Maintaining encryption key integrity
    1.
    发明授权
    Maintaining encryption key integrity 有权
    维护加密密钥的完整性

    公开(公告)号:US07817799B2

    公开(公告)日:2010-10-19

    申请号:US11530012

    申请日:2006-09-07

    IPC分类号: H04L9/00

    CPC分类号: H04L9/0891 H04L9/0894

    摘要: Provided are a method, system, and article of manufacture, wherein a first write only register is maintained in an encryption engine of a cryptographic unit. A second write only register is maintained in a decryption engine of the cryptographic unit. A cryptographic key is written in the first write only register and the second write only register, wherein the cryptographic key is inaccessible for reading from any entity that is external to the cryptographic unit.

    摘要翻译: 提供了一种方法,系统和制品,其中第一只写寄存器被保存在密码单元的加密引擎中。 第二只写寄存器被保存在密码单元的解密引擎中。 加密密钥被写入第一只写寄存器和第二只写寄存器中,其中加密密钥是不可访问的,用于从密码单元外部的任何实体进行读取。

    SECURE TRANSMISSION OF CRYPTOGRAPHIC KEY
    2.
    发明申请
    SECURE TRANSMISSION OF CRYPTOGRAPHIC KEY 失效
    安全传输关键

    公开(公告)号:US20080069343A1

    公开(公告)日:2008-03-20

    申请号:US11530014

    申请日:2006-09-07

    IPC分类号: H04L9/00

    CPC分类号: H04L9/0822

    摘要: Provided are a method, system and article of manufacture, wherein a cryptographic key generator generates a cryptographic key. The cryptographic key generator encrypts the cryptographic key with a session key that is available to both the cryptographic key generator and a cryptographic unit. The encrypted cryptographic key is transmitted across a link from the cryptographic key generator to the cryptographic unit.

    摘要翻译: 提供了一种方法,系统和制品,其中加密密钥生成器生成加密密钥。 加密密钥生成器使用可用于加密密钥生成器和加密单元的会话密钥对密码密钥进行加密。 加密的加密密钥通过密码密钥发生器到密码单元的链路传输。

    Secure transmission of cryptographic key
    3.
    发明授权
    Secure transmission of cryptographic key 失效
    加密密钥的安全传输

    公开(公告)号:US07751559B2

    公开(公告)日:2010-07-06

    申请号:US11530014

    申请日:2006-09-07

    IPC分类号: H04L9/18

    CPC分类号: H04L9/0822

    摘要: Provided are a method, system and article of manufacture, wherein a cryptographic key generator generates a cryptographic key. The cryptographic key generator encrypts the cryptographic key with a session key that is available to both the cryptographic key generator and a cryptographic unit. The encrypted cryptographic key is transmitted across a link from the cryptographic key generator to the cryptographic unit.

    摘要翻译: 提供了一种方法,系统和制品,其中加密密钥生成器生成加密密钥。 加密密钥生成器使用可用于加密密钥生成器和加密单元的会话密钥对密码密钥进行加密。 加密的加密密钥通过密码密钥发生器到密码单元的链路传输。

    MAINTAINING ENCRYPTION KEY INTEGRITY
    4.
    发明申请
    MAINTAINING ENCRYPTION KEY INTEGRITY 有权
    维护加密关键完整性

    公开(公告)号:US20080063183A1

    公开(公告)日:2008-03-13

    申请号:US11530012

    申请日:2006-09-07

    IPC分类号: H04K1/00

    CPC分类号: H04L9/0891 H04L9/0894

    摘要: Provided are a method, system, and article of manufacture, wherein a first write only register is maintained in an encryption engine of a cryptographic unit. A second write only register is maintained in a decryption engine of the cryptographic unit. A cryptographic key is written in the first write only register and the second write only register, wherein the cryptographic key is inaccessible for reading from any entity that is external to the cryptographic unit.

    摘要翻译: 提供了一种方法,系统和制品,其中第一只写寄存器被保存在密码单元的加密引擎中。 第二只写寄存器被保存在密码单元的解密引擎中。 加密密钥被写入第一只写寄存器和第二只写寄存器中,其中加密密钥是不可访问的,用于从密码单元外部的任何实体进行读取。

    Detection and handling of encryption key and initialization vector
    5.
    发明授权
    Detection and handling of encryption key and initialization vector 失效
    加密密钥和初始化向量的检测和处理

