Patent · US Active

Method and apparatus for performing selective encryption/decryption in a data storage system

US8892905B2 · kind B2 · utility

0Cited by
11References
28Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 21, 2007
Grant dateNov 18, 2014
Priority date
Expiry dateMay 1, 2033

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L9/0894
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

One embodiment of the present invention provides a system for performing selective encryption/decryption in a data storage system. During operation, the system receives a data block from a storage medium at an input/output layer, wherein the input/output layer serves as an interface between the storage medium and a buffer cache. Next, the system determines whether the data block is an encrypted data block. If not, the system stores the data block in the buffer cache. Otherwise, if the data block is an encrypted data block, the system retrieves a storage-key, wherein the storage-key is associated with a subset of storage, which is associated with the encrypted data block. Using the storage-key, the system then decrypts the encrypted data block to produce a decrypted data block. Finally, the system stores the decrypted data block in the buffer cache, wherein the data block remains encrypted in the storage medium.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.