Network Appliance with Integrated Local Area Network and Storage Area Network Extension Services
    4.
    发明申请
    Network Appliance with Integrated Local Area Network and Storage Area Network Extension Services 有权
    具有集成局域网和存储区域网络扩展服务的网络设备

    公开(公告)号:US20130182708A1

    公开(公告)日:2013-07-18

    申请号:US13351612

    申请日:2012-01-17

    CPC classification number: H04L12/4625 H04L49/70 H04L67/1097

    Abstract: Techniques and a network edge device are provided herein to extend local area networks (LANs) and storage area networks (SANs) beyond a data center while converging the associated local area network and storage area network host layers. A packet is received at a device in a network. It is determined if the packet is routed to a local or remote storage area network or local area network. In response to determining that the packet routed to a remote storage area network, storage area network extension services are performed with respect to the packet in order to extend the storage area network on behalf of a remote location. In response to determining that the packet is routed to a local local area network traffic, local area network extension services are performed with respect to the packet in order to extend the local area network on behalf of the remote location.

    Abstract translation: 技术和网络边缘设备在本文中被提供以将局域网(LAN)和存储区域网络(SAN)扩展到数据中心之外,同时会聚相关联的局域网和存储区域网络主机层。 在网络中的设备处接收到分组。 确定分组是否被路由到本地或远程存储区域网络或局域网。 响应于确定分组路由到远程存储区域网络,针对分组执行存储区域网络扩展服务,以便代表远程位置扩展存储区域网络。 响应于确定分组被路由到本地局域网业务,相对于分组执行局域网扩展服务,以便代表远程位置扩展局域网。

    Storage media encryption with write acceleration
    5.
    发明授权
    Storage media encryption with write acceleration 有权
    存储介质加密与写入加速

    公开(公告)号:US08464074B1

    公开(公告)日:2013-06-11

    申请号:US12434477

    申请日:2009-05-01

    CPC classification number: G06F11/3006 G06F11/3055 G06F11/3082 G06F21/6209

    Abstract: Methods and apparatus for performing Storage Media Encryption (SME) are disclosed. In one embodiment, an apparatus includes a memory and a plurality of processors. The apparatus receives a write command from a network device. The apparatus sends a transfer ready to the network device in response to the write command. The apparatus receives data from the network device. The apparatus composes a status and sends the status the network device. The status is sent to the network device after the data has been received from the network device and prior to both compressing and encrypting the data. The apparatus compresses the data to generate compressed data. One of the plurality of processors encrypts the compressed data to generate modified data. The apparatus then sends the modified data to a target indicated by the write command.

    Abstract translation: 公开了用于执行存储介质加密(SME)的方法和装置。 在一个实施例中,装置包括存储器和多个处理器。 该设备从网络设备接收写命令。 该装置响应写入命令向网络设备发送准备就绪。 该设备从网络设备接收数据。 该设备组成状态并发送网络设备的状态。 在从网络设备接收到数据并且在压缩和加密数据之前,将状态发送到网络设备。 该装置压缩数据以生成压缩数据。 多个处理器中的一个处理器对压缩数据进行加密以生成修改的数据。 然后,该装置将修改的数据发送到由写入命令指示的目标。

    DISTRIBUTION OF STORAGE AREA NETWORK ENCRYPTION KEYS ACROSS DATA CENTERS
    6.
    发明申请
    DISTRIBUTION OF STORAGE AREA NETWORK ENCRYPTION KEYS ACROSS DATA CENTERS 有权
    在数据中心之间分配存储区域网络加密密钥

    公开(公告)号:US20090252330A1

    公开(公告)日:2009-10-08

    申请号:US12061597

    申请日:2008-04-02

    CPC classification number: H04L9/0822 H04L9/0825 H04L9/0836 H04L9/0894

    Abstract: Efficient mechanisms are provided for transferring key objects associated with disk logical unit numbers and tape cartridges from one data center to another data center. A request is received to transfer a source data center key object from a source data center to a destination data center. The source data center key object corresponds to a data block, such as a disk logical unit number (LUN) or a tape cartridge, maintained in a storage area network (SAN) and includes a unique identifier, an encrypted key, and a wrapper unique identifier. The encrypted key is decrypted using a source data center key hierarchy. Key information is transmitted from the source data center to the destination data center. A destination data center key object is generated using a destination data center key hierarchy.

    Abstract translation: 提供了高效的机制,用于将与磁盘逻辑单元号和磁带盒相关联的关键对象从一个数据中心传输到另一个数据中心。 接收到将源数据中心密钥对象从源数据中心传送到目的地数据中心的请求。 源数据中心密钥对象对应于维护在存储区域网络(SAN)中的数据块,例如磁盘逻辑单元号(LUN)或磁带盒,并且包括唯一标识符,加密密钥和包装器唯一 标识符 使用源数据中心密钥层次结构解密加密密钥。 密钥信息从源数据中心发送到目的数据中心。 使用目标数据中心密钥层次结构生成目标数据中心密钥对象。

    Distribution of storage area network encryption keys across data centers
    7.
    发明授权
    Distribution of storage area network encryption keys across data centers 有权
    跨数据中心分配存储区域网络加密密钥

    公开(公告)号:US08989388B2

    公开(公告)日:2015-03-24

    申请号:US12061597

    申请日:2008-04-02

    CPC classification number: H04L9/0822 H04L9/0825 H04L9/0836 H04L9/0894

    Abstract: Efficient mechanisms are provided for transferring key objects associated with disk logical unit numbers and tape cartridges from one data center to another data center. A request is received to transfer a source data center key object from a source data center to a destination data center. The source data center key object corresponds to a data block, such as a disk logical unit number (LUN) or a tape cartridge, maintained in a storage area network (SAN) and includes a unique identifier, an encrypted key, and a wrapper unique identifier. The encrypted key is decrypted using a source data center key hierarchy. Key information is transmitted from the source data center to the destination data center. A destination data center key object is generated using a destination data center key hierarchy.

