发明名称 Method and apparatus for encryption of data on storage units using devices inside a storage area network fabric
摘要 The capability to encrypt or compress the traffic over network links, thus improving the security of the link on the performance of the links, and the capability to encrypt/decrypt data stored on the storage devices without requiring specialized hosts or storage devices. In a first embodiment, traffic to be routed over a selected link needing encryption and/or compression is routed to hardware which performs the encryption and/or compression and returned for transmission over the link. A complementary unit at the second end of the link routes the received frames to complementary hardware to perform the decryption and/or decompression. The recovered frames are then routed to the target device in a normal fashion. In a variation of this first embodiment the hardware is developed using an FPGA. This allows simple selection of the desired feature or features present in the switch. The switch can be easily configured to perform encryption, compression or both, allowing great flexibility to a system administrator. In a second embodiment frames can be encrypted by a switch and then provided to the storage device in this encrypted manner. The frames from the storage device are decrypted before provision to the requesting host. By performing the encryption and decryption in the switch, conventional hosts and storage devices can be utilized.
申请公布号 US2004085955(A1) 申请公布日期 2004.05.06
申请号 US20020285345 申请日期 2002.10.31
申请人 BROCADE COMMUNICATIONS SYSTEMS, INC. 发明人 WALTER RICHARD A.;ISIP L. VINCENT M.
分类号 H04L29/06;(IPC1-7):H04L12/50;H04L5/22 主分类号 H04L29/06
代理机构 代理人
主权项
地址