , H04L9/0897 , H04L63/0442 , H04L63/045 , H04L63/08 , H04L67/1097 , H04L69/329
Abstract: The presently preferred embodiment of the invention provides an encryption based security system for network storage that separates the ability to access storage from the ability to access the stored data. This is achieved by keeping all the data encrypted on the storage devices. Logically, the invention comprises a device that has two network interfaces: one is a clear text network interface that connects to one or more clients, and the other is a secure network interface that is connected to one or more persistent storage servers. Functionally, each network interface supports multiple network nodes. That is, the clear text network interface supports multiple client machines, and the secure network interface supports one or more storage servers.
Abstract translation: 本发明的当前优选实施例提供了一种用于网络存储的基于加密的安全系统,其将访问存储的能力与访问所存储的数据的能力分开。 这通过将所有数据保存在存储设备上来实现。 在逻辑上,本发明包括具有两个网络接口的设备:一个是连接到一个或多个客户端的明文网络接口,另一个是连接到一个或多个永久存储服务器的安全网络接口。 功能上,每个网络接口支持多个网络节点。 也就是说,明文网络接口支持多个客户机,而安全网络接口支持一个或多个存储服务器。
-
12.
公开(公告)号:US07944936B2
公开(公告)日:2011-05-17
申请号:US11426258
申请日:2006-06-23
Applicant: Dan Avida , Serge Plotkin
Inventor: Dan Avida , Serge Plotkin
IPC: H04L12/28
CPC classification number: H04L45/10 , H04L45/46 , H04L49/254 , H04L49/30 , H04L49/357 , H04Q11/0005 , H04Q11/0071 , H04Q2011/0015 , H04Q2011/0024 , H04Q2011/003 , H04Q2011/0069 , H04Q2011/0084 , Y10S370/912
Abstract: An apparatus and method for connecting a plurality of computing devices, e.g. web servers, database servers, etc., to a plurality of storage devices, such as disks, disk arrays, tapes, etc., by using a stream-oriented (circuit oriented) switch that has high throughput, but that requires non-negligible time for reconfiguration is disclosed. An example of such stream-oriented switch is an optical switch. The system decodes the requests from the computing devices and uses this information to create circuits, e.g. optical paths in embodiments where the stream-oriented switch is an optical switch, through the stream-oriented switch. The system uses these circuits to route traffic between the computing devices and the storage devices. Buffering of data and control in the device memory is used to improve overall throughput and reduce the time spent on reconfigurations.
Abstract translation: 一种用于连接多个计算设备的设备和方法,例如, 网络服务器,数据库服务器等通过使用具有高吞吐量的面向流(面向电路)的开关,但需要不可忽略的多个存储设备,例如磁盘,磁盘阵列,磁带等 公开了重新配置的时间。 这种面向流的交换机的一个例子是光开关。 系统解码来自计算设备的请求,并使用该信息来创建电路,例如, 通过面向流的交换机,其中面向流的交换机是光学交换机的实施例中的光路径。 系统使用这些电路在计算设备和存储设备之间路由流量。 缓冲设备内存中的数据和控制可用于提高总体吞吐量,并减少重新配置所花费的时间。
-
公开(公告)号:US20070174634A1
公开(公告)日:2007-07-26
申请号:US11223444
申请日:2005-09-09
Applicant: Serge Plotkin , Hristo Bojinov
Inventor: Serge Plotkin , Hristo Bojinov
CPC classification number: H04L9/00 , G06F21/62 , G06F2221/2107
Abstract: Embodiments of methods, devices and/or systems for encrypting of data are described.
Abstract translation: 描述用于加密数据的方法,设备和/或系统的实施例。
-
公开(公告)号:US07233574B2
公开(公告)日:2007-06-19
申请号:US10056178
申请日:2002-01-22
Applicant: Patrick A. Worfolk , Serge Plotkin , Shmuel Ravid-Rabinovitz , Itai Aaronson
Inventor: Patrick A. Worfolk , Serge Plotkin , Shmuel Ravid-Rabinovitz , Itai Aaronson
IPC: H04L12/28
CPC classification number: H04L45/12 , H04L45/123
Abstract: Disclosed is a routing algorithm that uses a new concept of node metric system for optimizing the throughput of a network, in particular, a shared medium network. The measure of congestion of a path in the network is represented by a path metric which is computed by summing the node metrics of the intermediate nodes on the path. Factors used in computing node metrics include the following: 1. future traffic load from neighboring nodes to the node; and 2. future traffic load from the node to the neighboring nodes.
Abstract translation: 公开了一种路由算法,其使用节点度量系统的新概念来优化网络的吞吐量,特别是共享介质网络。 通过路径度量来表示网络中路径拥塞的度量,该度量通过对路径上的中间节点的节点度量求和来计算。 用于计算节点度量的因素包括:1.从邻近节点到节点的未来业务负载; 和2.从节点到相邻节点的未来业务负载。
-
公开(公告)号:US20070058801A1
公开(公告)日:2007-03-15
申请号:US11223445
申请日:2005-09-09
Applicant: Serge Plotkin , Hristo Bojinov
Inventor: Serge Plotkin , Hristo Bojinov
CPC classification number: H04L9/088 , H04L9/0891
Abstract: Embodiments of methods, devices and/or systems for managing the encryption of data are described.
