Selective encryption of data stored on removable media in an automated data storage library
    31.
    发明授权
    Selective encryption of data stored on removable media in an automated data storage library 有权
    在自动数据存储库中存储在可移动媒体上的数据的选择性加密

    公开(公告)号:US08230235B2

    公开(公告)日:2012-07-24

    申请号:US11470670

    申请日:2006-09-07

    IPC分类号: G06F21/00

    摘要: In an automated data storage library, selective encryption for data stored or to be stored on removable media is provided. One or more encryption policies are established, each policy including a level of encryption one or more encryption keys and the identity of one or more data cartridges. The encryption policies are stored in a policy table and the encryption keys are stored in a secure key server. A host requests access to a specified data cartridge and the cartridge is transported from a storage shelf in the library to a storage drive. Based on the identity of the specified cartridge the corresponding encryption policy is selected from the table and the appropriate encryption key is obtained from the key server. The storage drive encrypts data in accordance with the key and stores the data on the media within the specified data cartridge.

    摘要翻译: 在自动数据存储库中,提供了存储或存储在可移动介质上的数据的选择性加密。 建立一个或多个加密策略,每个策略包括加密级别一个或多个加密密钥和一个或多个数据盒的标识。 加密策略存储在策略表中,加密密钥存储在安全密钥服务器中。 主机请求访问指定的数据盒式磁带,并将盒式磁带从库中的存储架运送到存储驱动器。 基于指定的盒的身份,从表中选择相应的加密策略,并从密钥服务器获得适当的加密密钥。 存储驱动器根据密钥对数据进行加密,并将数据存储在指定数据盒中的介质上。

    System for an encryption key path diagnostic
    32.
    发明授权
    System for an encryption key path diagnostic 失效
    用于加密密钥路径诊断的系统

    公开(公告)号:US07869604B2

    公开(公告)日:2011-01-11

    申请号:US11782561

    申请日:2007-07-24

    IPC分类号: H04L9/00 H04L9/32

    CPC分类号: G06F21/80

    摘要: A system is provided to perform a key path diagnostic that aids in isolating an error within the encryption storage system. The system includes at least one drive, a key proxy, a key server, a key manager, and a processor. The processor performs a first communication test on a path between the key proxy and the drive. The first communication test verifies that the path between the drive and the key proxy is operational. The processor performs a second communication test on a path between the key proxy and the key server. The second communication test verifies that the path between the key proxy and the key server is operational. In addition, processor sends a command to the key manager to attempt communication with the key manager. The communication attempt verifies the installation and configuration parameters related to the key manager.

    摘要翻译: 提供了一种系统来执行有助于隔离加密存储系统内的错误的密钥路径诊断。 该系统包括至少一个驱动器,密钥代理,密钥服务器,密钥管理器和处理器。 处理器对密钥代理和驱动器之间的路径进行第一次通信测试。 第一个通信测试验证驱动器和密钥代理之间的路径是否可操作。 处理器对密钥代理和密钥服务器之间的路径进行第二次通信测试。 第二次通信测试验证密钥代理和密钥服务器之间的路径是否可操作。 此外,处理器向密钥管理器发送命令以尝试与密钥管理器的通信。 通信尝试验证与密钥管理器相关的安装和配置参数。

    Encryption key path diagnostic
    33.
    发明授权
    Encryption key path diagnostic 有权
    加密密钥路径诊断

    公开(公告)号:US07869603B2

    公开(公告)日:2011-01-11

    申请号:US11782533

    申请日:2007-07-24

    IPC分类号: H04L9/00 H04L9/32

    摘要: A method and a computer program product are provided to perform a key path diagnostic that aids in isolating an error within the encryption storage system. A first communication test is performed on a path between the key proxy and the drive. The first communication test verifies that the path between the drive and the key proxy is operational. A second communication test is performed on a path between the key proxy and the key server. The second communication test verifies that the path between the key proxy and the key server is operational. In addition, the drive or the key proxy sends a command to the key manager to attempt communication with the key manager. The communication attempt verifies the installation and configuration parameters related to the key manager.

