IP Library Granted Patent US 12,468,824
Granted Patent B2
US 12,468,824 · App. 18/623,869 · Granted Nov 11, 2025

Maintaining encryption during storage system replication

Inventors: Ronald Karr (Palo Alto, CA); Constantine Sapuntzakis (Palo Alto, CA); John Colgrove (Los Altos, CA)
Assignee: PURE STORAGE, INC.
G06F21/602G06F3/0604G06F3/0619G06F3/0622G06F3/0623G06F3/065G06F3/0659G06F3/067G06F3/0673G06F11/1453G06F11/1464G06F16/164G06F16/1748G06F16/1824G06F21/6218H04L9/0816H04L9/14H04L67/1097G06F21/107H04L2209/30
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,468,824
App. No.
18/623,869
Granted
Nov 11, 2025
Kind
B2
Abstract

Creating a replica of a storage system, including: receiving, by a first storage system from a computing device, data to be stored on the first storage system; reducing, by the first storage system, the data using one or more data reduction techniques; sending, from the first storage system to the second storage system, the reduced data, wherein the reduced data is encrypted; and sending, from the second storage system to a third storage system, the reduced data, wherein the reduced data is encrypted.

Claims (24)

1 . A method implemented by a computing device comprising a processor and a memory device, the method comprising:

identifying a second storage system that contains data that was stored on a first storage system that has become unavailable; and

retrieving, by a replacement storage system that replaces the first storage system, the data from the second storage system, wherein the data retrieved by the replacement storage system is encrypted.

2 . The method of claim 1 , wherein identifying a replacement storage system further comprises creating the replacement storage system.

3 . The method of claim 1 , wherein identifying a replacement storage system further comprises identifying the replacement storage system from amongst a plurality of storage systems.

4 . The method of claim 3 , wherein identifying the replacement storage system from amongst a plurality of storage systems uses one or more selection criterion.

5 . The method of claim 1 , wherein detecting that the first storage system has become unavailable comprises failing to receive a heartbeat response from the first storage system.

6 . The method of claim 1 , wherein detecting that the first storage system has become unavailable comprises receiving an error message from the first storage system.

7 . The method of claim 1 , wherein a path between the second storage system and the replacement storage system is an encrypted and authenticated link.

8 . The method of claim 1 , wherein the data that is sent to the replacement storage system is encrypted using an encryption key known by the first storage system.

9 . The method of claim 1 , wherein the second storage system decrypts the data that is received from the first storage system and re-encrypt the data prior to storing the data within the second storage system.

10 . The method of claim 1 , wherein the first storage system, the second storage system, and the replacement storage system are within a cloud-based storage system.

11 . A cloud-based storage system having a computer processor and memory device, the memory device storing instructions to cause the computer processor to perform steps to:

identify a second storage system that contains data that was stored on a first storage system that has become unavailable; and

retrieve, by a replacement storage system that replaces the first storage system, the data from the second storage system, wherein the data retrieved by the replacement storage system is encrypted.

12 . The cloud-based storage system of claim 11 , wherein identifying a replacement storage system further comprises creating the replacement storage system.

13 . The cloud-based storage system of claim 11 , wherein identifying a replacement storage system further comprises identifying the replacement storage system from amongst a plurality of storage systems.

14 . The cloud-based storage system of claim 13 , wherein identifying the replacement storage system from amongst a plurality of storage systems uses one or more selection criterion.

15 . The cloud-based storage system of claim 11 , wherein detecting that the first storage system has become unavailable comprises failing to receive a heartbeat response from the first storage system.

16 . The cloud-based storage system of claim 11 , wherein detecting that the first storage system has become unavailable comprises receiving an error message from the first storage system.

17 . The cloud-based storage system of claim 11 , wherein a path between the second storage system and the replacement storage system is an encrypted and authenticated link.

18 . The cloud-based storage system of claim 11 , wherein the data that is sent to the replacement storage system is encrypted using an encryption key known by the first storage system.

19 . The cloud-based storage system of claim 11 , wherein the second storage system decrypts the data that is received from the first storage system and re-encrypt the data prior to storing the data within the second storage system.

20 . The cloud-based storage system of claim 11 , wherein the first storage system, the second storage system, and the replacement storage system are within a cloud-based storage system.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 2, 2024
From: KARR, RONALD; SAPUNTZAKIS, CONSTANTINE; COLGROVE, JOHN
To: PURE STORAGE, INC.
Reel/Frame 066974/0292 →
Continuity (4)
Continuation 18064531 · Dec 12, 2022
Continuation 16937970 · Jul 24, 2020
Provisional Application 62944617 · Dec 6, 2019
Related Publication 20240303351A1 · Sep 12, 2024
References Cited (3)
US 20070130214A1 · Boyd · 2007 [cited by examiner]
US 20180241561A1 · Albertson · 2018 [cited by examiner]
US 20190332479A1 · Gao · 2019 [cited by examiner]