EP2359249A2

Secure storage availability using cryptographic splitting

Abstract

This record has no abstract on file.

Term

Projected expiry 17 November 2029.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

26 claims: 6 independent, 20 dependent

  1. 1
    Claims of equivalent WO 2010057196 A2 Claims:1. A method of maintaining data connectivity in a secure storage network, the method comprising: assigning a volume to a primary secure storage appliance located in a secure data storage network, the secure data storage network including a plurality of secure data paths between the primary secure storage appliance and a client device and a plurality of secure data paths between the secure storage appliance and a plurality of storage systems, the volume corresponding to physical storage at each of the plurality of storage systems ;detecting a connectivity problem on at least one of the secure data paths;and assessing whether to reassign the volume to a different secure storage appliance based upon the connectivity problem.
  2. 16
    A multi-path secure storage network comprising:a client device;a plurality of storage systems;a primary secure storage appliance associated with a volume, the primary secure storage appliance configured to manage data requests associated with the volume, the volume associated with data stored at each of the plurality of storage systems;a plurality of secure data paths between the primary secure storage appliance and the client device;and a plurality of secure data paths between the primary secure storage appliance and the plurality of storage systems;wherein the primary secure storage appliance is configured to detect a connectivity problem on at least one of the secure data paths and assess whether to reassign the volume to a different secure storage appliance based upon the connectivity problem.
  3. 23
    A method of maintaining data connectivity in a secure storage network, the method comprising:assigning a volume to a primary secure storage appliance located in a secure data storage network, the secure data storage network including a plurality of secure data paths between the primary secure storage appliance and a client device and a plurality of secure data paths between the secure storage appliance and a plurality of storage systems, the volume corresponding to physical storage at each of the plurality of storage systems;detecting a connectivity problem on at least one of the secure data paths;assessing whether to reassign the volume to a different secure storage appliance based upon the connectivity problem;assigning the volume to a second secure storage appliance, thereby rendering the second secure storage appliance a new primary storage appliance;and disassociating the volume from the primary secure storage appliance.
  4. 24
    A method of maintaining data connectivity in a secure data storage network, the method comprising:assigning a volume to a primary secure storage appliance located in a secure data storage network the primary secure storage appliance selected from among a plurality of secure storage appliances located in the secure data storage network, the volume presented as a virtual disk to a client device and mapped to physical storage at each of a plurality of storage systems;detecting at one of the plurality of secure storage appliances a failure of the primary secure storage appliance;upon detecting the failure of the primary secure storage appliance, reassigning the volume to a second secure storage appliance from among the plurality of secure storage appliances, thereby rendering the second secure storage appliance a new primary secure storage appliance.
  5. 25
    A method of maintaining operation of a plurality of secure storage appliances, the method comprising:assigning a volume to a primary secure storage appliance located in a secure data storage network the primary secure storage appliance selected from among a plurality of secure storage appliances located in the secure data storage network, the volume presented as a virtual disk to a client device and mapped to physical storage at each of a plurality of storage systems;presenting an administrative interface to an administrator of the secure data storage network, the administrative interface presenting the plurality of secure storage appliances as a virtual secure storage appliance;presenting a common set of administrative settings for each of the plurality of secure storage appliances associated with the virtual secure storage appliance, such that, upon detecting at one of the plurality of secure storage appliances a failure of the primary secure storage appliance, the common set of administrative settings remain accessible to the administrator.
  6. 26
    A secure data storage network comprising:a client device;a plurality of storage systems;a plurality of secure storage appliances interconnected between the client device and the plurality of storage systems, the plurality of secure storage appliances including a primary secure storage appliance associated with a volume, the volume presented as a virtual disk to the client device and mapped to physical storage at each of the plurality of storage systems;wherein each of the plurality of secure storage appliances includes a common set of administrative information, and each of the plurality of secure storage appliances monitors operational status of one or more of a different secure storage appliance among the plurality of secure storage appliances.