Invention Grant
- Patent Title: Cloud-native global file system with constant-time rekeying
-
Application No.: US16936622Application Date: 2020-07-23
-
Publication No.: US11025422B2Publication Date: 2021-06-01
- Inventor: David M. Shaw
- Applicant: Nasuni Corporation
- Applicant Address: US MA Boston
- Assignee: Nasuni Corporation
- Current Assignee: Nasuni Corporation
- Current Assignee Address: US MA Boston
- Agent David H. Judson
- Main IPC: H04L9/08
- IPC: H04L9/08 ; G06F16/172 ; G06F21/60 ; G06F21/62 ; G06F16/182

Abstract:
A cloud-native global file system in which a local filer creates objects and forward them to a cloud-based object store is augmented to include constant-time rekeying (CTR). At volume creation time on the filer, a random Intermediate Key (IK) is generated. The IK is encrypted using one or more public key(s) for the volume in question, and then stored in encrypted form in a volume metadata file (e.g., cloudvolume.xml) alongside the other volume information. Once created, the IK is treated like any other volume metadata. During startup of a volume manager on the filer, the one or more per-volume IK blobs (present) are decrypted using an appropriate secret key, and then cached in memory. All objects sent to the cloud are then symmetrically encrypted to the current IK for that volume. All objects read from the cloud are decrypted using the locally-cached IK.
Public/Granted literature
- US20210028936A1 Cloud-native global file system with constant-time rekeying Public/Granted day:2021-01-28
Information query