-
公开(公告)号:US08494170B2
公开(公告)日:2013-07-23
申请号:US13453730
申请日:2012-04-23
申请人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
发明人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
IPC分类号: H04L29/06
CPC分类号: H04L9/083 , H04L9/0825
摘要: Provided are a computer program product, system and method for a redundant key server encryption environment. A key server receives from at least one remote key server public keys associated with the at least one remote key server. The key server receives a request for an encryption key from a requesting device and generates the encryption key for use by the requesting device to unlock a storage. The key server generates a first wrapped encryption key by encrypting the encryption key with a requesting device public key, a second wrapped encryption key by encrypting the encryption key with a public key associated with the key server, and at least one additional wrapped encryption key by encrypting the encryption key with the at least one public key provided by the at least one remote key server. The key server transmits the generated keys to the requesting device.
摘要翻译: 提供了一种用于冗余密钥服务器加密环境的计算机程序产品,系统和方法。 密钥服务器从至少一个远程密钥服务器接收与所述至少一个远程密钥服务器相关联的公钥。 密钥服务器从请求设备接收到加密密钥的请求,并生成加密密钥以供请求设备使用以解锁存储。 密钥服务器通过用请求设备公钥加密加密密钥来生成第一包装加密密钥,第二包装加密密钥通过用与密钥服务器相关联的公钥加密加密密钥,以及至少一个附加的包装加密密钥由 使用由所述至少一个远程密钥服务器提供的所述至少一个公共密钥加密所述加密密钥。 密钥服务器将生成的密钥发送到请求设备。
-
公开(公告)号:US08300831B2
公开(公告)日:2012-10-30
申请号:US12767723
申请日:2010-04-26
申请人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
发明人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
IPC分类号: H04L9/00
CPC分类号: H04L9/083 , H04L9/0825
摘要: Provided are a computer program product, system and method for a redundant key server encryption environment. A key server transmits public keys associated with the key server and at least one device to at least one remote key server. The key server receives from the at least one remote key server public keys associated with the at least one remote key server. The key server receives a request for an encryption key from a requesting device comprising one of the at least one device and generates the encryption key for use by the requesting device to unlock a storage. The key server generates a first wrapped encryption key by encrypting the encryption key with a requesting device public key associated with the requesting device. The key server generates a second wrapped encryption key by encrypting the encryption key with a public key associated with the key server. At least one additional wrapped encryption key is generated for each of the at least one remote key server by encrypting the encryption key with the at least one public key provided by the at least one remote key server. The key server transmits the first, second and the at least one additional wrapped encryption key to the requesting device.
摘要翻译: 提供了一种用于冗余密钥服务器加密环境的计算机程序产品,系统和方法。 密钥服务器将与密钥服务器和至少一个设备相关联的公钥传送到至少一个远程密钥服务器。 密钥服务器从与至少一个远程密钥服务器相关联的至少一个远程密钥服务器公钥接收。 密钥服务器从包括至少一个设备之一的请求设备接收到对加密密钥的请求,并且生成加密密钥以供请求设备使用以解锁存储。 密钥服务器通过使用与请求设备相关联的请求设备公钥对加密密钥进行加密来生成第一封包加密密钥。 密钥服务器通过使用与密钥服务器相关联的公钥加密加密密钥来生成第二封包加密密钥。 通过利用由至少一个远程密钥服务器提供的至少一个公共密钥对加密密钥进行加密,为至少一个远程密钥服务器中的每一个生成至少一个附加的包装加密密钥。 密钥服务器将第一,第二和至少一个附加的包装加密密钥发送到请求设备。
-
公开(公告)号:US10133883B2
公开(公告)日:2018-11-20
申请号:US12368032
申请日:2009-02-09
IPC分类号: G06F21/80 , G06F11/14 , G06F12/0804 , G06F21/81 , G06F12/0866
摘要: A method, system, and computer program product for safeguarding nonvolatile storage (NVS) data by a processor in communication with a memory device following a power loss event is provided. A first portion of the NVS data is encrypted using a first buffer module. Subsequently the first portion of the NVS data is transferred to at least one shared storage device, while a second portion of the NVS data is simultaneously encrypted using a second buffer module. The second portion of the NVS data is subsequently transferred to the at least one shared storage device.
