IP Library Granted Patent US 11,822,824
Granted Patent B2
US 11,822,824 · App. 18/149,363 · Granted Nov 21, 2023

Processing access anomalies in a storage network

Inventor: Jason K. Resch (Warwick, RI)
Assignee: Pure Storage, Inc.
G06F3/0659G06F3/061G06F3/064G06F3/067G06F3/0619G06F3/0647G06F3/0653G06F3/0689G06F11/1076
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,822,824
App. No.
18/149,363
Granted
Nov 21, 2023
Kind
B2
Abstract

A processing system operates by: storing a data segment as a set of encoded data slices, wherein the set of encoded data slices are dispersed storage error encoded and stored in at least one storage unit of a storage network; receiving, from a requestor, an access request associated with the data segment; detecting an access anomaly associated with the access request, the access anomaly having one of a plurality of anomaly types; denying the access request in response to detecting the access anomaly; generating, based on the one of the plurality of anomaly types, an anomaly detection indicator identifying the requestor; and sending the anomaly detection indicator to other devices of the storage network.

Claims (48)

1. A method for execution by a computing device that includes a processor, the method comprising:

storing a data segment as a set of encoded data slices, wherein the set of encoded data slices are dispersed storage error encoded and stored in at least one storage unit of a storage network;

receiving, from a requestor, an access request associated with the data segment;

detecting an access anomaly associated with the access, the access anomaly request having an unfavorable access pattern;

denying the access request in response to detecting the access anomaly;

generating, based on the unfavorable access pattern, an anomaly detection indicator identifying the requestor; and

sending the anomaly detection indicator to other devices of the storage network.

2. The method of claim 1 , wherein the method further comprises:

initiating a secondary authentication process with the requestor;

receiving a secondary authentication response from the requestor; and

processing the access request when the secondary authentication response is favorable.

3. The method of claim 1 , wherein the method further comprises:

storing the access request in a local memory; and

associating the access request with at least one other access request, wherein the at least one other access request includes a request for the data segment.

4. The method of claim 3 , wherein processing the access request includes:

extracting the at least one other access request associated with the access request; and

processing the access request and the at least one other access request in a sequence in accordance with a request type of the access request.

5. The method of claim 4 , wherein the access request and the at least one other access request include a write request, a commit request, and a finalize request of a three-phase storage process.

6. The method of claim 1 , wherein the access request is received via a dispersed storage and task (DST) processing unit that received the access request from the requestor.

7. The method of claim 1 , wherein detecting the access anomaly includes detecting one of a plurality of anomaly types.

8. The method of claim 1 , wherein detecting the access anomaly includes receiving a second anomaly detection indicator from another storage unit.

9. The method of claim 1 , wherein the anomaly detection indicator includes the access request.

10. The method of claim 1 , wherein another storage unit receives another access request associated with the requestor corresponding to the access request and queues the another access request in response to receiving the anomaly detection indicator.

11. A processing system of a storage network comprises:

at least one processor;

a memory that stores operational instructions that, when executed by the at least one processor, cause the processing system to perform operations that include:

storing a data segment as a set of encoded data slices, wherein the set of encoded data slices are dispersed storage error encoded and stored in at least one storage unit of a storage network;

receiving, from a requestor, an access request associated with the data segment;

detecting an access anomaly associated with the access, the access anomaly request having an unfavorable access pattern;

denying the access request in response to detecting the access anomaly;

generating, based on the unfavorable access pattern , an anomaly detection indicator identifying the requestor; and

sending the anomaly detection indicator to other devices of the storage network.

12. The processing system of claim 11 , wherein the operations further include:

initiating a secondary authentication process with the requestor;

receiving a secondary authentication response from the requestor; and

processing the access request when the secondary authentication response is favorable.

13. The processing system of claim 11 , wherein the operations further include:

storing the access request in a local memory; and

associating the access request with at least one other access request, wherein the at least one other access request includes a request for the data segment.

14. The processing system of claim 13 , wherein processing the access request includes:

extracting the at least one other access request associated with the access request; and

processing the access request and the at least one other access request in a sequence in accordance with a request type of the access request.

15. The processing system of claim 14 , wherein the access request and the at least one other access request include a write request, a commit request, and a finalize request of a three-phase storage process.

16. The processing system of claim 11 , wherein the access request is received via a dispersed storage and task (DST) processing unit that received the access request from the requestor.

17. The processing system of claim 11 , wherein detecting the access anomaly includes detecting one of a plurality of anomaly types.

18. The processing system of claim 11 , wherein detecting the access anomaly includes receiving a second anomaly detection indicator from another storage unit.

19. The processing system of claim 11 , wherein the anomaly detection indicator includes the access request.

20. The processing system of claim 11 , wherein another storage unit receives another access request associated with the requestor corresponding to the access request and queues the another access request in response to receiving the anomaly detection indicator.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 5, 2023
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: PURE STORAGE, INC.
Reel/Frame 062293/0189 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 4, 2023
From: RESCH, JASON K.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 062271/0560 →
Continuity (7)
Continuation 17301470 · Apr 5, 2021
Continuation 16554939 · Aug 29, 2019
Continuation 15841863 · Dec 14, 2017
Continuation In Part 15837705 · Dec 11, 2017
Continuation In Part 15006735 · Jan 26, 2016
Provisional Application 62140861 · Mar 31, 2015
Related Publication 20230153033A1 · May 18, 2023