Invention Grant
- Patent Title: Log structured volume encryption for virtual machines
- Patent Title (中): 为虚拟机记录结构化卷加密
-
Application No.: US13405036Application Date: 2012-02-24
-
Publication No.: US08996887B2Publication Date: 2015-03-31
- Inventor: Andrew Kadatch , Michael A. Halcrow
- Applicant: Andrew Kadatch , Michael A. Halcrow
- Applicant Address: US CA Mountain View
- Assignee: Google Inc.
- Current Assignee: Google Inc.
- Current Assignee Address: US CA Mountain View
- Agency: Fish & Richardson P.C.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/08

Abstract:
Methods, systems, and apparatus, including a method for providing data. The method comprises receiving a first request from a first virtual machine (VM) to store data, obtaining the data and an access control list (ACL) of authorized users, obtaining a data key that has a data key identifier, encrypting the data key and the ACL using a wrapping key to generate a wrapped blob, encrypting the data, storing the wrapped blob and the encrypted data, and providing the data key identifier to users on the ACL. The method further comprises receiving a second request from a second VM to obtain a data snapshot, obtaining an unwrapped blob, obtaining the data key and the ACL from the unwrapped blob, authenticating a user associated with the second request, authorizing the user against the ACL, decrypting the data using the data key, and providing a snapshot of the data to the second VM.
Public/Granted literature
- US20130227303A1 LOG STRUCTURED VOLUME ENCRYPTION FOR VIRTUAL MACHINES Public/Granted day:2013-08-29
Information query