-
公开(公告)号:US20100202236A1
公开(公告)日:2010-08-12
申请号:US12368032
申请日:2009-02-09
CPC分类号: G06F21/80 , G06F11/1441 , G06F12/0804 , G06F12/0866 , G06F21/81 , Y02D10/13
摘要: A method, system, and computer program product for safeguarding nonvolatile storage (NVS) data by a processor in communication with a memory device following a power loss event is provided. A first portion of the NVS data is encrypted using a first buffer module. Subsequently the first portion of the NVS data is transferred to at least one shared storage device, while a second portion of the NVS data is simultaneously encrypted using a second buffer module. The second portion of the NVS data is subsequently transferred to the at least one shared storage device.
摘要翻译: 提供了一种用于在功率损失事件之后与存储器件通信的处理器来保护非易失性存储(NVS)数据的方法,系统和计算机程序产品。 使用第一缓冲器模块对NVS数据的第一部分进行加密。 随后,NVS数据的第一部分被传送到至少一个共享存储设备,而NVS数据的第二部分使用第二缓冲器模块同时加密。 NVS数据的第二部分随后被传送到至少一个共享存储设备。
-
公开(公告)号:US20120233455A1
公开(公告)日:2012-09-13
申请号:US13453730
申请日:2012-04-23
申请人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
发明人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
IPC分类号: H04L9/28
CPC分类号: H04L9/083 , H04L9/0825
摘要: Provided are a computer program product, system and method for a redundant key server encryption environment. A key server receives from at least one remote key server public keys associated with the at least one remote key server. The key server receives a request for an encryption key from a requesting device and generates the encryption key for use by the requesting device to unlock a storage. The key server generates a first wrapped encryption key by encrypting the encryption key with a requesting device public key, a second wrapped encryption key by encrypting the encryption key with a public key associated with the key server, and at least one additional wrapped encryption key by encrypting the encryption key with the at least one public key provided by the at least one remote key server. The key server transmits the generated keys to the requesting device.
摘要翻译: 提供了一种用于冗余密钥服务器加密环境的计算机程序产品,系统和方法。 密钥服务器从至少一个远程密钥服务器接收与所述至少一个远程密钥服务器相关联的公钥。 密钥服务器从请求设备接收到加密密钥的请求,并生成加密密钥以供请求设备使用以解锁存储。 密钥服务器通过用请求设备公钥加密加密密钥来生成第一包装加密密钥,第二包装加密密钥通过用与密钥服务器相关联的公钥加密加密密钥,以及至少一个附加的包装加密密钥由 使用由所述至少一个远程密钥服务器提供的所述至少一个公共密钥加密所述加密密钥。 密钥服务器将生成的密钥发送到请求设备。
-
公开(公告)号:US20110261964A1
公开(公告)日:2011-10-27
申请号:US12767723
申请日:2010-04-26
申请人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
发明人: David Ray Kahler , Anjul Mathur , Richard Anthony Ripberger , Jacob Lee Sheppard , Glen Alan Jaquette
CPC分类号: H04L9/083 , H04L9/0825
摘要: Provided are a computer program product, system and method for a redundant key server encryption environment. A key server transmits public keys associated with the key server and at least one device to at least one remote key server. The key server receives from the at least one remote key server public keys associated with the at least one remote key server. The key server receives a request for an encryption key from a requesting device comprising one of the at least one device and generates the encryption key for use by the requesting device to unlock a storage. The key server generates a first wrapped encryption key by encrypting the encryption key with a requesting device public key associated with the requesting device. The key server generates a second wrapped encryption key by encrypting the encryption key with a public key associated with the key server. At least one additional wrapped encryption key is generated for each of the at least one remote key server by encrypting the encryption key with the at least one public key provided by the at least one remote key server. The key server transmits the first, second and the at least one additional wrapped encryption key to the requesting device.
摘要翻译: 提供了一种用于冗余密钥服务器加密环境的计算机程序产品,系统和方法。 密钥服务器将与密钥服务器和至少一个设备相关联的公钥传送到至少一个远程密钥服务器。 密钥服务器从与至少一个远程密钥服务器相关联的至少一个远程密钥服务器公钥接收。 密钥服务器从包括至少一个设备之一的请求设备接收到对加密密钥的请求,并且生成加密密钥以供请求设备使用以解锁存储。 密钥服务器通过使用与请求设备相关联的请求设备公钥对加密密钥进行加密来生成第一封包加密密钥。 密钥服务器通过使用与密钥服务器相关联的公钥加密加密密钥来生成第二封包加密密钥。 通过利用由至少一个远程密钥服务器提供的至少一个公共密钥对加密密钥进行加密,为至少一个远程密钥服务器中的每一个生成至少一个附加的包装加密密钥。 密钥服务器将第一,第二和至少一个附加的包装加密密钥发送到请求设备。
-
-
-
-
-