Abstract translation: 描述了用于管理数据加密的方法,设备和/或系统的实施例。
-
公开(公告)号:US20070055891A1
公开(公告)日:2007-03-08
申请号:US11222684
申请日:2005-09-08
Applicant: Serge Plotkin , Hristo Bojinov
Inventor: Serge Plotkin , Hristo Bojinov
IPC: G06F12/14
CPC classification number: H04L63/162 , G06F21/6236 , H04L63/0464
Abstract: Embodiments of methods and/or systems for protocol translation are described.
Abstract translation: 描述用于协议转换的方法和/或系统的实施例。
-
公开(公告)号:US20050102498A1
公开(公告)日:2005-05-12
申请号:US10704115
申请日:2003-11-07
Applicant: Hristo Bojinov , Serge Plotkin , Robert Wood
Inventor: Hristo Bojinov , Serge Plotkin , Robert Wood
CPC classification number: H04L9/00 , H04L63/0428 , H04L63/16 , H04L2209/60
Abstract: Embodiments of methods, devices and/or systems for data storage and/or retrieval are described.
Abstract translation: 描述用于数据存储和/或检索的方法,设备和/或系统的实施例。
-
公开(公告)号:US08898452B2
公开(公告)日:2014-11-25
申请号:US11222684
申请日:2005-09-08
Applicant: Serge Plotkin , Hristo Bojinov , Yuval Frandzel , Andrew Narver , Zi-Bin Yang
Inventor: Serge Plotkin , Hristo Bojinov , Yuval Frandzel , Andrew Narver , Zi-Bin Yang
CPC classification number: H04L63/162 , G06F21/6236 , H04L63/0464
Abstract: A system and method for securing data by receiving encrypted data at a security appliance transmitted from a client, wherein at least a portion of the encrypted data is encrypted according to a first encryption protocol, and wherein the encrypted data is transmitted to the security appliance according to a first data transfer protocol. The encrypted data is then decrypted at the security appliance, wherein at least a portion of the decrypted data is re-encrypted according to a second encryption protocol at the security appliance. The re-encrypted data is transmitted from the security appliance to a storage device, wherein the re-encrypted data is transmitted according to a second data transfer protocol that is different than the first data transfer protocol.
Abstract translation: 一种通过在从客户端发送的安全装置处接收加密数据来保护数据的系统和方法,其中根据第一加密协议对所述加密数据的至少一部分进行加密,并且其中所述加密数据按照 到第一个数据传输协议。 然后,所述加密数据在所述安全设备处被解密,其中所述解密数据的至少一部分根据所述安全设备处的第二加密协议重新加密。 重新加密的数据从安全设备发送到存储设备,其中根据不同于第一数据传输协议的第二数据传输协议传输重新加密的数据。
-
公开(公告)号:US08214656B1
公开(公告)日:2012-07-03
申请号:US12760132
申请日:2010-04-14
Applicant: Serge Plotkin , Hristo Bojinov
Inventor: Serge Plotkin , Hristo Bojinov
IPC: H04L9/00
CPC classification number: H04L9/088 , H04L9/0891
Abstract: Embodiments of methods, devices and/or systems for managing the encryption of data are described.
Abstract translation: 描述了用于管理数据加密的方法,设备和/或系统的实施例。
-
20.
公开(公告)号:US07069375B2
公开(公告)日:2006-06-27
申请号:US10477974
申请日:2002-05-16
Applicant: Dan Avida , Serge Plotkin
Inventor: Dan Avida , Serge Plotkin
CPC classification number: H04L45/10 , H04L45/46 , H04L49/254 , H04L49/30 , H04L49/357 , H04Q11/0005 , H04Q11/0071 , H04Q2011/0015 , H04Q2011/0024 , H04Q2011/003 , H04Q2011/0069 , H04Q2011/0084 , Y10S370/912
Abstract: An apparatus and method for connecting a plurality of computing devices, e.g. web servers, database servers, etc., to a plurality of storage devices, such as disks, disk arrays, tapes, etc., by using a stream-oriented (circuit oriented) switch that has high throughput, but that requires non-negligible time for reconfiguration is disclosed. An example of such stream-oriented switch is an optical switch. The preferred embodiment comprises a plurality of communication ports for connection to servers, and plurality of ports for connection to storage devices. The system decodes the requests from the computing devices and uses this information to create circuits, e.g. optical paths in embodiments where the stream-oriented switch is an optical switch, through the stream-oriented switch. The system uses these circuits to route traffic between the computing devices and the storage devices. Buffering data and control in the device memory is used to improve overall throughput and reduce the time spent on reconfigurations.
Abstract translation: 一种用于连接多个计算设备的设备和方法,例如, 网络服务器,数据库服务器等通过使用具有高吞吐量的面向流(面向电路)的开关,但需要不可忽略的多个存储设备,例如磁盘,磁盘阵列,磁带等 公开了重新配置的时间。 这种面向流的交换机的一个例子是光开关。 优选实施例包括用于连接到服务器的多个通信端口,以及用于连接到存储设备的多个端口。 系统解码来自计算设备的请求,并使用该信息来创建电路,例如, 通过面向流的交换机,其中面向流的交换机是光学交换机的实施例中的光路径。 系统使用这些电路在计算设备和存储设备之间路由流量。 缓冲数据和设备存储器中的控制用于提高总体吞吐量并减少重新配置所花费的时间。
-
-
-
-
-
-
-
-
-