MAINTAINING MIRROR AND STORAGE SYSTEM COPIES OF VOLUMES AT MULTIPLE REMOTE SITES
    1.
    发明申请
    MAINTAINING MIRROR AND STORAGE SYSTEM COPIES OF VOLUMES AT MULTIPLE REMOTE SITES 有权
    在多个远程站点维护卷筒和存储系统复印件

    公开(公告)号:US20120226877A1

    公开(公告)日:2012-09-06

    申请号:US13471231

    申请日:2012-05-14

    IPC分类号: G06F12/16

    摘要: Provided is a method for maintaining mirror and storage system copies of volumes at multiple remote sites. A first server maintains a mirror copy relationship between a first storage system at a first site and a second storage system at a second site. The first server performs a first point-in-time copy operation from the first storage system to a first storage system copy, wherein the data for the first storage system copy is consistent as of the determined point-in-time. The first server transmits a command to a second server to create a point-in-time copy of the second storage system. The second server processes mirror data transferred from the first server as part of the mirror copy relationship to determine when to create a second point-in-time copy. The second server performs the second point-in-time copy operation.

    摘要翻译: 提供了一种在多个远程站点维护卷的镜像和存储系统副本的方法。 第一服务器在第一站点处的第一存储系统和第二站点处的第二存储系统之间维护镜像复制关系。 第一服务器执行从第一存储系统到第一存储系统副本的第一时间点复制操作,其中第一存储系统副本的数据与确定的时间点一致。 第一服务器向第二服务器发送命令以创建第二存储系统的时间点副本。 第二个服务器处理从第一个服务器传输的镜像数据作为镜像复制关系的一部分,以确定何时创建第二个时间点副本。 第二个服务器执行第二个时间点复制操作。

    Storage controller conditioning host access to stored data according to security key stored in host-inaccessible metadata
    5.
    发明授权
    Storage controller conditioning host access to stored data according to security key stored in host-inaccessible metadata 有权
    存储控制器调节主机根据存储在主机无法访问的元数据中的安全密钥访问存储的数据

    公开(公告)号:US06446209B2

    公开(公告)日:2002-09-03

    申请号:US09825456

    申请日:2001-04-03

    IPC分类号: G06F124

    CPC分类号: G06F21/10 G06F2221/0773

    摘要: A storage controller conditions host access to stored data objects upon host provision of a proposed key with matching or other prescribed relation to a security key stored in host-inaccessible metadata that is associated with the stored data object. The security key may be established upon writing the data or allocating storage space, for example. This enables the storage controller or device to be attached directly to a network without compromising security or having to add an intermediate server to perform security functions. Another implementation concerns sound recording playback devices that only play sound tracks for which the user has purchased an appropriate security key.

    摘要翻译: 存储控制器在主机提供与存储在与所存储的数据对象相关联的主机不可访问的元数据中的安全密钥的匹配或其他规定关系的情况下,对存储的数据对象进行主机访问。 例如,可以在写入数据或分配存储空间时建立安全密钥。 这使得存储控制器或设备能够直接连接到网络而不会影响安全性,或者必须添加中间服务器来执行安全功能。 另一个实现涉及仅播放用户购买了适当的安全密钥的声轨的录音回放设备。

    Storage system with data-dependent security
    6.
    发明授权
    Storage system with data-dependent security 失效
    具有数据依赖安全性的存储系统

    公开(公告)号:US06336187B1

    公开(公告)日:2002-01-01

    申请号:US09096962

    申请日:1998-06-12

    IPC分类号: G06F124

    CPC分类号: G06F21/10 G06F2221/0773

    摘要: A host-independent storage facility selectively provides data-dependent security by initially storing a security key in association with a storage region, where that key must be presented by any host seeking access to the region. The storage system includes a storage controller coupled to a digital data storage and one or more hosts. Initially, the controller receives a set-access-key command from one of the hosts, identifying a storage region, an operation parameter identifying prohibited types of storage operations, and a reference access key. The controller stores the access key and the operation parameter in a reference location associated with the identified storage region. Later, the controller may receive storage access requests from the hosts. Requests include an identification of a requested storage region, an access type, and an input access key. In response, the controller retrieves the reference access key and operation parameter associated with the requested storage region. If the requested access type is not prohibited by the operation parameter, the controller executes the storage access request. Also, if the requested access type is prohibited by the retrieved operation parameter, the controller nonetheless executes the storage access request if the input and reference access keys match.

