Secure file sharing method and system
    32.
    发明授权
    Secure file sharing method and system 有权
    安全的文件共享方法和系统

    公开(公告)号:US09100186B2

    公开(公告)日:2015-08-04

    申请号:US13413195

    申请日:2012-03-06

    摘要: Systems and methods are provided for securely sharing data. A processor forms two or more shares of a data set encrypted with a symmetric key, the data set associated with a first user device, and causes the encrypted data set shares to be stored separately from each other in at least one remote storage location. The processor generates first and second encrypted keys by encrypting data indicative of the symmetric key with a first asymmetric key of first and second asymmetric key pairs associated with the first user device and a second user device, respectively, and causes the encrypted key to be stored in the at least one storage location. To restore the data set, a predetermined number of the two or more encrypted data set shares and at least one of the second asymmetric keys of the first and second asymmetric key pairs are needed.

    摘要翻译: 提供系统和方法来安全地共享数据。 处理器形成用对称密钥加密的数据集的两个或多个共享,数据集与第一用户设备相关联,并且使加密的数据集共享在至少一个远程存储位置中彼此分离存储。 处理器通过分别用与第一用户设备和第二用户设备相关联的第一和第二非对称密钥对的第一非对称密钥加密指示对称密钥的数据来产生第一和第二加密密钥,并且使加密密钥被存储 在至少一个存储位置。 为了恢复数据集,需要预定数量的两个或更多个加密数据集共享,并且需要第一和第二非对称密钥对中的至少一个第二非对称密钥。

    Systems and methods for secure multi-tenant data storage
    34.
    发明授权
    Systems and methods for secure multi-tenant data storage 有权
    用于安全多租户数据存储的系统和方法

    公开(公告)号:US08656189B2

    公开(公告)日:2014-02-18

    申请号:US13208132

    申请日:2011-08-11

    IPC分类号: G06F12/14

    摘要: Systems and methods are provided for transmitting data for secure storage. For each of two or more data sets, a plurality of shares are generated containing a distribution of data from an encrypted version of the data set. The shares are then stored in a shared memory device, wherein a data set may be reconstructed from a threshold number of the associated plurality of shares using an associated key. Also provided are systems and methods for providing access to secured data. A plurality of shares containing a distribution of data from an encrypted version of a data set are stored in a memory device. A client is provided with a virtual machine that indicates the plurality of shares, and the capability to reconstruct the data set from the plurality of shares using an associated key.

    摘要翻译: 提供了用于传输数据以进行安全存储的系统和方法。 对于两个或多个数据集中的每一个,生成包含来自数据集的加密版本的数据分布的多个共享。 然后将共享存储在共享存储器设备中,其中可以使用关联的密钥从相关联的多个共享的阈值数量重建数据集。 还提供了用于提供对安全数据的访问的系统和方法。 包含来自数据集的加密版本的数据分发的多个共享存储在存储器件中。 客户端被提供有指示多个共享的虚拟机,以及使用关联的密钥从多个共享中重建数据集的能力。

    Systems and methods for securing data in motion
    35.
    发明授权
    Systems and methods for securing data in motion 有权
    确保数据运动的系统和方法

    公开(公告)号:US08650434B2

    公开(公告)日:2014-02-11

    申请号:US13077802

    申请日:2011-03-31

    IPC分类号: G06F11/00

    摘要: Systems and methods for reading and writing a set of data using a journaling service are provided. The journaling service may be used to identify and record data storage operations associated with one or more shares of data stored in one or more share locations. The journaling service may use logs to record each of the read and write requests to the share locations. In some embodiments, the log may be a queue data structure that stores information associated with failed data storage operations. In some embodiments, the journaling service may leverage both memory and disk storage in order to maintain the journaling queue. In some embodiments, the journaling queue may maintain information associated with the state of each share location. In some embodiments, this information may be used by the journaling service to determine when to monitor and record information regarding data storage operations associated with the share locations.

    摘要翻译: 提供了使用日志服务读取和写入一组数据的系统和方法。 日志记录服务可用于识别和记录与存储在一个或多个共享位置中的一个或多个共享数据相关联的数据存储操作。 日志记录服务可以使用日志将每个读取和写入请求记录到共享位置。 在一些实施例中,日志可以是存储与故障数据存储操作相关联的信息的队列数据结构。 在一些实施例中,日志记录服务可以利用存储器和磁盘存储器来维护日志记录队列。 在一些实施例中,日志队列可以维护与每个共享位置的状态相关联的信息。 在一些实施例中,日志记录服务可以使用该信息来确定何时监视和记录关于与共享位置相关联的数据存储操作的信息。

    SYSTEMS AND METHODS FOR SECURING DATA IN MOTION
    36.
    发明申请
    SYSTEMS AND METHODS FOR SECURING DATA IN MOTION 有权
    用于保护运动数据的系统和方法

    公开(公告)号:US20130042105A1

    公开(公告)日:2013-02-14

    申请号:US13589894

    申请日:2012-08-20

    IPC分类号: H04L9/30

    摘要: Two approaches are provided for distributing trust among a set of certificate authorities. Each approach may be used to secure data in motion. One approach provides methods and systems in which the secure data parser is used to distribute trust in a set of certificate authorities during initial negotiation (e.g., the key establishment phase) of a connection between two devices. Another approach provides methods and systems in which the secure data parser is used to disperse packets of data into shares. A set of tunnels is established within a communication channel using a set of certificate authorities, keys developed during the establishment of the tunnels are used to encrypt shares of data for each of the tunnels, and the shares of data are transmitted through each of the tunnels. Accordingly, trust is distributed among a set of certificate authorities in the structure of the communication channel itself.

    摘要翻译: 提供了两种方法来在一组证书颁发机构之间分配信任。 每种方法都可用于保护运动中的数据。 一种方法提供了方法和系统,其中安全数据解析器用于在两个设备之间的连接的初始协商(例如,密钥建立阶段)期间在一组证书颁发机构中分发信任。 另一种方法提供了使用安全数据解析器将数据包分散到共享中的方法和系统。 在通信信道内建立一组隧道,使用一套证书机构,在建立隧道期间开发的密钥用于加密每个隧道的数据共享,数据共享通过每个隧道传输 。 因此,在通信信道本身的结构中的一组认证机构中分配信任。