Key encryption and decryption
    1.
    发明授权
    Key encryption and decryption 有权
    密钥加解密

    公开(公告)号:US09008317B2

    公开(公告)日:2015-04-14

    申请号:US11733669

    申请日:2007-04-10

    摘要: Provided is a data storage drive for encrypting data, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a session key, wherein a result is a data key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium. Also provided is a system, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a private key, wherein a result is a secret key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium.

    摘要翻译: 提供了一种用于加密数据的数据存储驱动器,包括微处理器和耦合到微处理器的电路,并适于接收会话加密的数据密钥,并使用会话密钥对会话加密的数据密钥进行解密,其中结果是数据密钥, 能够用于加密明文和解密写入存储介质的密文。 还提供了一种系统,其包括微处理器和耦合到微处理器并适于接收会话加密数据密钥的电路,并使用专用密钥解密会话加密数据密钥,其中结果是能够被使用的密钥 加密明文和解密写入存储介质的密文。

    KEY ENCRYPTION AND DECRYPTION
    2.
    发明申请
    KEY ENCRYPTION AND DECRYPTION 有权
    主要加密和分解

    公开(公告)号:US20090327746A1

    公开(公告)日:2009-12-31

    申请号:US11733669

    申请日:2007-04-10

    IPC分类号: G06F12/14 H04L9/00

    摘要: Provided is a data storage drive for encrypting data, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a session key, wherein a result is a data key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium. Also provided is a system, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a private key, wherein a result is a secret key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium.

    摘要翻译: 提供了一种用于加密数据的数据存储驱动器,包括微处理器和耦合到微处理器的电路,并适于接收会话加密的数据密钥,并使用会话密钥对会话加密的数据密钥进行解密,其中结果是数据密钥, 能够用于加密明文和解密写入存储介质的密文。 还提供了一种系统,其包括微处理器和耦合到微处理器并适于接收会话加密数据密钥的电路,并使用专用密钥解密会话加密数据密钥,其中结果是能够被使用的密钥 加密明文和解密写入存储介质的密文。

    System and method for processing user data in an encryption pipeline
    3.
    发明授权
    System and method for processing user data in an encryption pipeline 有权
    用于在加密管道中处理用户数据的系统和方法

    公开(公告)号:US07965844B2

    公开(公告)日:2011-06-21

    申请号:US11688445

    申请日:2007-03-20

    IPC分类号: H04L9/06 H04L9/14

    CPC分类号: G11B20/00086

    摘要: A method, system and program are disclosed for efficiently processing host data which comprises encrypted and non-encrypted data and is to be written to a storage medium. The encrypted data is written to the storage medium in encrypted form. The non-encrypted data is encrypted by a storage device using a well known encryption key and written to the storage medium. In this way, the data that is processed by the storage device to and from the storage medium can always be processed through a single encryption engine.

    摘要翻译: 公开了一种方法,系统和程序,用于有效地处理包括加密和非加密数据的主机数据,并将其写入存储介质。 加密数据以加密形式写入存储介质。 未经加密的数据由存储装置使用公知的加密密钥进行加密并写入存储介质。 以这种方式,存储设备处理和从存储介质处理的数据可以总是通过单个加密引擎来处理。

    Key generation and retrieval using key servers
    4.
    发明授权
    Key generation and retrieval using key servers 有权
    使用密钥服务器的密钥生成和检索

    公开(公告)号:US07953978B2

    公开(公告)日:2011-05-31

    申请号:US11530006

    申请日:2006-09-07

    IPC分类号: H04L9/32 G06F11/30

    摘要: Provided are techniques for key generation and retrieval. Unique identifiers of two or more key servers are stored, wherein each key server is capable of generating keys for encryption of data and of returning keys for decryption of data. A key request is received. A technique for selecting one of the key servers to which the key request is to be forwarded is identified. One of the key servers is selected using the identified technique. The key request is sent to the identified key server.

