Hierarchical Key Management for Inter-Region Replication

A hierarchical key management system with three keys ensures secure and efficient end-to-end file storage replication across cloud regions, addressing data loss and management challenges in disaster recovery scenarios.

JP2025522338APending Publication Date: 2025-07-15ORACLE INT CORP
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
JP2024571177
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Priority Date
2023-01-06
Filing Date
2023-06-02
Publication Date
2025-07-15

AI Technical Summary

Technical Problem

Current disaster recovery solutions for cloud infrastructure regions lack efficient and secure mechanisms for end-to-end file storage replication, particularly during failover and failback processes, leading to management challenges and potential data loss.

Method used

A hierarchical key management system is implemented, using three distinct keys (source file system key, session key, and target file system key) to encrypt and decrypt file data across different cloud infrastructure regions, ensuring secure and efficient replication through parallel processing and asynchronous operations.

Benefits of technology

The system provides scalable, reliable, and secure end-to-end file storage replication with minimal management effort, maintaining data consistency and reducing recovery time objectives by utilizing high-throughput object storage and parallel processing threads.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2025522338000001_ABST
    Figure 2025522338000001_ABST
Patent Text Reader

Abstract

Techniques for performing hierarchical key management that includes end-to-end file storage replication between different cloud infrastructure regions are described. The hierarchical key management includes three different keys: a first security key for the source region, a session key for the transfer of data between two different regions that is only valid during a session, and a second security key for the target region. New techniques for using different file keys for different files in a file system within each region are also described.
Need to check novelty before this filing date? Find Prior Art