An openstack system with block storage encryption function and its application method

An encryption function and block storage technology, which is applied in the direction of instruments, computing, and electrical digital data processing, etc., can solve the problems of low encryption speed, secret key being stolen, easy to be stolen and tampered maliciously, and achieve good compatibility and prevent malicious The effect of stealing and tampering, high encryption and decryption performance

Active Publication Date: 2021-08-13
湖南麒麟信安科技股份有限公司
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The block storage provided by Cinder in Openstack can realize encrypted data transmission with the help of SSL, but the encryption implemented by the software algorithm has disadvantages such as the possibility of the secret key being stolen and low encryption speed. In addition, the data of the block storage itself is stored in plain text, which is easy to be stolen maliciously. and tampering

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • An openstack system with block storage encryption function and its application method
  • An openstack system with block storage encryption function and its application method
  • An openstack system with block storage encryption function and its application method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] Such as figure 1 and figure 2 As shown, the OpenStack system with block storage encryption function in this embodiment includes a control node, a computing node and hardware storage, and also includes a block storage encryption device connected between the computing node and hardware storage, and the control node is integrated with an Openstack Cinder-based The encrypted storage plug-in is implemented, and the encrypted storage plug-in is responsible for processing the block storage management request of the Openstack system. The block storage encryption device and the encrypted storage plug-in are adapted and connected, and the block storage resources provided by the hardware storage are all passed through the encrypted storage plug-in The adapted block storage encryption device is provided for use by the virtual machine of the computing node, and the block storage encryption device is used for transparently encrypting and decrypting block storage data.

[0025] In t...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an OpenStack system with a block storage encryption function and an application method thereof. The OpenStack system includes a control node, a computing node, hardware storage and a block storage encryption device, and the control node integrates a Cinder encryption storage plug-in to process Openstack block storage management requests , the block storage resources provided by the hardware storage are provided to the virtual machines of the computing nodes through the block storage encryption device adapted to the encryption storage plug-in. The block storage encryption device is used to transparently encrypt and decrypt the block storage data. The invention can realize transparent encryption and decryption of Openstack Cinder block storage data, can prevent block storage data from being maliciously stolen and tampered with, and has the advantage of good compatibility. The block storage encryption device uses a hardware encryption card to transparently encrypt and decrypt block storage data, Compared with the way of software implementation, the encryption and decryption performance is high, and the data security is good.

Description

technical field [0001] The invention relates to the field of cloud computing data security, in particular to an OpenStack system with a block storage encryption function and an application method thereof. Background technique [0002] OpenStack is a cloud computing platform that provides computing, storage, and even network resources. It is a collection of a series of service components with RESTful interfaces. Among them, Nova is responsible for the management of the entire life cycle of virtual machines, and Cinder is responsible for the management of block storage resources. Cinder is a block storage resource management system. In order to adapt to the heterogeneous storage environment, it provides a unified RESTful interface externally, and internally uses storage plug-ins (Cinder Volume Driver) to abstract, encapsulate and manage different back-end hardware storage. The block storage provided by Cinder in Openstack can realize encrypted data transmission with the help o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G06F21/60G06F21/64G06F9/455
CPCG06F9/45558G06F21/602G06F21/64G06F2009/45587G06F2009/45595
Inventor 刘振宇蒋李申锟铠刘文清杨涛陈松政颜跃进
Owner 湖南麒麟信安科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products