    公开(公告)号:US07903812B2

    公开(公告)日:2011-03-08

    申请号:US11530010

    申请日:2006-09-07

    IPC分类号: H04L9/00

    摘要: Provided are a method, system, and article of manufacture that maintains, at a decryption unit, and expected key identifier and an expected initialization vector. A key identifier and an initialization vector are received at the decryption unit, wherein a plurality of encrypted data records are preceded by the key identifier and the initialization vector in a data stream, and wherein the plurality of encrypted data records have been encrypted with a cryptographic key that is recoverable by the decryption unit from the key identifier. An initiation is made of the reading of the plurality of encrypted data records of the data stream, in response to determining at the decryption unit that the received key identifier matches the expected key identifier. Certain embodiments are implemented in a storage library, comprising at least one storage drive, and at least one decryption unit included in the at least one storage drive, wherein in certain embodiments the storage library is a tape library. Certain additional embodiments are implemented in a storage drive, comprising a removable storage medium and at least one decryption unit coupled to the removable storage medium, wherein in certain embodiments the storage drive is a tape drive.

    摘要翻译: 提供了一种在解密单元处保持预期密钥标识符和预期初始化向量的方法,系统和制品。 在解密单元处接收密钥标识符和初始化向量,其中多个加密数据记录之前是数据流中的密钥标识符和初始化向量,并且其中多个加密的数据记录已经用密码加密 密钥可由密钥标识符由解密单元恢复。 响应于在解密单元确定接收到的密钥标识符与预期的密钥标识符匹配,启动数据流的多个加密数据记录的读取。 某些实施例在包括至少一个存储驱动器的存储库和包括在至少一个存储驱动器中的至少一个解密单元的存储库中实现,其中在某些实施例中,存储库是磁带库。 某些附加实施例在存储驱动器中实现,包括可移动存储介质和耦合到可移动存储介质的至少一个解密单元,其中在某些实施例中,存储驱动器是磁带驱动器。

    DETECTION AND HANDLING OF ENCRYPTION KEY AND INITIALIZATION VECTOR
    6.
    发明申请
    DETECTION AND HANDLING OF ENCRYPTION KEY AND INITIALIZATION VECTOR 失效
    加密密钥和初始化向量的检测和处理

    公开(公告)号:US20080063186A1

    公开(公告)日:2008-03-13

    申请号:US11530010

    申请日:2006-09-07

    IPC分类号: H04L9/28

    摘要: Provided are a method, system, and article of manufacture that maintains, at a decryption unit, and expected key identifier and an expected initialization vector. A key identifier and an initialization vector are received at the decryption unit, wherein a plurality of encrypted data records are preceded by the key identifier and the initialization vector in a data stream, and wherein the plurality of encrypted data records have been encrypted with a cryptographic key that is recoverable by the decryption unit from the key identifier. An initiation is made of the reading of the plurality of encrypted data records of the data stream, in response to determining at the decryption unit that the received key identifier matches the expected key identifier. Certain embodiments are implemented in a storage library, comprising at least one storage drive, and at least one decryption unit included in the at least one storage drive, wherein in certain embodiments the storage library is a tape library. Certain additional embodiments are implemented in a storage drive, comprising a removable storage medium and at least one decryption unit coupled to the removable storage medium, wherein in certain embodiments the storage drive is a tape drive.

    摘要翻译: 提供了一种在解密单元处保持预期密钥标识符和预期初始化向量的方法,系统和制品。 在解密单元处接收密钥标识符和初始化向量,其中多个加密数据记录之前是数据流中的密钥标识符和初始化向量,并且其中多个加密的数据记录已经用密码加密 密钥可由密钥标识符由解密单元恢复。 响应于在解密单元确定接收到的密钥标识符与预期的密钥标识符匹配,启动数据流的多个加密数据记录的读取。 某些实施例在包括至少一个存储驱动器的存储库和包括在至少一个存储驱动器中的至少一个解密单元的存储库中实现,其中在某些实施例中,存储库是磁带库。 某些附加实施例在存储驱动器中实现,包括可移动存储介质和耦合到可移动存储介质的至少一个解密单元,其中在某些实施例中,存储驱动器是磁带驱动器。

    APPARATUS, SYSTEM, AND METHOD FOR TESTING DATA COMPRESSION AND DATA ENCRYPTION CIRCUITRY
    7.
    发明申请
    APPARATUS, SYSTEM, AND METHOD FOR TESTING DATA COMPRESSION AND DATA ENCRYPTION CIRCUITRY 审中-公开
    用于测试数据压缩和数据加密电路的装置,系统和方法

    公开(公告)号:US20080240419A1

    公开(公告)日:2008-10-02

    申请号:US11694842

    申请日:2007-03-30

    IPC分类号: G06F11/263 H04K1/00

    摘要: An apparatus, system, and method are disclosed for testing data compression and data encryption circuitry. A pattern configuration module generates initial pattern parameters. Holding registers store the initial pattern parameters. A pattern generation module generates patterns for compression/encryption logic. A detection module detects a failure of the compression/encryption logic. The failure of the compression/encryption logic may be a cyclic redundancy check failure of a decompression module and/or a message authentication code failure of a decryption module.