    摘要翻译: 提供了一种方法和计算机程序产品来执行有助于隔离加密存储系统内的错误的密钥路径诊断。 在密钥代理和驱动器之间的路径上执行第一个通信测试。 第一个通信测试验证驱动器和密钥代理之间的路径是否可操作。 在密钥代理和密钥服务器之间的路径上执行第二次通信测试。 第二次通信测试验证密钥代理和密钥服务器之间的路径是否可操作。 此外,驱动器或密钥代理向密钥管理器发送命令以尝试与密钥管理器的通信。 通信尝试验证与密钥管理器相关的安装和配置参数。

    Data storage drive for automated data storage library
    35.
    发明授权
    Data storage drive for automated data storage library 失效
    用于自动数据存储库的数据存储驱动器

    公开(公告)号:US07660943B2

    公开(公告)日:2010-02-09

    申请号:US11356771

    申请日:2006-02-17

    IPC分类号: G06F12/00

    摘要: A method, system, and a device have a data storage drive for an automated data storage library in which a data storage drive may have in one embodiment, both a host-drive interface port and a host-library interface port. In one aspect, drive commands from a host system are conducted primarily through the host-drive interface port and a host-drive interface path to a drive controller of the data storage drive. In addition, library commands from the host system to a library controller may be conducted primarily through the host-library interface port and a host-library interface path to a library communication port of the data storage drive. In one embodiment, the drive commands from a host system are conducted primarily through the host-drive interface port and the host-drive interface path to a drive controller of the data storage drive. In addition, the library commands from a host system are conducted primarily through the host-library interface port and the host-library interface path to the library communication port of the data storage drive. Other embodiments are described and claimed.

    摘要翻译: 方法,系统和设备具有用于自动数据存储库的数据存储驱动器,其中数据存储驱动器在一个实施例中可以具有主机 - 驱动器接口端口和主机 - 库接口端口。 在一个方面,来自主机系统的驱动器命令主要通过主机 - 驱动器接口端口和到数据存储驱动器的驱动器控制器的主机 - 驱动器接口路径进行。 此外,主机系统到库控制器的库命令可以主要通过主机 - 库接口端口和主机 - 库接口路径进行到数据存储驱动器的库通信端口。 在一个实施例中,来自主机系统的驱动命令主要通过主机 - 驱动器接口端口和主机 - 驱动器接口路径进行到数据存储驱动器的驱动器控制器。 此外,主机系统的库命令主要通过主机 - 库接口端口和主机 - 库接口路径进行到数据存储驱动器的库通信端口。 描述和要求保护其他实施例。

    Media vaulting in an automated data storage library
    37.
    发明授权
    Media vaulting in an automated data storage library 有权
    媒体存储在自动数据存储库中

    公开(公告)号:US07403451B2

    公开(公告)日:2008-07-22

    申请号:US10891567

    申请日:2004-07-15

    IPC分类号: G11B21/08 G06F7/00

    摘要: Disclosed are a system, a method, and article of manufacture to provide for managing data storage media to provide secure storage of the data storage media in an automated data storage library. A logical library partition vault is created in the automated data storage library that is not accessible by any host computer. Data storage media in the logical library partition vault may only be accessed by an operator using a secure means. The logical library partition vault may comprise various components of the automated data storage library by assigning storage shelves, service bays, data storage media, data storage drives or other library components to the logical library partition vault.

    摘要翻译: 公开了一种用于管理数据存储介质以提供数据存储介质在自动数据存储库中的安全存储的系统,方法和制品。 逻辑库分区保管库在自动数据存储库中创建,无法由任何主机访问。 逻辑库分区保管库中的数据存储介质只能由操作员使用安全手段访问。 逻辑库分区保险库可以通过将逻辑库分区保险库分配存储货架,服务仓库,数据存储介质,数据存储驱动器或其他库组件来​​包括自动数据存储库的各种组件。

    Apparatus, system, and method for abbreviated library calibration
    38.
    发明授权
    Apparatus, system, and method for abbreviated library calibration 失效
    缩略图校准的装置,系统和方法

    公开(公告)号:US07079978B2

    公开(公告)日:2006-07-18

    申请号:US10852283

    申请日:2004-05-24

    IPC分类号: G06F17/00

    CPC分类号: G11B15/68 G11B15/689

    摘要: An apparatus, system, and method are disclosed for performing an abbreviated calibration of an automated data storage library. An abbreviated calibration apparatus includes a calibration module, a tracking module, and a system availability module. The calibration module calibrates one or more accessors within the library. Calibration refers to the physical relationship between an accessor and a data storage location, such as a shelf, drive, or I/O station. The calibration module may comprise a run-time calibration module, a successive calibration module, or a cooperative calibration module. The tracking module tracks the calibration progress of the accessors. The system availability module notifies a host when the library is available. The library is made available prior to calibration completion of all of the accessors and, in some embodiments, prior to calibration completion of any of the accessors.

