DE112020003357T5 - Undurchsichtige verschlüsselung für datendeduplizierung - Google Patents

Undurchsichtige verschlüsselung für datendeduplizierung Download PDF

Info

Publication number
DE112020003357T5
DE112020003357T5 DE112020003357.0T DE112020003357T DE112020003357T5 DE 112020003357 T5 DE112020003357 T5 DE 112020003357T5 DE 112020003357 T DE112020003357 T DE 112020003357T DE 112020003357 T5 DE112020003357 T5 DE 112020003357T5
Authority
DE
Germany
Prior art keywords
data
client
key
encrypted
storage system
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
DE112020003357.0T
Other languages
German (de)
English (en)
Inventor
Steven Robert Hetzler
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
International Business Machines Corp
Original Assignee
International Business Machines Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by International Business Machines Corp filed Critical International Business Machines Corp
Publication of DE112020003357T5 publication Critical patent/DE112020003357T5/de
Pending legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • G06F21/6227Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database where protection concerns the structure of data, e.g. records, types, queries
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/20Information retrieval; Database structures therefor; File system structures therefor of structured data, e.g. relational data
    • G06F16/21Design, administration or maintenance of databases
    • G06F16/215Improving data quality; Data cleansing, e.g. de-duplication, removing invalid entries or correcting typographical errors
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/085Secret sharing or secret splitting, e.g. threshold schemes
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0894Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2107File encryption

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Databases & Information Systems (AREA)
  • General Physics & Mathematics (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Health & Medical Sciences (AREA)
  • Software Systems (AREA)
  • General Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Quality & Reliability (AREA)
  • Data Mining & Analysis (AREA)
  • Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
  • Storage Device Security (AREA)
DE112020003357.0T 2019-08-19 2020-08-10 Undurchsichtige verschlüsselung für datendeduplizierung Pending DE112020003357T5 (de)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US16/544,708 2019-08-19
US16/544,708 US11836267B2 (en) 2019-08-19 2019-08-19 Opaque encryption for data deduplication
PCT/IB2020/057505 WO2021033072A1 (en) 2019-08-19 2020-08-10 Opaque encryption for data deduplication

Publications (1)

Publication Number Publication Date
DE112020003357T5 true DE112020003357T5 (de) 2022-03-31

Family

ID=74645554

Family Applications (1)

Application Number Title Priority Date Filing Date
DE112020003357.0T Pending DE112020003357T5 (de) 2019-08-19 2020-08-10 Undurchsichtige verschlüsselung für datendeduplizierung

Country Status (6)

Country Link
US (1) US11836267B2 (enExample)
JP (1) JP7511630B2 (enExample)
CN (1) CN114270331B (enExample)
DE (1) DE112020003357T5 (enExample)
GB (1) GB2602216B (enExample)
WO (1) WO2021033072A1 (enExample)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11838413B2 (en) * 2019-10-22 2023-12-05 Synamedia Limited Content recognition systems and methods for encrypted data structures
US11259082B2 (en) 2019-10-22 2022-02-22 Synamedia Limited Systems and methods for data processing, storage, and retrieval from a server
US11868460B2 (en) 2021-03-05 2024-01-09 International Business Machines Corporation Authorized encryption
US12254108B2 (en) * 2022-02-28 2025-03-18 Dell Products L.P. Disallowing reads on files associated with compromised data encryption keys
CN119628904B (zh) * 2024-11-28 2025-11-04 南京大学 基于网间安全ip隧道的数据去重系统及方法

