Encrypting data objects in a data storage system

    公开(公告)号:US10146703B1

    公开(公告)日:2018-12-04

    申请号:US14984185

    申请日:2015-12-30

    申请人: EMC Corporation

    IPC分类号: G06F12/14 G06F3/06 H04L9/06

    摘要: Techniques for providing encryption of individual data objects in a data storage system include realizing data objects in the form of container files stored in a set of file systems, and encrypting individual ones of the data objects by encrypting the container files realizing the data objects using encryption keys associated with the individual data objects. By independently encrypting the container files that realize individual data objects, the disclosed system provides per-data object encryption. Each data object may be encrypted differently, e.g. using a different encryption key, even when multiple data objects are hosted over the same storage device or over a shared set of storage devices.