    摘要翻译: 公开了一种用于执行自动数据存储库的缩写校准的装置,系统和方法。 缩写校准装置包括校准模块,跟踪模块和系统可用性模块。 校准模块校准库内的一个或多个访问器。 校准是指存取器和数据存储位置之间的物理关系,例如货架,驱动器或I / O站。 校准模块可以包括运行时校准模块,连续校准模块或协作校准模块。 跟踪模块跟踪访问器的校准进度。 系统可用性模块在库可用时通知主机。 在所有存取器的校准完成之前以及在一些实施例中,在任何存取器的校准完成之前,该库被提供。

    System and method of providing and relocating a portable storage canister in an automated data storage library
    39.
    发明授权
    System and method of providing and relocating a portable storage canister in an automated data storage library 失效
    在自动数据存储库中提供和重新定位便携式存储罐的系统和方法

    公开(公告)号:US07039924B2

    公开(公告)日:2006-05-02

    申请号:US10374884

    申请日:2003-02-24

    IPC分类号: G11B17/03

    摘要: A portable canister for upgrading, converting, or servicing an automated data storage library includes an assembly with cartridge cells. The portable canister is mounted within a data storage drive compartment, and/or another slot within the automated data storage library. The storage capacity of the library may be increased by adding portable storage canisters. When occupying a data storage drive slot, the portable storage canister may be removed and replaced with a data storage drive. Dual accessor library expansion may be simplified by using the portable canister as a test canister in the service bay of the library. Any library frame or storage module may become the service bay simply by inserting a test canister into the frame or storage module. This eliminates the need to shut down the library and reconfigure the frames to relocate the service bay.

    摘要翻译: 用于升级,转换或维修自动数据存储库的便携式罐包括具有盒式单元的组件。 便携式罐安装在数据存储驱动器隔间内,和/或自动数据存储库内的另一个槽。 可以通过添加便携式存储罐来增加库的存储容量。 当占用数据存储驱动器插槽时,便携式存储罐可以被移除并被数据存储驱动器替换。 通过在库的服务托架中使用便携式罐作为测试罐,可以简化双访问库扩展。 任何库框架或存储模块可以通过将测试罐插入框架或存储模块中而成为服务托架。 这不需要关闭库并重新配置框架来重新定位服务托架。

    Backup firmware in a distributed system
    40.
    发明授权
    Backup firmware in a distributed system 失效
    在分布式系统中备份固件

    公开(公告)号:US06986008B2

    公开(公告)日:2006-01-10

    申请号:US10341377

    申请日:2003-01-14

    IPC分类号: G06F12/00

    CPC分类号: G06F11/1464 G06F11/2023

    摘要: In a distributed system of modules in a network, each module having an associated processor node comprising a processing unit for operating the associated module. The processing unit comprises a processor interface for communication in the network; and nonvolatile memory for storing code for the processing unit for operating the associated module, and for storing backup code for at least one other processing unit of another processor node in the network, the backup code for operating an associated module of the another processor node. In response to a request, the processing unit supplies the backup code to a processor node to be used to restore the code for operating the module associated with the requesting processor node.

    摘要翻译: 在网络中的模块的分布式系统中,每个模块具有关联的处理器节点,其包括用于操作相关模块的处理单元。 处理单元包括用于在网络中通信的处理器接口; 以及用于存储用于操作相关联的模块的处理单元的代码的非易失性存储器,以及用于存储网络中另一个处理器节点的至少一个其他处理单元的备份代码,该备份代码用于操作另一个处理器节点的相关模块。 响应于请求,处理单元将备份代码提供给要用于恢复用于操作与请求处理器节点相关联的模块的代码的处理器节点。