    摘要翻译: 公开了用于测试数据压缩和数据加密电路的装置,系统和方法。 模式配置模块生成初始模式参数。 保持寄存器存储初始模式参数。 模式生成模块生成用于压缩/加密逻辑的模式。 检测模块检测压缩/加密逻辑的故障。 压缩/加密逻辑的故障可能是解压缩模块的循环冗余校验失败和/或解密模块的消息验证码失败。

    Key encryption and decryption
    8.
    发明授权
    Key encryption and decryption 有权
    密钥加解密

    公开(公告)号:US09008317B2

    公开(公告)日:2015-04-14

    申请号:US11733669

    申请日:2007-04-10

    摘要: Provided is a data storage drive for encrypting data, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a session key, wherein a result is a data key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium. Also provided is a system, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a private key, wherein a result is a secret key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium.

    摘要翻译: 提供了一种用于加密数据的数据存储驱动器,包括微处理器和耦合到微处理器的电路,并适于接收会话加密的数据密钥,并使用会话密钥对会话加密的数据密钥进行解密,其中结果是数据密钥, 能够用于加密明文和解密写入存储介质的密文。 还提供了一种系统,其包括微处理器和耦合到微处理器并适于接收会话加密数据密钥的电路,并使用专用密钥解密会话加密数据密钥,其中结果是能够被使用的密钥 加密明文和解密写入存储介质的密文。

    KEY ENCRYPTION AND DECRYPTION
    9.
    发明申请
    KEY ENCRYPTION AND DECRYPTION 有权
    主要加密和分解

    公开(公告)号:US20090327746A1

    公开(公告)日:2009-12-31

    申请号:US11733669

    申请日:2007-04-10

    IPC分类号: G06F12/14 H04L9/00

    摘要: Provided is a data storage drive for encrypting data, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a session key, wherein a result is a data key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium. Also provided is a system, comprising a microprocessor and circuitry coupled to the microprocessor and adapted to receive a session encrypted data key and to decrypt the session encrypted data key using a private key, wherein a result is a secret key that is capable of being used to encrypt clear text and to decrypt cipher text written to a storage medium.

    摘要翻译: 提供了一种用于加密数据的数据存储驱动器,包括微处理器和耦合到微处理器的电路,并适于接收会话加密的数据密钥,并使用会话密钥对会话加密的数据密钥进行解密,其中结果是数据密钥, 能够用于加密明文和解密写入存储介质的密文。 还提供了一种系统,其包括微处理器和耦合到微处理器并适于接收会话加密数据密钥的电路,并使用专用密钥解密会话加密数据密钥,其中结果是能够被使用的密钥 加密明文和解密写入存储介质的密文。

    Equalizing bandwidth for multiple requesters using a shared memory system
    10.
    发明授权
    Equalizing bandwidth for multiple requesters using a shared memory system 有权
    使用共享内存系统为多个请求者均衡带宽

    公开(公告)号:US09208002B2

    公开(公告)日:2015-12-08

    申请号:US13344941

    申请日:2012-01-06

    IPC分类号: G06F12/00 G06F9/54 G06F15/167

    摘要: A method for equalizing the bandwidth of requesters using a shared memory system is disclosed. In one embodiment, such a method includes receiving multiple access requests to access a shared memory system. Each access request originates from a different requester coupled to the shared memory system. The method then determines which of the access requests has been waiting the longest to access the shared memory system. The access requests are then ordered so that the access request that has been waiting the longest is transmitted to the shared memory system after the other access requests. The requester associated with the longest-waiting access request may then transmit additional access requests to the shared memory system immediately after the longest-waiting access request has been transmitted. A corresponding apparatus and computer program product are also disclosed.

    摘要翻译: 公开了一种使用共享存储器系统来均衡使用者带宽的方法。 在一个实施例中,这种方法包括接收访问共享存储器系统的多个访问请求。 每个访问请求源自耦合到共享存储器系统的不同请求者。 该方法然后确定哪个访问请求已经等待最长时间访问共享存储器系统。 然后对访问请求进行排序,使得等待最长的访问请求在其他访问请求之后被传送到共享存储器系统。 与最长等待的访问请求相关联的请求者然后可以在发送最长等待的访问请求之后立即向附加存储器系统发送附加访问请求。 还公开了相应的装置和计算机程序产品。