    Abstract translation: 提供了高效的机制,用于将与磁盘逻辑单元号和磁带盒相关联的关键对象从一个数据中心传输到另一个数据中心。 接收到将源数据中心密钥对象从源数据中心传送到目的地数据中心的请求。 源数据中心密钥对象对应于维护在存储区域网络(SAN)中的数据块,例如磁盘逻辑单元号(LUN)或磁带盒,并且包括唯一标识符,加密密钥和包装器唯一 标识符 使用源数据中心密钥层次结构解密加密密钥。 密钥信息从源数据中心发送到目的数据中心。 使用目标数据中心密钥层次结构生成目标数据中心密钥对象。

    Encoding a TCP offload engine within FCP
    8.
    发明授权
    Encoding a TCP offload engine within FCP 有权
    在FCP内编码TCP卸载引擎

    公开(公告)号:US07949792B2

    公开(公告)日:2011-05-24

    申请号:US10836368

    申请日:2004-04-29

    CPC classification number: H04L69/16 H04L67/1097 H04L69/08

    Abstract: The present invention defines a new protocol for communicating with an offload engine that provides Transmission Control Protocol (“TCP”) termination over a Fibre Channel (“FC”) fabric. The offload engine terminates all protocols up to and including TCP and performs the processing associated with those layers. The offload protocol guarantees delivery and is encapsulated within FCP-formatted frames. Thus, the TCP streams are reliably passed to the host. Additionally, using this scheme, the offload engine can provide parsing of the TCP stream to further assist the host. The present invention also provides network devices (and components thereof) that are configured to perform the foregoing methods. The invention further defines how network attached storage (“NAS”) protocol data units (“PDUs”) are parsed and delivered.

    Abstract translation: 本发明定义了一种用于与卸载引擎进行通信的新协议,该卸载引擎通过光纤通道(“FC”)结构提供传输控制协议(“TCP”)终止。 卸载引擎终止直到并包括TCP的所有协议,并执行与这些层相关联的处理。 卸载协议保证传送,并封装在FCP格式的帧中。 因此,TCP流可靠地传递到主机。 另外,使用该方案,卸载引擎可以提供TCP流的解析以进一步协助主机。 本发明还提供了被配置为执行前述方法的网络设备(及其组件)。 本发明进一步定义如何解析和传送网络连接存储(“NAS”)协议数据单元(“PDU”)。

    PROVIDING SCSI ACCELERATION AS A SERVICE IN THE SAN
    9.
    发明申请
    PROVIDING SCSI ACCELERATION AS A SERVICE IN THE SAN 有权
    作为SAN中的服务提供SCSI加速

    公开(公告)号:US20100232440A1

    公开(公告)日:2010-09-16

    申请号:US12474966

    申请日:2009-05-29

    CPC classification number: H04L67/1097 H04L49/357 H04L49/50 H04L69/12

    Abstract: Techniques are disclosed for abstracting write acceleration techniques and tape acceleration techniques away from transport providers (e.g., away from an FC or FCIP interlink between two storage area networks) and allowing acceleration to be provided as a service by nodes within the storage area network (SAN). Doing so allows the acceleration service to be provided anywhere in the SAN. Further, doing so allows users to scale the acceleration service as needed, without having to create awkward topologies of multiple VSANS. Further still, as the acceleration service is offered independently from the transport, compression, encryption, and other services may be offered as part of the transport between the FC/FCIP connection along with the acceleration service.

    Abstract translation: 披露技术用于从传输提供商(例如,远离FC或FCIP两个存储区域网络之间的互连)抽象写入加速技术和磁带加速技术,并允许通过存储区域网络(SAN)内的节点将加速提供为服务 )。 这样做可以在SAN的任何地方提供加速服务。 此外,这样做允许用户根据需要扩展加速服务,而不必创建多个VSANS的尴尬拓扑。 此外,随着加速服务独立于传输提供,压缩,加密和其他服务可以作为FC / FCIP连接与加速服务之间的传输的一部分来提供。

    Network appliance with integrated local area network and storage area network extension services
    10.
    发明授权
    Network appliance with integrated local area network and storage area network extension services 有权
    具有集成局域网和存储区域网络扩展服务的网络设备

    公开(公告)号:US09379906B2

    公开(公告)日:2016-06-28

    申请号:US13351612

    申请日:2012-01-17

    CPC classification number: H04L12/4625 H04L49/70 H04L67/1097

    Abstract: Techniques and a network edge device are provided herein to extend local area networks (LANs) and storage area networks (SANs) beyond a data center while converging the associated local area network and storage area network host layers. A packet is received at a device in a network. It is determined if the packet is routed to a local or remote storage area network or local area network. In response to determining that the packet routed to a remote storage area network, storage area network extension services are performed with respect to the packet in order to extend the storage area network on behalf of a remote location. In response to determining that the packet is routed to a local local area network traffic, local area network extension services are performed with respect to the packet in order to extend the local area network on behalf of the remote location.

    Abstract translation: 技术和网络边缘设备在本文中被提供以将局域网(LAN)和存储区域网络(SAN)扩展到数据中心之外,同时会聚相关联的局域网和存储区域网络主机层。 在网络中的设备处接收到分组。 确定分组是否被路由到本地或远程存储区域网络或局域网。 响应于确定分组路由到远程存储区域网络,针对分组执行存储区域网络扩展服务,以便代表远程位置扩展存储区域网络。 响应于确定分组被路由到本地局域网业务,相对于分组执行局域网扩展服务,以便代表远程位置扩展局域网。

Patent Agency Ranking