IP Library › Granted Patent US 11,372,988
Granted Patent B2
US 11,372,988 · App. 16/451,889 · Granted Jun 28, 2022

Secure data deletion and sanitization in distributed file systems

Inventors: Nicholas Wayne Barrett (Oro Valley, AZ); Gregory Andrew Early (Tucson, AZ)
Assignee: Raytheon Company
G06F21/6209G06F16/162G06F16/183G06F21/602H04L9/30H04L9/3242
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,372,988
App. No.
16/451,889
Granted
Jun 28, 2022
Kind
B2
Abstract

A system deletes and sanitizes files in a distributed file system. The system also randomizes rotation of data in a distributed file system.

Claims (39)

1. A process comprising:

receiving, into a computer processor in a library in a distributed file system, a command to delete a file, wherein the file is partitioned into a plurality of partitions at a plurality of locations in the distributed file system;

determining, via the library in the distributed file system, all of the plurality of locations of the plurality of partitions of the file in the distributed file system; and

executing, within the computer processor in the library without using an external script or other external software, the command to delete the file;

wherein the command to delete the file comprises:

for each of the plurality of partitions at the plurality of locations of the file:

(a) obtaining a pointer to the partition;

(b) creating a plurality of blocks of randomized and hashed data;

(c) writing the plurality of blocks of randomized and hashed data to the partition;

(d) repeating operations (b) and (c) a plurality of times; and

(e) removing the pointer to the partition;

wherein the command to delete the file received in the library is modified to execute operations (a)-(e), and the modified command is redirected to a second library for execution;

wherein the randomized and hashed data are generated using a single use key; and

wherein the single use key is generated before each execution of operation (d).

2. The process of claim 1 , wherein the pointer to the partition points to the beginning of the partition.

3. The process of claim 1 , wherein the plurality of locations of the file comprises one or more of a server, a disk drive, a disk within the disk drive, and a sector on the disk.

4. The process of claim 1 , wherein the randomized and hashed data are generated using a persistent public key.

5. The process of claim 1 , comprising refraining from writing real data to the plurality of partitions of the file until after the operation (d) has been executed for each of the plurality of partitions.

6. A system comprising:

a computer processor; and

a non-transitory computer readable storage medium coupled to the computer processor;

wherein the computer processor comprises instructions that when executed by the computer process execute a process comprising:

receiving, into the computer processor in a library in a distributed file system, a command to delete a file, wherein the file is partitioned into a plurality of partitions at a plurality of locations in the distributed file system;

determining, via the library in the distributed file system, all of the plurality of locations of the plurality of partitions of the file in the distributed file system; and

executing, within the computer processor in the library without using an external script or other external software, the command to delete the file;

wherein the command to delete the file comprises:

for each of the plurality of partitions at the plurality of locations of the file:

(a) obtaining a pointer to the partition;

(b) creating a plurality of blocks of randomized and hashed data;

(c) writing the plurality of blocks of randomized and hashed data to the partition;

(d) repeating operations (b) and (c) a plurality of times; and

(e) removing the pointer to the partition;

wherein the command to delete the file received in the library is modified to execute operations (a)-(e), and the modified command is redirected to a second library for execution;

wherein the randomized and hashed data are generated using a single use key; and

wherein the single use key is generated before each execution of operation (d).

7. The system of claim 6 , wherein the pointer to the partition points to the beginning of the partition.

8. The system of claim 6 , wherein the plurality of locations of the file comprises one or more of a server, a disk drive, a disk within the disk drive, and a sector on the disk.

9. The system of claim 6 , wherein the randomized and hashed data are generated using a persistent public key.

10. The system of claim 6 , comprising refraining from writing real data to the plurality of partitions of the file until after the operation (d) has been executed for each of the plurality of partitions.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 25, 2019
From: BARRETT, NICHOLAS WAYNE; EARLY, GREGORY ANDREW
To: RAYTHEON COMPANY
Reel/Frame 049581/0863 →
Continuity (1)
Related Publication 20200410121A1 · Dec 31, 2020