CONFIGURING A STORAGE DRIVE TO COMMUNICATE WITH ENCRYPTION AND KEY MANAGERS
    1.
    发明申请
    CONFIGURING A STORAGE DRIVE TO COMMUNICATE WITH ENCRYPTION AND KEY MANAGERS 有权
    配置存储驱动程序与加密和关键管理器通信

    公开(公告)号:US20080065882A1

    公开(公告)日:2008-03-13

    申请号:US11530022

    申请日:2006-09-07

    IPC分类号: H04L9/00

    CPC分类号: G06F21/6218 G06F21/78

    摘要: Provided are a method, system, and article of manufacture for configuring a storage drive to communicate with encryption and key managers. A storage drive receives a request to access a coupled removable storage media for drive operations. The storage drive obtains encryption status for the coupled removable storage media from an encryption manager. The storage drive determines from the obtained encryption status whether to encrypt the coupled removable storage media to access. The storage drive obtains at least one key from a key manager in response to determining to encrypt with respect to the coupled removable storage media. The storage drive performs data operations using the at least one key to encrypt data.

    摘要翻译: 提供了用于配置存储驱动器以与加密和密钥管理器进行通信的方法,系统和制品。 存储驱动器接收访问用于驱动操作的耦合的可移动存储介质的请求。 存储驱动器从加密管理器获得耦合的可移动存储介质的加密状态。 存储驱动器根据所获得的加密状态确定是否加密耦合的可移动存储介质以进行访问。 响应于确定相对于耦合的可移动存储介质进行加密,存储驱动器从密钥管理器获得至少一个密钥。 存储驱动器使用至少一个密钥来执行数据操作以加密数据。

    Bulk Data Erase Utilizing An Encryption Technique
    2.
    发明申请
    Bulk Data Erase Utilizing An Encryption Technique 审中-公开
    大量数据擦除利用加密技术

    公开(公告)号:US20090052665A1

    公开(公告)日:2009-02-26

    申请号:US11841490

    申请日:2007-08-20

    IPC分类号: G06F12/14 H04L9/28

    CPC分类号: G06F21/78

    摘要: A system and a computer program product are disclosed for eliminating access to data on removable storage media of a removable storage media cartridge. The system comprises a data storage drive that stores a key on the removable storage media cartridge, such that data on the removable storage media is accessible with the key. Upon receiving a command to eliminate access to data on the removable storage media the data storage drive shreds the key such that access to data on the removable storage media is eliminated.

    摘要翻译: 公开了一种用于消除对可移动存储介质盒的可移动存储介质上的数据的访问的系统和计算机程序产品。 该系统包括将密钥存储在可移动存储介质盒上的数据存储驱动器,使得可移动存储介质上的数据可通过密钥访问。 在接收到用于消除对可移动存储介质上的数据的访问的命令时,数据存储驱动器切割该密钥,从而消除对可移动存储介质上的数据的访问。

    Data storage drive for automated data storage library
    4.
    发明授权
    Data storage drive for automated data storage library 失效
    用于自动数据存储库的数据存储驱动器

    公开(公告)号:US07660943B2

    公开(公告)日:2010-02-09

    申请号:US11356771

    申请日:2006-02-17

    IPC分类号: G06F12/00

    摘要: A method, system, and a device have a data storage drive for an automated data storage library in which a data storage drive may have in one embodiment, both a host-drive interface port and a host-library interface port. In one aspect, drive commands from a host system are conducted primarily through the host-drive interface port and a host-drive interface path to a drive controller of the data storage drive. In addition, library commands from the host system to a library controller may be conducted primarily through the host-library interface port and a host-library interface path to a library communication port of the data storage drive. In one embodiment, the drive commands from a host system are conducted primarily through the host-drive interface port and the host-drive interface path to a drive controller of the data storage drive. In addition, the library commands from a host system are conducted primarily through the host-library interface port and the host-library interface path to the library communication port of the data storage drive. Other embodiments are described and claimed.

