Adding entropy to key generation on a mobile device
    81.
    发明授权
    Adding entropy to key generation on a mobile device 有权
    在移动设备上为密钥生成添加熵

    公开(公告)号:US09407441B1

    公开(公告)日:2016-08-02

    申请号:US13927386

    申请日:2013-06-26

    申请人: EMC Corporation

    IPC分类号: G06F21/00 H04L9/32

    摘要: Methods, apparatus and articles of manufacture for adding entropy to key generation on a mobile device are provided herein. A method includes generating a prompt via a computing device interface in connection with an authentication request to access a protected resource associated with the computing device; processing input cryptographic information entered via the computing device interface in response to the prompt against a pre-determined set of cryptographic information, wherein said pre-determined set of cryptographic information comprises one or more input elements and one or more interface manipulation measures associated with the one or more input elements; and resolving the authentication request based on said processing.

    摘要翻译: 本文提供了在移动设备上向密钥生成添加熵的方法,装置和制造。 一种方法包括结合认证请求经由计算设备接口生成提示以访问与计算设备相关联的受保护资源; 处理经由计算设备接口输入的输入密码信息,以响应于针对预先确定的密码信息集合的提示,其中所述预定密码信息集合包括一个或多个输入元素和一个或多个与 一个或多个输入元件; 以及基于所述处理解析所述认证请求。

    Authenticating an entity
    82.
    发明授权
    Authenticating an entity 有权
    认证一个实体

    公开(公告)号:US09405897B1

    公开(公告)日:2016-08-02

    申请号:US13538640

    申请日:2012-06-29

    摘要: There is disclosed a method and system for use in authenticating an entity. An entity location history is stored comprising a historical record of locations visited by the entity. An authentication request is received from the entity. A pattern of recent locations visited by the entity indicative of irregular behavior is detected. An analysis is performed between the pattern of recent locations indicative of irregular behavior and the entity location history for establishing the riskiness of the authentication request. An authentication result is generated based on the analysis between the pattern of recent locations indicative of irregular behavior and the entity location history.

    摘要翻译: 公开了一种用于认证实体的方法和系统。 存储实体位置历史,其包括由该实体访问的位置的历史记录。 从实体接收到认证请求。 检测到由实体访问的指示不规则行为的最近位置的模式。 在指示不规则行为的最近位置的模式和用于建立认证请求的风险的实体位置历史之间进行分析。 基于指示不规则行为的最近位置的模式与实体位置历史之间的分析,生成认证结果。

    Method for cleaning a delta storage system

    公开(公告)号:US09405764B1

    公开(公告)日:2016-08-02

    申请号:US14801773

    申请日:2015-07-16

    申请人: EMC Corporation

    IPC分类号: G06F17/30

    摘要: A computer-implemented method for performing garbage collection in a delta compressed data storage system selects a file recipe to traverse to identify live data chunks and a chunk identifier from the file recipe. The chunk identifier is added to a set of live data chunks. Delta references in the file recipe corresponding to the chunk identifier are added to the set of live data chunks. Data chunks in a data storage system not identified by the set of live data chunks are discarded.

    Transferring soft token authentication capabilities to a new device
    84.
    发明授权
    Transferring soft token authentication capabilities to a new device 有权
    将软令牌认证功能转移到新设备

    公开(公告)号:US09401905B1

    公开(公告)日:2016-07-26

    申请号:US14036627

    申请日:2013-09-25

    申请人: EMC Corporation

    IPC分类号: H04L29/06

    摘要: A technique transfers soft token authentication capabilities from an old device to a new device. The technique involves receiving a transfer initiation message from the old device while the old device is currently provisioned with the soft token authentication capabilities. The transfer initiation message includes new device binding information obtained by the old device from the new device. The technique further involves providing a reply message to the old device in response to the transfer initiation message. The reply message directs the old device to supply an authentication code to the new device, the authentication code being based on the new device binding information. The technique further involves receiving, from the new device, a provisioning message including the authentication code, and provisioning the new device with the soft token authentication capabilities in response to receipt of the provisioning message from the new device.

