发明名称 LOG STRUCTURED VOLUME ENCRYPTION FOR VIRTUAL MACHINES
摘要 <p>Methods, systems, and apparatus, including a method for providing data. The method comprises receiving a first request from a first virtual machine (VM) to store data, obtaining the data and an access control list (ACL) of authorized users, obtaining a data key that has a data key identifier, encrypting the data key and the ACL using a wrapping key to generate a wrapped blob, encrypting the data, storing the wrapped blob and the encrypted data, and providing the data key identifier to users on the ACL. The method further comprises receiving a second request from a second VM to obtain a data snapshot, obtaining an unwrapped blob, obtaining the data key and the ACL from the unwrapped blob, authenticating a user associated with the second request, authorizing the user against the ACL, decrypting the data using the data key, and providing a snapshot of the data to the second VM.</p>
申请公布号 EP2823432(A1) 申请公布日期 2015.01.14
申请号 EP20130710156 申请日期 2013.02.22
申请人 GOOGLE INC. 发明人 KADATCH, ANDREW;HALCROW, MICHAEL A.
分类号 G06F21/62 主分类号 G06F21/62
代理机构 代理人
主权项
地址