Invention Grant
US08457317B2 Method for data privacy in a fixed content distributed data storage
有权
固定内容分布式数据存储中的数据隐私方法
- Patent Title: Method for data privacy in a fixed content distributed data storage
- Patent Title (中): 固定内容分布式数据存储中的数据隐私方法
-
Application No.: US12116274Application Date: 2008-05-07
-
Publication No.: US08457317B2Publication Date: 2013-06-04
- Inventor: David M. Shaw
- Applicant: David M. Shaw
- Applicant Address: US CA Santa Clara
- Assignee: Hitachi Data Systems Corporation
- Current Assignee: Hitachi Data Systems Corporation
- Current Assignee Address: US CA Santa Clara
- Agent David H. Judson
- Main IPC: H04L9/08
- IPC: H04L9/08

Abstract:
An archival storage cluster of preferably symmetric nodes includes a data privacy scheme that implements key management through secret sharing. In one embodiment, the protection scheme is implemented at install time. At install, an encryption key is generated, split, and the constituent pieces written to respective archive nodes. The key is not written to a drive to ensure that it cannot be stolen or otherwise compromised. Due to the secret sharing scheme, any t of the n nodes must be present before the cluster can mount the drives. Thus, to un-share the secret, a process runs before the cluster comes up. It contacts as many nodes as possible to attempt to reach a sufficient t value. Once it does, the process un-shares the secret and mounts the drives locally. Given bidirectional communication, this mount occurs more or less at the same time on all t nodes. Once the drives are mounted, the cluster can continue to boot as normal.
Public/Granted literature
- US20080285759A1 Method for data privacy in a fixed content distributed data storage Public/Granted day:2008-11-20
Information query