OpenStack system with block storage encryption function and application method thereof

An encryption function, block storage technology, applied in program control design, instrument, electronic digital data processing and other directions, can solve the problems of secret key theft, low encryption speed, easy to be maliciously stolen and tampered, to prevent malicious theft and tampering. Tampering, good compatibility, high encryption and decryption performance

Active Publication Date: 2019-12-06
湖南麒麟信安科技股份有限公司
View PDF5 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The block storage provided by Cinder in Openstack can realize encrypted data transmission with the help of SSL, but the encryption implemented by the software algorithm has disadvantages such as the possibility of the secret key being stolen and low encryption speed. In addition, the data of the block storage itself is stored in plain text, which is easy to be stolen maliciously. and tampering

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • OpenStack system with block storage encryption function and application method thereof
  • OpenStack system with block storage encryption function and application method thereof
  • OpenStack system with block storage encryption function and application method thereof

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] Such as figure 1 and figure 2 As shown, the OpenStack system with block storage encryption function in this embodiment includes a control node, a computing node and hardware storage, and also includes a block storage encryption device connected between the computing node and hardware storage, and the control node is integrated with an Openstack Cinder-based The encrypted storage plug-in is implemented, and the encrypted storage plug-in is responsible for processing the block storage management request of the Openstack system. The block storage encryption device and the encrypted storage plug-in are adapted and connected, and the block storage resources provided by the hardware storage are all passed through the encrypted storage plug-in The adapted block storage encryption device is provided for use by the virtual machine of the computing node, and the block storage encryption device is used for transparently encrypting and decrypting block storage data.

[0025] In t...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an OpenStack system with a block storage encryption function and an application method thereof. The OpenStack system comprises a control node, a computing node and hardware storage and block storage encryption equipment. The control node integrates a Cinder encryption storage plug-in so as to process the Openstack block storage management request. The block storage resources provided by the hardware storage are provided for the virtual machine of the computing node for use through a block storage encryption device matched with the encrypted storage plug-in, and the block storage encryption device is used for transparently encrypting and decrypting the block storage data. According to the invention, transparent encryption and decryption of Openstack Cinder block storage data can be realized. The block storage encryption equipment can prevent block storage data from being maliciously stolen and tampered, has the advantage of good compatibility, uses the hardware encryption card to transparently encrypt and decrypt the block storage data, and is high in encryption and decryption performance and good in data security compared with a software implementation mode.

Description

technical field [0001] The invention relates to the field of cloud computing data security, in particular to an OpenStack system with a block storage encryption function and an application method thereof. Background technique [0002] OpenStack is a cloud computing platform that provides computing, storage, and even network resources. It is a collection of a series of service components with RESTful interfaces. Among them, Nova is responsible for the management of the entire life cycle of virtual machines, and Cinder is responsible for the management of block storage resources. Cinder is a block storage resource management system. In order to adapt to the heterogeneous storage environment, it provides a unified RESTful interface externally, and internally uses storage plug-ins (Cinder Volume Driver) to abstract, encapsulate and manage different back-end hardware storage. The block storage provided by Cinder in Openstack can realize encrypted data transmission with the help o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/60G06F21/64G06F9/455
CPCG06F9/45558G06F21/602G06F21/64G06F2009/45587G06F2009/45595
Inventor 刘振宇蒋李申锟铠刘文清杨涛陈松政颜跃进
Owner 湖南麒麟信安科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products