IP Library Granted Patent US 11,650,749
Granted Patent B1
US 11,650,749 · App. 16/222,264 · Granted May 16, 2023

Controlling access to sensitive data in a shared dataset

Inventors: Richard V. Tran (San Jose, CA); Emmett Jacobs (San Francisco, CA)
Assignee: PURE STORAGE, INC.
G06F3/065G06F3/067G06F3/0622G06F21/6245
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,650,749
App. No.
16/222,264
Granted
May 16, 2023
Kind
B1
Abstract

Controlling access to sensitive data in a shared dataset, including: identifying, for a dataset stored at a first location, a second location for replicating a portion of the dataset; replicating, from the first location to the second location, the portion of the dataset, wherein the portion of the dataset does not include all data in the dataset; detecting that additional data has been added to the portion of the dataset stored in the second location; and replicating, from the second location to the first location, the additional data that has been added to the portion of the dataset stored in the second location.

Claims (26)

1. A method comprising:

identifying, for a dataset stored at a first location in a multi-tenant storage system, a second location in the multi-tenant storage system for replicating a portion of the dataset, wherein the multi-tenant storage system restricts access to the first location to a first tenant and wherein the first location is inaccessible to a second tenant of the multi-tenant system and the second location is accessible by the second tenant of the multi-tenant system;

selectively replicating, from the first location to the second location within the multi-tenant storage system, only data chunks in the portion of the dataset that are tagged as containing non-sensitive data—but not the portion of the dataset that are tagged as containing sensitive data in the dataset, such that the sensitive data is not shared with the second tenant;

detecting that additional data has been added to the portion of the dataset containing non-sensitive data that is stored in the second location by monitoring I/O operations and detecting a write operation issued to the portion of the dataset containing non-sensitive data that is stored in the second location; and

replicating, from the second location to the first location within the multi-tenant storage system, the additional data that has been added to the portion of the dataset containing non-sensitive data that is stored in the second location.

2. The method of claim 1 wherein replicating, from the first location to the second location, the portion of the dataset containing the non-sensitive data further comprises identifying objects within the dataset to be replicated in dependence upon a tag associated with each object.

3. The method of claim 1 wherein the first location includes a first volume and the second location includes a second volume.

4. The method of claim 1 wherein the first location and the second location are included in a data warehouse.

5. An apparatus, the apparatus comprising a computer processor, a computer memory operatively coupled to the computer processor, the computer memory having disposed within it computer program instructions that, when executed by the computer processor, cause the apparatus to carry out the steps of:

identifying, for a dataset stored at a first location in a multi-tenant storage system, a second location in the multi-tenant storage system for replicating a portion of the dataset, wherein the multi-tenant storage system restricts access to the first location to a first tenant and wherein the first location is inaccessible to a second tenant of the multi-tenant system and the second location is accessible by the second tenant of the multi-tenant system;

selectively replicating, from the first location to the second location within the multi-tenant storage system, only data chunks in the portion of the dataset that are tagged as containing non-sensitive data—but not the portion of the dataset that are tagged as containing sensitive data in the dataset, such that the sensitive data is not shared with the second tenant;

detecting that additional data has been added to the portion of the dataset containing non-sensitive data that is stored in the second location by monitoring I/O operations and detecting a write operation issued to the portion of the dataset containing non-sensitive data that is stored in the second location; and

replicating, from the second location to the first location within the multi-tenant storage system, the additional data that has been added to the portion of the dataset containing non-sensitive data that is stored in the second location.

6. The apparatus of claim 5 wherein replicating, from the first location to the second location, the portion of the dataset containing the non-sensitive data further comprises identifying pages of data within the dataset to be replicated in dependence upon a tag associated with each page.

7. The apparatus of claim 5 wherein replicating, from the first location to the second location, the portion of the dataset containing the non-sensitive data further comprises identifying objects within the dataset to be replicated in dependence upon a tag associated with each object.

8. The apparatus of claim 5 wherein the first location includes a first volume and the second location includes a second volume.

9. The apparatus of claim 5 wherein the first location and the second location are included in a data lake.

10. A storage system, the storage system including a computer processor, a computer memory operatively coupled to the computer processor, the computer memory having disposed within it computer program instructions that, when executed by the computer processor, cause the storage system to carry out the steps of:

identifying, for a dataset stored at a first location in a multi-tenant storage system, a second location in the multi-tenant storage system for replicating a portion of the dataset, wherein the multi-tenant storage system restricts access to the first location to a first tenant and wherein the first location is inaccessible to a second tenant of the multi-tenant system and the second location is accessible by the second tenant of the multi-tenant system;

selectively replicating, from the first location to the second location within the multi-tenant storage system, only data chunks in the portion of the dataset that are tagged as containing non-sensitive data—but not the portion of the dataset that are tagged as containing sensitive data in the dataset, such that the sensitive data is not shared with the second tenant;

detecting that additional data has been added to the portion of the dataset containing non-sensitive data that is stored in the second location by monitoring I/O operations and detecting a write operation issued to the portion of the dataset containing non-sensitive data that is stored in the second location; and

replicating, from the second location to the first location within the multi-tenant storage system, the additional data that has been added to the portion of the dataset containing non-sensitive data that is stored in the second location.

11. The storage system of claim 10 further comprising computer program instructions that, when executed by the computer processor, cause the storage system to carry out the step of detecting that additional data has been added to the portion of the dataset containing the non-sensitive data stored in the second location.

12. The storage system of claim 10 wherein replicating, from the first location to the second location, the portion of the dataset containing the non-sensitive data further comprises identifying blocks of data within the dataset to be replicated in dependence upon a tag associated with each block.

13. The storage system of claim 10 wherein replicating, from the first location to the second location, the portion of the dataset containing the non-sensitive data further comprises identifying objects within the dataset to be replicated in dependence upon a tag associated with each object.

14. The storage system of claim 10 wherein the first location includes a first volume and the second location includes a second volume.

Assignments (3)
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Jun 11, 2025
From: BARCLAYS BANK PLC, AS ADMINISTRATIVE AGENT
To: PURE STORAGE, INC.
Reel/Frame 071558/0523 →
SECURITY INTEREST Recorded Aug 26, 2020
From: PURE STORAGE, INC.
To: BARCLAYS BANK PLC AS ADMINISTRATIVE AGENT
Reel/Frame 053867/0581 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 17, 2018
From: TRAN, RICHARD V.; JACOBS, EMMETT
To: PURE STORAGE, INC.
Reel/Frame 047796/0805 →
Cited By (3)
US 12,367,320 US 12,585,766 US 12,719,871