    摘要翻译: 一种技术将软令牌认证功能从旧设备传输到新设备。 该技术涉及在旧设备当前被提供软令牌认证能力的同时从旧设备接收传送启动消息。 传输发起消息包括由旧设备从新设备获得的新设备绑定信息。 该技术还包括响应于传送启动消息向旧设备提供应答消息。 回复消息指示旧设备向新设备提供认证码,认证码基于新设备绑定信息。 该技术还包括从新设备接收包括认证码的供应消息,以及响应于从新设备接收到供应消息而向新设备提供软令牌认证能力。

    File system inline fine grained tiering
    85.
    发明授权
    File system inline fine grained tiering 有权
    文件系统内联细粒度分层

    公开(公告)号:US09400792B1

    公开(公告)日:2016-07-26

    申请号:US13928591

    申请日:2013-06-27

    申请人: EMC Corporation

    IPC分类号: G06F17/30 G06F3/06 G06F9/50

    摘要: A technique for managing storage tiering in a data storage apparatus operates at a fine level of granularity in response to write requests as blocks are allocated for writing. As write requests arrive or are otherwise processed by the data storage apparatus, the data storage apparatus identifies a quality of service to be provided for satisfying each write request and allocates a set of blocks from storage devices of storage tiers that provide the identified quality of service. The data storage apparatus may then store the information specified in the write request in the newly allocated blocks.

    摘要翻译: 用于管理数据存储装置中的存储分层的技术响应于写入请求以精细的粒度进行操作,因为块被分配用于写入。 当写请求到达或由数据存储装置另外处理时,数据存储装置识别要提供用于满足每个写请求的服务质量,并从提供所识别的服务质量的存储层的存储装置分配一组块 。 然后,数据存储装置可以将新写入请求中指定的信息存储在新分配的块中。

    Data migration in cluster environment using host copy and changed block tracking
    86.
    发明授权
    Data migration in cluster environment using host copy and changed block tracking 有权
    使用主机复制和更改块跟踪在群集环境中进行数据迁移

    公开(公告)号:US09400611B1

    公开(公告)日:2016-07-26

    申请号:US13798504

    申请日:2013-03-13

    申请人: EMC Corporation

    发明人: Helen S. Raizen

    IPC分类号: G06F17/30 G06F3/06

    摘要: Data is non-disruptively migrated from a source LUN to a target LUN in an active-active cluster with coordination of a host-based copy sweep with duplicating of ongoing writes of all hosts, using iteration and changed block tracking (CBT). During a first iteration, one host performs the copy sweep, and the locations of new application writes at other hosts are recorded in respective CBT records. In each subsequent iteration, the data blocks of the CBT-recorded writes are copied to the target LUN while the locations of new writes are recorded in new CBT records. A final iteration is done with I/O suspended to completely synchronize the target LUN with the source LUN, and the migration then proceeds to a committed state in which the target LUN is used in place of the source LUN. The one host may use write cloning or CBT recording like the other hosts.

    摘要翻译: 数据不间断地从源LUN迁移到活动主动群集中的目标LUN,协调基于主机的复制扫描和复制正在进行的所有主机的写入,使用迭代和更改块跟踪(CBT)。 在第一次迭代期间,一个主机执行复制扫描,并且其他主机上的新应用程序写入的位置被记录在相应的CBT记录中。 在每次后续迭代中,将CBT记录的写入的数据块复制到目标LUN,而新写入的位置记录在新的CBT记录中。 完成I / O的完成后,将目标LUN与源LUN完全同步,然后迁移到提交状态,使用目标LUN代替源LUN。 一个主机可能像其他主机一样使用写入克隆或CBT记录。

    Authentication using color-shape pairings
    87.
    发明授权
    Authentication using color-shape pairings 有权
    使用颜色形状配对的认证

    公开(公告)号:US09397992B1

    公开(公告)日:2016-07-19

    申请号:US14143779

    申请日:2013-12-30

    申请人: EMC Corporation

    IPC分类号: H04L29/06

    摘要: A technique provides access control. The technique involves prompting a user to enter color-shape pairings, and receiving multiple color-shape pairings from the user. Each color-shape pairing includes (i) a color selection from multiple selectable colors and (ii) a shape selection from multiple selectable shapes. The technique further involves generating an access control result based on the received multiple color-shape pairings, the access control result controlling access to a set of protected resources. For example, color segments can be displayed on a touch screen in the form of a color wheel, and multiple shapes can be rendered within each color segment. Alternatively, (i) a color palette including the multiple selectable colors and (ii) a shape menu including the multiple selectable shapes can be rendered on the touch screen to prompt the user to provide drag and drop gestures over the touch screen. Other configurations are suitable for use as well.

