Invention Grant
- Patent Title: Approach for securing distributed deduplication software
- Patent Title (中): 保护分发重复数据删除软件的方法
-
Application No.: US12541191Application Date: 2009-08-14
-
Publication No.: US08453257B2Publication Date: 2013-05-28
- Inventor: Matthew J. Anglin , David M. Cannon , Avishai H. Hochberg , Alexei Kojenov , James P. Smith , Mark L. Yakushev
- Applicant: Matthew J. Anglin , David M. Cannon , Avishai H. Hochberg , Alexei Kojenov , James P. Smith , Mark L. Yakushev
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Kunzler Law Group, PC
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The various embodiments of the present invention include techniques for securing the use of data deduplication activities occurring in a source-deduplicating storage management system. These techniques are intended to prevent fake data backup, target data contamination, and data spoofing attacks initiated by a source. In one embodiment, one technique includes limiting chunk querying to authorized users. Another technique provides detection of attacks and unauthorized access to keys within the target system. Additional techniques include the combination of validating the existence of data from the source by validating the data chunk, validating a data sample of the data chunk, or validating a hash value of the data chunk. A further embodiment involves the use of policies to provide authorization levels for chunk sharing and linking within the target. These techniques separately and in combination provide a comprehensive strategy to avoid unauthorized access to data within the target storage system.
Public/Granted literature
- US20110040732A1 APPROACH FOR SECURING DISTRIBUTED DEDUPLICATION SOFTWARE Public/Granted day:2011-02-17
Information query