Invention Grant
US08555342B1 Providing secure access to a set of credentials within a data security mechanism of a data storage system
有权
提供对数据存储系统的数据安全机制内的一组凭证的安全访问
- Patent Title: Providing secure access to a set of credentials within a data security mechanism of a data storage system
- Patent Title (中): 提供对数据存储系统的数据安全机制内的一组凭证的安全访问
-
Application No.: US12645857Application Date: 2009-12-23
-
Publication No.: US08555342B1Publication Date: 2013-10-08
- Inventor: Gregory W. Lazar , Greg Mogavero , Michael Hamel , Yidong Wang , Prakash Chanderia , Feng Zhou , Ashwin Ramkrishna Tidke
- Applicant: Gregory W. Lazar , Greg Mogavero , Michael Hamel , Yidong Wang , Prakash Chanderia , Feng Zhou , Ashwin Ramkrishna Tidke
- Applicant Address: US MA Hopkinton
- Assignee: EMC Corporation
- Current Assignee: EMC Corporation
- Current Assignee Address: US MA Hopkinton
- Agency: BainwoodHuang
- Main IPC: G06F12/14
- IPC: G06F12/14 ; G06F7/04 ; G06F15/16 ; G06F21/31 ; H04L29/06

Abstract:
A technique provides secure access to a set of credentials within a data storage system. The technique involves obtaining a unique identifier (e.g., a hostname which is unique to the system) and a set of stable values (e.g., machine-generated codes which are random to users of the system); and, in response to a storage request from a client application, storing a set of credentials of the client application within a data security mechanism of the data storage system. The set of credentials is in encrypted form when stored within the data security mechanism of the data storage system. The technique further involves configuring the data security mechanism of the data storage system to provide the set of credentials in non-encrypted form in response to new fingerprints matching a system fingerprint which is formed at least in part from the unique identifier and the set of stable values.
Information query