Distributed safety memory system

一种安全存储、分布式的技术,应用在传输系统、电气元件等方向,能够解决用户权限管理复杂、安全管理器负载重、数据种类复杂等问题,达到消除存取控制冗余和安全漏洞、避免性能瓶颈、解决成员权限管理复杂的效果

Inactive Publication Date: 2008-12-03
HUAZHONG UNIV OF SCI & TECH
View PDF0 Cites 29 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] The present invention proposes a distributed secure storage system, aiming at overcoming the problems of heavy load on the security manager and complicated management of user rights in the existing certificate-based secure storage system, and eliminating the redundancy and security of access control in the existing system Vulnerabilities, meeting the security requirements of a large-scale, high-performance information storage system with a large amount of information, complex data types, and many users

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Distributed safety memory system
  • Distributed safety memory system
  • Distributed safety memory system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0036]The specific embodiment of the present invention when the storage node adopts the object storage device is given below in conjunction with the accompanying drawings. In January 2005, the US National Bureau of Standards approved the first version of the OSD (Object-based Storage Device) standard submitted by the T10 technical committee of INCITS. That is, the SCSI object storage command standard. The T10OSD standard defines a certificate-based access control model. This embodiment extends the T10OSD standard. It should be pointed out that the present invention is also applicable to heterogeneous storage, that is, the storage device can be an object storage device or a network-attached storage device. And one or more of other storage devices.

[0037] figure 1 It is a structural diagram of the distributed security storage system of the present invention, including four parts: application client, storage device, security and policy manager, and metadata server.

[0038] ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a distributed security storage system, pertains to the technical filed of computer storage and aims at overcoming the problems of the heavy burden of a security manager and complex user authority management in the current security storage system based on a certificate. The storage system of the invention consists of an application client connected to a network, a storage device, a security and strategy manager and a metadata server; the security and strategy manager stores and manages the access control entry, access control strategy and rule of the whole system and carries out access strategy control and authority control over the storage device according to the access control entry, access control strategy and rule of the whole system, including the changes of the priority and inheritance rules of the access control entry and adding and deletion of the access control entry. The storage system of the invention distributes centralized authorization to storage nodes, avoids the performance bottle neck of the security manager, solves the problem of the complex user authority management, combines identification management and access control, eliminates access control redundancy and security holes and is applicable to establishing a large-scale security storage system with high performance.

Description

technical field [0001] The invention belongs to the technical field of computer storage, and in particular relates to a distributed safety storage system. Background technique [0002] Scientific computing, space exploration, e-commerce and multimedia applications require the establishment of high-performance mass information storage systems. The scale of future storage systems will reach PB level, and some important applications require storage system bandwidth to reach 1TB / S or more. PB-level high-performance storage systems have hundreds of storage devices, and provide concurrent and burst services to a large number of users. These factors and the existence of sensitive data pose challenges to the security of PB-level storage systems. [0003] In recent years, a lot of research has been done on the construction technology and security mechanism of PB-level storage systems. Most of the mass storage systems that have been built and are currently in use are composed of three...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/08H04L29/06
CPCH04L63/101H04L67/1097
Inventor 周可冯丹牛中盈杨天明颜钦华雷栋梁闫巍
Owner HUAZHONG UNIV OF SCI & TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products