    摘要翻译: 一种技术提供访问控制。 该技术涉及提示用户输入颜色形状配对,并从用户接收多个颜色形状配对。 每种颜色形状配对包括(i)来自多种可选颜色的颜色选择和(ii)来自多种可选择形状的形状选择。 该技术还涉及基于所接收的多个颜色形状配对来生成访问控制结果,访问控制结果控制对一组受保护资源的访问。 例如,颜色段可以以色轮的形式显示在触摸屏上,并且可以在每个颜色段内呈现多个形状。 或者,(i)包括多个可选颜色的调色板和(ii)包括多个可选择形状的形状菜单可以呈现在触摸屏上,以提示用户在触摸屏上提供拖放手势。 其他配置也适合使用。

    Managing storage space in storage systems
    88.
    发明授权
    Managing storage space in storage systems 有权
    管理存储系统中的存储空间

    公开(公告)号:US09395937B1

    公开(公告)日:2016-07-19

    申请号:US14142366

    申请日:2013-12-27

    申请人: EMC Corporation

    IPC分类号: G06F12/00 G06F3/06

    摘要: A method is used in managing storage space in storage systems. Metadata of a slice of a storage pool in a data storage system is evaluated for returning the slice as free storage to the storage pool. Based on the evaluation, returning of the slice to the storage pool is affected. The metadata of the slice indicates whether the slice includes user data.

    摘要翻译: 一种方法用于管理存储系统中的存储空间。 评估数据存储系统中存储池切片的元数据,以将切片作为空闲存储返回到存储池。 基于评估,切片返回到存储池受到影响。 切片的元数据指示切片是否包括用户数据。

    Inter-storage processor storage pool job status communication
    89.
    发明授权
    Inter-storage processor storage pool job status communication 有权
    存储处理器存储池作业状态通信

    公开(公告)号:US09395935B1

    公开(公告)日:2016-07-19

    申请号:US14150249

    申请日:2014-01-08

    申请人: EMC Corporation

    IPC分类号: G06F9/50 G06F3/06

    摘要: Described are methods, systems, and apparatus for communicating the status of storage pool job status between storage processors. A storage pool command is received by the secondary storage processor. The storage pool command is provided, by the secondary storage processor, to the primary storage processor. A storage pool job based on the storage pool command is created by the primary storage processor. The storage pool job is submitted, by the primary storage processor, to a job execution engine, for execution. A storage pool job submission notification is provided, by the primary storage processor, to the secondary storage processor. A storage pool job execution acknowledgement is provided, by the primary storage processor, to the secondary storage processor. The storage pool job is executed by the primary storage processor. One or more storage pool job status notifications are provided, by the primary storage processor, to the secondary storage processor.

    摘要翻译: 描述了用于在存储处理器之间传送存储池作业状态的状态的方法,系统和装置。 存储池命令由辅助存储处理器接收。 存储池命令由辅助存储处理器提供给主存储处理器。 基于存储池命令的存储池作业由主存储处理器创建。 存储池作业由主存储处理器提交到作业执行引擎,以供执行。 存储池作业提交通知由主存储处理器提供给辅助存储处理器。 存储池作业执行确认由主存储处理器提供给辅助存储处理器。 存储池作业由主存储处理器执行。 一个或多个存储池作业状态通知由主存储处理器提供给辅助存储处理器。

    Storing and monitoring computed relationships between network components
    90.
    发明授权
    Storing and monitoring computed relationships between network components 有权
    存储和监视网络组件之间的计算关系

    公开(公告)号:US09391828B1

    公开(公告)日:2016-07-12

    申请号:US11732383

    申请日:2007-04-02

    摘要: Methods and systems of maintaining a computed relationship between components in a network are disclosed. A relationship represents one or more connections between components. Discovered relationships between components in the network are detected. A discovered relationship represents a direct connection between components. A computed relationship between a class of source component and a class of target component is determined. The computed relationship comprises a number of discovered relationships that, when combined, represent connections between one or more types of the source component and one or more types of the target component. The computed relationship is stored. The discovered relationships that comprise the computed relationship are monitored for a change event. The change event may represent a change in the network, such as the addition or deletion of one or more components.

    摘要翻译: 公开了在网络中维护组件之间的计算关系的方法和系统。 关系表示组件之间的一个或多个连接。 检测到网络中组件之间发现的关系。 发现的关系表示组件之间的直接连接。 确定源组件类与目标组件类之间的计算关系。 所计算的关系包括多个发现的关系,当组合时,它们表示一个或多个类型的源组件与一个或多个类型的目标组件之间的连接。 计算的关系被存储。 监视包含计算关系的已发现关系以进行更改事件。 改变事件可以表示网络的变化,例如添加或删除一个或多个组件。