IP Library Granted Patent US 11,973,828
Granted Patent B2
US 11,973,828 · App. 17/367,854 · Granted Apr 30, 2024

Acquiring security information in a vast storage network

Inventors: Jason K. Resch (Chicago, IL); Gary W. Grube (Barrington Hills, IL); Timothy W. Markison (Mesa, AZ)
Assignee: Pure Storage, Inc.
H04L67/1097G06F11/1092G06F11/2094H04L67/52G06F2211/1028
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,973,828
App. No.
17/367,854
Granted
Apr 30, 2024
Kind
B2
Abstract

A storage network operates by: receiving a plurality of identifiers associated with a user including a user identifier and a group identifier; generating a plurality of key pairs associated with the plurality of user identifiers, the plurality of key pairs including a first key pair and a second key pair, the first key pair including a first public key and a first private key, and the second key pair including a second public key and a second private key; storing the plurality of key pairs; generating at least one request for a certificate; receiving at least one signed certificate in response to the at least one request; and accessing the storage network using the at least one signed certificate.

Claims (42)

1. A method for use in a storage network, the method comprising:

receiving a plurality of identifiers associated with a user including a user identifier and a group identifier;

generating a plurality of key pairs associated with the plurality of user identifiers, the plurality of key pairs including a first key pair and a second key pair, the first key pair including a first public key and a first private key, and the second key pair including a second public key and a second private key and wherein the first key pair is a global public-private key pair and the second key pair is a local public-private key pair;

storing the plurality of key pairs;

generating at least one request for a certificate;

receiving at least one signed certificate in response to the at least one request; and

accessing the storage network using the at least one signed certificate.

2. The method of claim 1 , wherein the plurality of identifiers received via a registration response.

3. The method of claim 2 , wherein the registration response is received in response to a registration request.

4. The method of claim 3 , wherein the registration request includes at least one of:

a storage network identifier;

a user device identifier;

a storage capacity indicator;

a status indicator; or

a storage availability indicator.

5. The method of claim 1 , wherein the storage network includes storage units configured to store encoded data slices in accordance with a dispersed error encoding.

6. The method of claim 1 , wherein the at least one request for the certificate includes a first request based on the first key pair.

7. The method of claim 6 , wherein the at least one signed certificate includes a first signed certificate based on the first key pair.

8. The method of claim 7 , wherein the at least one request for the certificate further includes a second request based on the second key pair.

9. The method of claim 8 , wherein the at least one signed certificate includes a second signed certificate based on the second key pair.

10. A computer comprises:

a memory that stores operational instructions; and

a processing module configured to respond to the operational instructions by performing operations that include:

receiving a plurality of identifiers associated with a user including a user identifier and a group identifier;

generating a plurality of key pairs associated with the plurality of user identifiers, the plurality of key pairs including a first key pair and a second key pair, the first key pair including a first public key and a first private key, the second key pair including a second public key and a second private key and wherein the first key pair is a global public-private key pair and the second key pair is a local public-private key pair;

storing the plurality of key pairs;

generating at least one request for a certificate;

receiving at least one signed certificate in response to the at least one request; and

accessing a storage network using the at least one signed certificate.

11. The computer of claim 10 , wherein the plurality of identifiers received via a registration response.

12. The computer of claim 11 , wherein the registration response is received in response to a registration request.

13. The computer of claim 12 , wherein the registration request includes at least one of:

a storage network identifier;

a user device identifier;

a storage capacity indicator;

a status indicator; or

a storage availability indicator.

14. The computer of claim 10 , wherein the storage network includes storage units configured to store encoded data slices in accordance with a dispersed error encoding.

15. The computer of claim 10 , wherein the at least one request for the certificate includes a first request based on the first key pair.

16. The computer of claim 15 , wherein the at least one signed certificate includes a first signed certificate based on the first key pair.

17. The computer of claim 16 , wherein the at least one request for the certificate further includes a second request based on the second key pair.

18. The computer of claim 17 , wherein the at least one signed certificate includes a second signed certificate based on the second key pair.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 7, 2021
From: RESCH, JASON K.; GRUBE, GARY W.; MARKISON, TIMOTHY W.
To: CLEVERSAFE, INC.
Reel/Frame 056770/0377 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 7, 2021
From: CLEVERSAFE, INC.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 056774/0629 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 7, 2021
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: PURE STORAGE, INC.
Reel/Frame 056776/0094 →
Continuity (6)
Continuation 16545322 · Aug 20, 2019
Continuation 15167482 · May 27, 2016
Continuation 14587781 · Dec 31, 2014
Continuation 13105135 · May 11, 2011
Provisional Application 61346203 · May 19, 2010
Related Publication 20210337026A1 · Oct 28, 2021