    摘要翻译: 提供了用于密钥生成和检索的技术。 存储两个或更多个密钥服务器的唯一标识符,其中每个密钥服务器能够生成用于加密数据的密钥和用于数据解密的返回密钥。 收到一个关键请求。 识别用于选择要转发密钥请求的密钥服务器之一的技术。 使用识别的技术选择其中一个关键服务器。 密钥请求被发送到识别的密钥服务器。

    Magnetic tape write once overwrite protection
    5.
    发明授权
    Magnetic tape write once overwrite protection 失效
    磁带写入一次重写保护

    公开(公告)号:US07650461B2

    公开(公告)日:2010-01-19

    申请号:US12206089

    申请日:2008-09-08

    IPC分类号: G06F12/00

    摘要: A magnetic tape cartridge, a recording system, and a magnetic tape drive are configured to, for example, guard against tampering with a write once overwrite protection pointer which allows a rewritable magnetic tape to be treated as write once. In one embodiment, the magnetic tape cartridge comprises a magnetic tape and a cartridge memory. The magnetic tape is configured to provide at least one overwrite protection pointer, the overwrite protection pointer identifying data to be protected from being overwritten; and the cartridge memory is configured to provide the at least one overwrite protection pointer, the overwrite protection pointer identifying magnetic tape data to be protected from being overwritten.

    摘要翻译: 磁带盒,记录系统和磁带驱动器被配置为例如防止篡改写入一次重写保护指针,其允许可重写磁带被处理为一次写入。 在一个实施例中,磁带盒包括磁带和盒式存储器。 磁带被配置为提供至少一个覆盖保护指针,覆盖保护指针识别要被保护的数据不被覆盖; 并且盒存储器被配置为提供至少一个覆盖保护指针,所述覆盖保护指针标识要被保护的磁带数据不被重写。

    Automated Data Storage Library with Target of Opportunity Recognition
    6.
    发明申请
    Automated Data Storage Library with Target of Opportunity Recognition 有权
    具有机会识别目标的自动数据存储库

    公开(公告)号:US20090177314A1

    公开(公告)日:2009-07-09

    申请号:US11971050

    申请日:2008-01-08

    IPC分类号: G06F7/00

    摘要: A system and computer program product are provided for utilizing target of opportunity to perform at least one special operation while a removable storage medium is mounted within a data storage drive for another purpose. The system comprises a tape library and a tape drive coupled to the tape library. The tape library receives a command to mount a tape cartridge in the tape drive. If it is determined by the tape library that at least one special operation may be performed, then tape library has recognized that a target of opportunity exists. In response to determining that at least one special operation may be performed, the tape library sends a first notification that the tape drive is to remain in a not ready state. The tape library mounts the tape cartridge in the tape drive after determining that at least one special operation may be performed. In response to the tape drive performing the at least one special operation, the tape library sends a second notification that the tape drive is in a ready state or an error state.

    摘要翻译: 提供了一种系统和计算机程序产品,用于利用机会目标来执行至少一个特殊操作,同时可移动存储介质安装在数据存储驱动器内用于另一目的。 该系统包括磁带库和耦合到磁带库的磁带驱动器。 磁带库收到一个将磁带盒安装在磁带机中的命令。 如果由磁带库确定可以执行至少一个特殊操作,则磁带库已经认识到存在机会目标。 响应于确定可以执行至少一个特殊操作,磁带库发送磁带驱动器将保持未就绪状态的第一通知。 在确定至少可以执行一个特殊操作之后,磁带库将磁带盒安装在磁带驱动器中。 响应于磁带驱动器执行至少一个特殊操作,磁带库发送第二个通知,指示磁带驱动器处于就绪状态或错误状态。

    Target Of Opportunity In An Automated Data Storage Library
    7.
    发明申请
    Target Of Opportunity In An Automated Data Storage Library 有权
    自动数据存储库中的机会目标

    公开(公告)号:US20090174961A1

    公开(公告)日:2009-07-09

    申请号:US11971087

    申请日:2008-01-08

    IPC分类号: G11B15/18

    CPC分类号: G11B15/6835

    摘要: A method is provided for utilizing target of opportunity to perform at least one special operation while a removable storage medium is mounted within a data storage drive for another purpose. A target of opportunity is recognized by determining if at least one special operation may be performed by the data storage drive. If it is determined that at least one special operation may be performed then a first notification that the data storage drive is to remain in a not ready state is sent in response. At least one special operation is performed, and in response to the at least one special operation being performed, a second notification is sent that the removable storage medium is in a ready state or an error state.