Family Cites Families (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20090319772A1 (en) 2008-04-25 2009-12-24 Netapp, Inc. In-line content based security for data at rest in a network storage system
US9058298B2 (en) * 2009-07-16 2015-06-16 International Business Machines Corporation Integrated approach for deduplicating data in a distributed environment that involves a source and a target
CN102467528A (zh) 2010-11-02 2012-05-23 英业达股份有限公司 重复数据删除操作系统
CN102156703A (zh) 2011-01-24 2011-08-17 南开大学 一种低功耗的高性能重复数据删除系统
CN102811212A (zh) 2011-06-02 2012-12-05 英业达集团(天津)电子技术有限公司 重复数据删除的数据加密方法及其系统
CN103136243B (zh) 2011-11-29 2016-08-31 中国电信股份有限公司 基于云存储的文件系统去重方法及装置
US9037856B2 (en) * 2012-07-18 2015-05-19 Nexenta Systems, Inc. System and method for distributed deduplication of encrypted chunks
US9547774B2 (en) * 2012-07-18 2017-01-17 Nexenta Systems, Inc. System and method for distributed deduplication of encrypted chunks
CN103530201B (zh) * 2013-07-17 2016-03-02 华中科技大学 一种适用于备份系统的安全数据去重方法和系统
CN103731423A (zh) 2013-12-25 2014-04-16 北京安码科技有限公司 一种安全的重复数据删除方法
CN103763362B (zh) 2014-01-13 2016-12-21 西安电子科技大学 一种安全的分布式重复数据删除方法
US10374807B2 (en) 2014-04-04 2019-08-06 Hewlett Packard Enterprise Development Lp Storing and retrieving ciphertext in data storage
US9397832B2 (en) * 2014-08-27 2016-07-19 International Business Machines Corporation Shared data encryption and confidentiality
US9372998B2 (en) * 2014-10-07 2016-06-21 Storagecraft Technology Corporation Client-side encryption in a deduplication backup system
CN105553951B (zh) * 2015-12-08 2019-11-08 腾讯科技(深圳)有限公司 数据传输方法和装置
CN105681273B (zh) 2015-12-17 2018-11-20 西安电子科技大学 客户端重复数据删除方法
US10805273B2 (en) 2016-04-01 2020-10-13 Egnyte, Inc. Systems for improving performance and security in a cloud computing system
US10572153B2 (en) 2016-07-26 2020-02-25 Western Digital Technologies, Inc. Efficient data management through compressed data interfaces
US11563555B2 (en) 2017-09-26 2023-01-24 Thales Dis Cpl Usa, Inc. Management of encryption agents in data storage systems
US10158483B1 (en) 2018-04-30 2018-12-18 Xanadu Big Data, Llc Systems and methods for efficiently and securely storing data in a distributed data storage system
US10756887B2 (en) * 2018-10-12 2020-08-25 EMC IP Holding Company LLC Method and system for securely replicating encrypted deduplicated storages

Also Published As

Publication number Publication date
WO2021033072A1 (en) 2021-02-25
JP7511630B2 (ja) 2024-07-05
JP2022545351A (ja) 2022-10-27
US20210056223A1 (en) 2021-02-25
US11836267B2 (en) 2023-12-05
CN114270331B (zh) 2025-07-29
GB2602216A (en) 2022-06-22
CN114270331A (zh) 2022-04-01
GB2602216B (en) 2022-11-02
GB202203008D0 (en) 2022-04-20

Similar Documents

Publication Publication Date Title
DE102012219155B4 (de) Verschlüsseln von Datenobjekten zur Datensicherung
DE112021004937B4 (de) Sicheres erneutes verschlüsseln von homomorph verschlüsselten daten
DE112021001766B4 (de) Inhaltskontrolle durch datenaggregationsdienste dritter
DE112021003270B4 (de) Deduplizierung von mit mehreren schlüsseln verschlüsselten daten
DE112020003357T5 (de) Undurchsichtige verschlüsselung für datendeduplizierung
DE112021006229B4 (de) Hybride schlüsselableitung zum sichern von daten
DE112021005561T5 (de) Implementieren einer widerstandsfähigen deterministischen verschlüsselung
DE112020002164B4 (de) Sichere datenspeicherung auf der grundlage von verschleierung durch verteilung
DE112012005032B4 (de) Entfernen der Datenremanenz in deduplizierten Speicher-Clouds
DE112020005625T5 (de) Binden sicherer objekte eines sicherheitsmoduls an einen sicheren gast
DE112014000584T5 (de) Erreichen von Speichereffizienz bei durchgängiger Verschlüsselung unter Verwendung von nachgelagerten (Downstream-)Decryptern
DE112018001285T5 (de) Kryptografische Schlüsselerzeugung mit Anwendung auf Datendeduplizierung
DE102021129514A1 (de) Binden von post-quanten-zertifikaten
DE112021000340B4 (de) Sichere private schlüsselverteilung zwischen endpunktinstanzen
DE112018000779T5 (de) Tokenbereitstellung für Daten
DE112021006372T5 (de) Sichere bereitstellung einer datenverarbeitungsressource unter verwendung einer homomorphen verschlüsselung
DE112021004344T5 (de) Konsensdienst für Blockchain-Netzwerke
DE112021002747T5 (de) Sicheres wiederherstellen von geheimen schlüsseln
DE112019003130T5 (de) Hsm-selbstzerstörung in einer hybriden cloud-kms-lösung
DE112019001957T5 (de) Sichere operationen mit verschlüsselten daten
DE112021006008B4 (de) Sichere übertragung grosser datenmengen
DE102021130812A1 (de) Implementieren einer opportunistischen authentifizierung von verschlüsselten daten
DE112022004921T5 (de) Sichere verteilung von richtlinien in einer cloud-umgebung
DE112021003864T5 (de) Durchsetzung von signaturen für die konfiguration von softwarebereitstellung
DE102016105062A1 (de) Nähengestützte Berechtigungsprüfung für einheitenübergreifend verteilte Daten

Legal Events

Date Code Title Description
R012 Request for examination validly filed
R084 Declaration of willingness to licence
R016 Response to examination communication