Patent · US Active

Data policy implementation in a tag-based policy architecture

US10509914B1 · kind B1 · utility

14Cited by
7References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 27, 2017
Grant dateDec 17, 2019
Priority date
Expiry dateApr 13, 2038

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F21/602
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A technique implements data policy deployed in a tag-based policy architecture of a virtualized computing environment. Implementation of the data policy may include applying volume tags to data stored on virtualized storage resources, such as disks organized as volumes, based on instances that generate the data, contents of the data, and/or sensitivity of the data. The volume tags may be applied in a cryptographically strong manner to prevent tampering of the tagged data. To that end, the volume tags are cryptographically associated with the data, wherein such association is effected by binding the tags to a data encryption key stored on the volumes (disks) and used to encrypt/decrypt the data stored on the volumes.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.