    摘要翻译: 提供了一种用于利用机会目标执行至少一个特殊操作的方法,同时可移动存储介质安装在用于另一目的的数据存储驱动器内。 通过确定数据存储驱动器是否可以执行至少一个特殊操作来识别机会的目标。 如果确定可以执行至少一个特殊操作,则响应地发送数据存储驱动器将保持未就绪状态的第一通知。 执行至少一个特殊操作,并且响应于所执行的至少一个特殊操作,发送第二通知,使得可移动存储介质处于就绪状态或错误状态。

    RECOVERING REMNANT ENCRYPTED DATA ON A REMOVABLE STORAGE MEDIA
    8.
    发明申请
    RECOVERING REMNANT ENCRYPTED DATA ON A REMOVABLE STORAGE MEDIA 有权
    在可移动存储介质上恢复未知加密数据

    公开(公告)号:US20080065881A1

    公开(公告)日:2008-03-13

    申请号:US11530021

    申请日:2006-09-07

    IPC分类号: H04L9/00

    摘要: Provided are a method, system, and article of manufacture recovering remnant encrypted data on a removable storage media. An end of data (EOD) marker is detected on a removable storage media, wherein a first encryption key is associated with data preceding the EOD marker. Following the EOD marker, an identifier of a second encryption key associated with data following the EOD marker is read in response to detecting the EOD marker. The identifier is used to access the second encryption key and the second encryption key is used to decrypt the data following the EOD marker.

    摘要翻译: 提供了在可移动存储介质上恢复残余加密数据的方法,系统和制品。 在可移动存储介质上检测数据结束(EOD)标记,其中第一加密密钥与EOD标记之前的数据相关联。 在EOD标记之后,响应于检测到EOD标记,读取与EOD标记之后的数据相关联的第二加密密钥的标识符。 该标识符用于访问第二加密密钥,第二加密密钥用于对EOD标记之后的数据进行解密。

    Target of opportunity recognition during an encryption related process
    10.
    发明授权
    Target of opportunity recognition during an encryption related process 有权
    加密相关过程中机会识别的目标

    公开(公告)号:US09495561B2

    公开(公告)日:2016-11-15

    申请号:US11971099

    申请日:2008-01-08

    IPC分类号: G06F21/78

    CPC分类号: G06F21/78

    摘要: A method, system, and computer program product are provided for utilizing target of opportunity to perform at least one special operation while a key session is opened with a key manager for another purpose. The method of recognizing a target of opportunity includes receiving a command to be performed on a removable storage medium and determining if the command requires interaction with the encryption key manager. If it is determined that the command requires interaction with the key manager the command is held off. A request is sent to the encryption key manager. A target of opportunity is recognized by determining if at least one special operation may be performed. If it is determined that at least one special operation may be performed then the at least one special operation and the request are performed.

    摘要翻译: 提供了一种方法,系统和计算机程序产品,用于利用机会目标来执行至少一个特殊操作,同时用密钥管理器打开密钥会话以用于另一目的。 识别机会目标的方法包括接收要在可移动存储介质上执行的命令,并确定该命令是否需要与加密密钥管理器的交互。 如果确定命令需要与密钥管理器进行交互,则该命令被关闭。 请求被发送到加密密钥管理器。 通过确定是否可以执行至少一个特殊操作来识别机会的目标。 如果确定可以执行至少一个特殊操作,则执行至少一个特殊操作和请求。