Encryption key management in a data storage system communicating with asynchronous key servers
US10833857B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Jan 29, 2018 |
| Grant date | Nov 10, 2020 |
| Priority date | — |
| Expiry date | Nov 2, 2038 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L9/0891
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
One general aspect of encryption key management by a data storage controller which communicates with asynchronous key servers is directed to issue a prepare for enable command to request an encryption key from an encryption key server. State machine logic transitions from an unconfigured state to a prepare for enable state in which key server mirror management logic receives from a key server a requested encryption key and caches the received key. In an enabling state, enablement logic verifies successful mirroring of the encryption key by a key server to another key server and activates the encryption key if key mirroring by key servers is verified. In an enabled state, data is encrypted using the verified, activated encryption key. Other features and aspects may be realized, depending upon the particular application.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.