    摘要翻译: 方法,系统和设备具有用于自动数据存储库的数据存储驱动器,其中数据存储驱动器在一个实施例中可以具有主机 - 驱动器接口端口和主机 - 库接口端口。 在一个方面,来自主机系统的驱动器命令主要通过主机 - 驱动器接口端口和到数据存储驱动器的驱动器控制器的主机 - 驱动器接口路径进行。 此外,主机系统到库控制器的库命令可以主要通过主机 - 库接口端口和主机 - 库接口路径进行到数据存储驱动器的库通信端口。 在一个实施例中,来自主机系统的驱动命令主要通过主机 - 驱动器接口端口和主机 - 驱动器接口路径进行到数据存储驱动器的驱动器控制器。 此外,主机系统的库命令主要通过主机 - 库接口端口和主机 - 库接口路径进行到数据存储驱动器的库通信端口。 描述和要求保护其他实施例。

    Target of opportunity recognition during an encryption related process
    8.
    发明授权
    Target of opportunity recognition during an encryption related process 有权
    加密相关过程中机会识别的目标

    公开(公告)号:US09495561B2

    公开(公告)日:2016-11-15

    申请号:US11971099

    申请日:2008-01-08

    IPC分类号: G06F21/78

    CPC分类号: G06F21/78

    摘要: A method, system, and computer program product are provided for utilizing target of opportunity to perform at least one special operation while a key session is opened with a key manager for another purpose. The method of recognizing a target of opportunity includes receiving a command to be performed on a removable storage medium and determining if the command requires interaction with the encryption key manager. If it is determined that the command requires interaction with the key manager the command is held off. A request is sent to the encryption key manager. A target of opportunity is recognized by determining if at least one special operation may be performed. If it is determined that at least one special operation may be performed then the at least one special operation and the request are performed.

    摘要翻译: 提供了一种方法,系统和计算机程序产品,用于利用机会目标来执行至少一个特殊操作,同时用密钥管理器打开密钥会话以用于另一目的。 识别机会目标的方法包括接收要在可移动存储介质上执行的命令,并确定该命令是否需要与加密密钥管理器的交互。 如果确定命令需要与密钥管理器进行交互,则该命令被关闭。 请求被发送到加密密钥管理器。 通过确定是否可以执行至少一个特殊操作来识别机会的目标。 如果确定可以执行至少一个特殊操作,则执行至少一个特殊操作和请求。

    Volume coherency verification for sequential-access storage media
    9.
    发明授权
    Volume coherency verification for sequential-access storage media 有权
    顺序访问存储介质的卷一致性验证

    公开(公告)号:US08327107B2

    公开(公告)日:2012-12-04

    申请号:US12719441

    申请日:2010-03-08

    IPC分类号: G06F12/00

    摘要: A method for determining volume coherency is disclosed herein. Upon completing a first write job to a volume partition, the method makes a copy of a volume change reference (VCR) value associated with the volume. The VCR value is configured to change in a non-repeating manner each time content on the volume is modified. Prior to initiating a second write job to the volume partition, the method retrieves the copy and compares the copy to the VCR value. If the copy matches the VCR value, the method determines that a logical object on the partition was not modified between the first and second write jobs. If the copy does not match the VCR value, the method determines that the logical object on the partition was modified between the first and second write jobs. A corresponding system and computer program product are also disclosed herein.

    摘要翻译: 本文公开了一种用于确定卷一致性的方法。 完成对卷分区的第一次写入作业后,该方法将创建与卷相关联的卷更改引用(VCR)值的副本。 每次修改卷上的内容时,将VCR值配置为以不重复的方式进行更改。 在向卷分区启动第二次写入作业之前,该方法将检索副本并将该副本与VCR值进行比较。 如果复制与VCR值匹配,则该方法确定在第一和第二写入作业之间没有修改分区上的逻辑对象。 如果副本与VCR值不匹配,则该方法确定分区上的逻辑对象在第一个和第二个写入作业之间已被修改。 本文还公开了相应的系统和计算机程序产品。

    Recovering remnant encrypted data on a removable storage media
    10.
    发明授权
    Recovering remnant encrypted data on a removable storage media 有权
    在可移动存储介质上恢复残余加密数据

    公开(公告)号:US07783882B2

    公开(公告)日:2010-08-24

    申请号:US11530021

    申请日:2006-09-07

    IPC分类号: H04L29/06

    摘要: Provided are a method, system, and article of manufacture recovering remnant encrypted data on a removable storage media. An end of data (EOD) marker is detected on a removable storage media, wherein a first encryption key is associated with data preceding the EOD marker. Following the EOD marker, an identifier of a second encryption key associated with data following the EOD marker is read in response to detecting the EOD marker. The identifier is used to access the second encryption key and the second encryption key is used to decrypt the data following the EOD marker.

    摘要翻译: 提供了在可移动存储介质上恢复残余加密数据的方法,系统和制品。 在可移动存储介质上检测数据结束(EOD)标记,其中第一加密密钥与EOD标记之前的数据相关联。 在EOD标记之后,响应于检测到EOD标记,读取与EOD标记之后的数据相关联的第二加密密钥的标识符。 该标识符用于访问第二加密密钥,第二加密密钥用于对EOD标记之后的数据进行解密。