IP Library Granted Patent US 10,282,564
Granted Patent B2
US 10,282,564 · App. 14/452,182 · Granted May 7, 2019

Distributed storage with auxiliary data interspersal and method for use therewith

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,282,564
App. No.
14/452,182
Granted
May 7, 2019
Kind
B2
Abstract

A data segment is encrypted to produce an encrypted data segment. The encrypted data segment is dispersed storage error encoded to produce a set of encoded data slices. Auxiliary data is dispersed storage error encoded to produce a set of encoded auxiliary data slices. A sequence of output slices is generated to obscure the set of encoded data slices by interspersing the set of encoded auxiliary data slices within the set of encoded data slices.

Claims (90)

1. A method comprising:

receiving a data segment of a data stream;

encrypting the data segment to produce an encrypted data segment;

dispersed storage error encoding the encrypted data segment to produce a set of encoded data slices, wherein a threshold number of the encoded data slices of the set of encoded data slices are needed to recover the encrypted data segment;

dispersed storage error encoding auxiliary data to produce a set of encoded auxiliary data slices;

generating a sequence of output slices to obscure the set of encoded data slices by interspersing the set of encoded auxiliary data slices within the set of encoded data slices; and

sending the sequence of output slices for storage in a distributed storage network (DSN).

2. The method of claim 1 wherein the interspersing of the set of encoded auxiliary data slices within the set of encoded data slices is in accordance with a pseudo random output sequencing order.

3. The method of claim 1 wherein the auxiliary data is encrypted via an encryption methodology used to encrypt the encrypted data segment.

4. The method of claim 1 wherein the auxiliary data is encrypted via an all or nothing transformation and the encrypted data segment is encrypted via an all or nothing transformation.

5. The method of claim 1 further comprising:

reordering the set of encoded data slices prior to generating the sequence of output slices.

6. The method of claim 1 , wherein the auxiliary data comprises at least one of:

null data;

authentication information;

a next pseudo random output sequencing order;

a pseudo random output sequencing order identifier;

a next outputting threshold;

a random number generator output;

an encryption key;

a starting point for the pseudo random output sequencing order;

a device identifier;

a data identifier;

a data type;

a data size indicator;

a priority indicator;

a security indicator; or

a performance indicator.

7. The method of claim 6 further comprising:

reordering the set of encoded auxiliary data slices prior to generating the sequence of output slices.

8. A dispersed storage and task (DST) processing unit comprises:

at least one module, when operable within a computing device, that causes the computing device to:

receive a data segment of a data stream;

encrypt the data segment to produce an encrypted data segment;

dispersed storage error encode the encrypted data segment to produce a set of encoded data slices, wherein a threshold number of the encoded data slices of the set of encoded data slices are needed to recover the encrypted data segment;

dispersed storage error encode auxiliary data to produce a set of encoded auxiliary data slices;

generate a sequence of output slices to obscure the set of encoded data slices by interspersing the set of encoded auxiliary data slices within the set of encoded data slices; and

send the sequence of output slices for storage in a distributed storage network (DSN).

9. The DST processing unit of claim 8 wherein the interspersing of the set of encoded auxiliary data slices within the set of encoded data slices is in accordance with a pseudo random output sequencing order.

10. The DST processing unit of claim 8 wherein the auxiliary data is encrypted via an encryption methodology used to encrypt the encrypted data segment.

11. The DST processing unit of claim 8 wherein the auxiliary data is encrypted via an all or nothing transformation and the encrypted data segment is encrypted via an all or nothing transformation.

12. The DST processing unit of claim 8 wherein the at least one module, when operable within the computing device, further causes the computing device to:

reorder the set of encoded data slices prior to generating the sequence of output slices.

13. The DST processing unit of claim 8 wherein the auxiliary data comprises at least one of:

null data;

authentication information;

a next pseudo random output sequencing order;

a pseudo random output sequencing order identifier;

a next outputting threshold;

a random number generator output;

an encryption key;

a starting point for the pseudo random output sequencing order;

a device identifier;

a data identifier;

a data type;

a data size indicator;

a priority indicator;

a security indicator; or

a performance indicator.

14. The DST processing unit of claim 13 wherein the at least one module, when operable within the computing device, further causes the computing device to:

reorder the set of encoded auxiliary data slices prior to generating the sequence of output slices.

15. A computer readable storage medium comprises:

at least one memory section that stores operational instructions that, when executed by one or more processing modules of one or more computing devices of a dispersed storage network (DSN), causes the one or more computing devices to:

receive a data segment of a data stream;

encrypt the data segment to produce an encrypted data segment;

dispersed storage error encode the encrypted data segment to produce a set of encoded data slices;

dispersed storage error encode auxiliary data to produce a set of encoded auxiliary data slices;

generate a sequence of output slices to obscure the set of encoded data slices by interspersing the set of encoded auxiliary data slices within the set of encoded data slices; and

send the sequence of output slices for storage in a distributed storage network (DSN).

16. The computer readable storage medium of claim 15 wherein the interspersing of the set of encoded auxiliary data slices within the set of encoded data slices is in accordance with a pseudo random output sequencing order.

17. The computer readable storage medium of claim 15 wherein the auxiliary data is encrypted via an encryption methodology used to encrypt the encrypted data segment.

18. The computer readable storage medium of claim 15 wherein the auxiliary data is encrypted via an all or nothing transformation and the encrypted data segment is encrypted via an all or nothing transformation.

19. The computer readable storage medium of claim 15 wherein the operational instructions, when executed by the one or more processing modules of the one or more computing devices of the dispersed storage network (DSN), further causes the one or more computing devices to:

reorder the set of encoded data slices prior to generating the sequence of output slices.

20. The computer readable storage medium of claim 15 wherein the auxiliary data comprises at least one of:

null data;

authentication information;

a next pseudo random output sequencing order;

a pseudo random output sequencing order identifier;

a next outputting threshold;

a random number generator output;

an encryption key;

a starting point for the pseudo random output sequencing order;

a device identifier;

a data identifier;

a data type;

a data size indicator;

a priority indicator;

a security indicator; or

a performance indicator.

Assignments (6)
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Jun 11, 2025
From: BARCLAYS BANK PLC, AS ADMINISTRATIVE AGENT
To: PURE STORAGE, INC.
Reel/Frame 071558/0523 →
SECURITY INTEREST Recorded Aug 26, 2020
From: PURE STORAGE, INC.
To: BARCLAYS BANK PLC AS ADMINISTRATIVE AGENT
Reel/Frame 053867/0581 →
CORRECTIVE ASSIGNMENT TO CORRECT THE 9992063 AND 10334045 LISTED IN ERROR PREVIOUSLY RECORDED ON REEL 049556 FRAME 0012. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNOR HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jan 14, 2020
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: PURE STORAGE, INC.
Reel/Frame 052205/0705 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 21, 2019
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: PURE STORAGE, INC.
Reel/Frame 049556/0012 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 6, 2016
From: CLEVERSAFE, INC.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 038629/0015 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 5, 2014
From: GLADWIN, S. CHRISTOPHER; TEMPLETON, CHUCK WILSON; RESCH, JASON K.; GRUBE, GARY W.
To: CLEVERSAFE, INC.
Reel/Frame 033469/0051 →
Cited By (1)
US 12,675,366