    摘要翻译: 与主机无关的存储设施通过初始地存储与存储区域相关联的安全密钥来选择性地提供数据相关的安全性,其中该密钥必须由寻求对该区域的访问的任何主机呈现。 存储系统包括耦合到数字数据存储器和一个或多个主机的存储控制器。 最初,控制器从主机之一接收设置访问密钥命令,识别存储区域,识别禁止类型的存储操作的操作参数和参考访问密钥。 控制器将访问密钥和操作参数存储在与所识别的存储区域相关联的参考位置中。 之后,控制器可以从主机接收存储访问请求。 请求包括所请求的存储区域的标识,访问类型和输入访问密钥。 作为响应,控制器检索与请求的存储区域相关联的参考访问密钥和操作参数。 如果所请求的访问类型不被操作参数禁止,则控制器执行存储访问请求。 此外,如果所请求的访问类型被所检索的操作参数禁止,则如果输入和参考访问键匹配,则控制器执行存储访问请求。

    Encryption of data in storage systems
    9.
    发明授权
    Encryption of data in storage systems 有权
    在存储系统中加密数据

    公开(公告)号:US07752676B2

    公开(公告)日:2010-07-06

    申请号:US11406661

    申请日:2006-04-18

    CPC分类号: G06F21/604 G06F2221/2107

    摘要: Provided are a method, system and article of manufacture, wherein a request to access data is received from a requestor. A determination is made as to whether the requestor is authorized to access the data. In response to determining that the requestor is authorized to access the data, a determination is made as to whether the data is encrypted. An encryption key is requested from the requester, in response to determining that the data is not encrypted.

    摘要翻译: 提供了一种方法,系统和制品,其中从请求者接收访问数据的请求。 确定请求者是否被授权访问数据。 响应于确定请求者被授权访问数据,确定数据是否被加密。 响应于确定数据未被加密,从请求者请求加密密钥。

    METHOD, SYSTEM, AND ARTICLE OF MANUFACTURE FOR MIRRORING DATA AT STORAGE LOCATIONS
    10.
    发明申请
    METHOD, SYSTEM, AND ARTICLE OF MANUFACTURE FOR MIRRORING DATA AT STORAGE LOCATIONS 有权
    在存储位置制作数据的方法,系统和制造

    公开(公告)号:US20090013014A1

    公开(公告)日:2009-01-08

    申请号:US12234538

    申请日:2008-09-19

    IPC分类号: G06F17/30

    摘要: Provided are a system and article of manufacture for mirroring data. A mirror policy indicating volumes in a first storage system is processed to mirror to volumes in a second storage system and volumes in the second storage system to mirror to volumes in a third storage system. The third storage system is at a first geographical location remote with respect to a second geographical location including the first and second storage systems. A command is transmitted to cause the copying of updates to the volumes in the first storage system to corresponding volumes in the second storage system indicated in the mirror policy. Upon an occurrence of an event, the causing the suspension of the copying of updates to the volumes in the first storage system indicated in the mirroring policy to the volumes in the second storage system. During the suspension of the copying of volumes between the first and second storage systems, causing the copying of updates to the volumes in the second storage system indicated in the mirroring policy to the volumes in the third storage system indicated in the mirroring policy.

    摘要翻译: 提供了用于镜像数据的系统和制品。 指示指示第一存储系统中的卷的镜像策略被镜像到第二存储系统中的卷和第二存储系统中的卷以镜像到第三存储系统中的卷。 第三存储系统位于相对于包括第一和第二存储系统的第二地理位置的远端的第一地理位置处。 发送命令以使得将第一存储系统中的卷的更新复制到镜像策略中指示的第二存储系统中的相应卷。 在发生事件时,导致将在镜像策略中指示的第一存储系统中的卷的更新复制到第二存储系统中的卷的暂停。 在暂停在第一和第二存储系统之间的卷的复制期间,导致将在镜像策略中指示的第二存储系统中的卷的更新复制到镜像策略中指示的第三存储系统中的卷。