IP Library Patent Application 19323366
Patent Application
App. No. 19/323,366

REPLICATING ENCRYPTED DATA USING MULTIPLE DATA REDUCTION TECHNIQUES

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
19/323,366
Abstract

Creating a replica of a storage system, including: receiving, by a first storage system from a computing device, data to be stored on the first storage system; reducing, by the first storage system, the data using one or more data reduction techniques; sending, from the first storage system to the second storage system, the reduced data, wherein the reduced data is encrypted; and sending, from the second storage system to a third storage system, the reduced data, wherein the reduced data is encrypted.

Claims (28)

1 . A method implemented by a computing device comprising a processor and a memory device, the method comprising:

replicating encrypted data from a first storage system to a second storage system using a first data reduction technique; and

replicating the encrypted data from the second storage system using a second data reduction technique that is different from the first data reduction technique.

2 . The method of claim 1 , wherein replicating the encrypted data from the first storage system to the second storage system further comprises deduplicating the encrypted data against other data stored in a deduplication pool prior to replication.

3 . The method of claim 1 , wherein the second storage system decrypts the encrypted data received from the first storage system and re-encrypts the data using a different encryption key prior to storing the data.

4 . The method of claim 1 , wherein the second data reduction technique comprises compressing the encrypted data using one or more compression algorithms.

5 . The method of claim 1 , wherein replicating the encrypted data from the second storage system comprises encrypting the data with an offload key that is distinct from a client-provided encryption key.

6 . The method of claim 1 , wherein metadata describing re-encryption details for the encrypted data is generated and transmitted along with the replicated encrypted data.

7 . The method of claim 1 , wherein replicating the encrypted data from the second storage system comprises transmitting the encrypted data to a third storage system, and the third storage system applies a data reduction technique different from the first and the second data reduction techniques.

8 . A system comprising:

a memory; and

a processing device operatively coupled to the memory, the processing device to:

replicate encrypted data from a first storage system to a second storage system using a first data reduction technique; and

replicate the encrypted data from the second storage system using a second data reduction technique that is different from the first data reduction technique.

9 . The system of claim 8 , wherein the processing device is further configured to deduplicate the encrypted data against other data stored in a deduplication pool prior to replication to the second storage system.

10 . The system of claim 8 , wherein the processing device is further configured to cause the second storage system to decrypt the encrypted data received from the first storage system and re-encrypt the data using a different encryption key prior to storing the data.

11 . The system of claim 8 , wherein the processing device is further configured to compress the encrypted data using one or more compression algorithms as the second data reduction technique.

12 . The system of claim 8 , wherein the processing device is further configured to encrypt the encrypted data replicated from the second storage system using an offload key that is distinct from a client-provided encryption key.

13 . The system of claim 8 , wherein the processing device is further configured to generate metadata describing re-encryption details for the encrypted data and transmit the metadata along with the replicated encrypted data.

14 . The system of claim 8 , wherein the processing device is further configured to transmit the encrypted data from the second storage system to a third storage system, the third storage system applying a data reduction technique different from the first and the second data reduction techniques.

15 . A non-transitory computer-readable medium storing instructions that, when executed by a processing device, cause the processing device to:

replicate encrypted data from a first storage system to a second storage system using a first data reduction technique; and

replicate the encrypted data from the second storage system using a second data reduction technique that is different from the first data reduction technique.

16 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further cause the processing device to deduplicate the encrypted data against other data stored in a deduplication pool prior to replication to the second storage system.

17 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further cause the processing device to cause the second storage system to decrypt the encrypted data received from the first storage system and re-encrypt the data using a different encryption key prior to storing the data.

18 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further cause the processing device to compress the encrypted data using one or more compression algorithms as the second data reduction technique.

19 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further cause the processing device to encrypt the encrypted data replicated from the second storage system using an offload key that is distinct from a client-provided encryption key.

20 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further cause the processing device to generate metadata describing re-encryption details for the encrypted data and transmit the metadata along with the replicated encrypted data.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 9, 2025
From: KARR, RONALD; SAPUNTZAKIS, CONSTANTINE; COLGROVE, JOHN
To: PURE STORAGE, INC.
Reel/Frame 072201/0433 →