IP Library Granted Patent US 12,235,982
Granted Patent B2
US 12,235,982 · App. 17/876,328 · Granted Feb 25, 2025

Volume dependencies in a storage system

Inventors: Luis Pablo Pabón (Sturbridge, MA); Kshithij Iyer (Gujarat, IN); Chun-Yi Su (Kirkland, WA); Vijayan Satyamoorthy Srinivasa (San Jose, CA)
Assignee: Pure Storage, Inc.
G06F21/6218G06F21/554G06F2221/031
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,235,982
App. No.
17/876,328
Granted
Feb 25, 2025
Kind
B2
Abstract

An example method for monitoring volume dependencies for security threats comprises: detecting a request to perform an operation with respect to a volume included in a plurality of volumes included in a storage system; determining, based on a dependency mapping that specifies dependencies between the plurality of volumes, that performance of the operation would affect a dependency between the volume and one or more other volumes included in the plurality of volumes; and determining, based on the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes, that the request is possibly associated with a security threat against data stored by the storage system.

Claims (27)

1. A method comprising:

detecting, by one or more computer processors, a request to perform an operation with respect to a volume included in a plurality of volumes included in a storage system;

determining, by the one or more computer processors based on a dependency mapping that specifies dependencies between the plurality of volumes, that performance of the operation would affect a dependency between the volume and one or more other volumes included in the plurality of volumes;

determining, by the one or more computer processors based on the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes, that the request is possibly associated with a security threat against data stored on the volume by the storage system, wherein the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes is further based on an absence of a corresponding request to perform a corresponding operation with respect to the one or more other volumes; and

performing, by the one or more computer processors based on the determining that the request is possibly associated with a security threat, a remedial action with respect to at least one of the volume or a source of the request.

2. The method of claim 1 , wherein the operation comprises at least one of a deletion of the volume, an encryption of the volume, a renaming of the volume, or a moving of the volume.

3. The method of claim 1 , further comprising determining the dependency mapping between the plurality of volumes.

4. The method of claim 3 , wherein the determining the dependency mapping comprises receiving an input indicating that the one or more other volumes depend on the volume.

5. The method of claim 3 , wherein the determining the dependency mapping comprises determining an endpoint of an interaction between the volume and the one or more other volumes.

6. The method of claim 3 , wherein the determining the dependency mapping comprises determining that the one or more volumes depend on the volume based on a type of application associated with at least one of the volume and the one or more other volumes.

7. The method of claim 1 , wherein the dependency mapping comprises an immutable object of a container system.

8. A system comprising:

one or more memories storing computer-executable instructions; and one or more processors to execute the computer-executable instructions to:

detect a request to perform an operation with respect to a volume included in a plurality of volumes included in a storage system;

determine, based on a dependency mapping that specifies dependencies between the plurality of volumes, that performance of the operation would affect a dependency between the volume and one or more other volumes included in the plurality of volumes;

determine, based on the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes, that the request is possibly associated with a security threat against data stored on the volume by the storage system, wherein the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes is further based on an absence of a corresponding request to perform a corresponding operation with respect to the one or more other volumes; and

perform, based on the determining that the request is possibly associated with a security threat, a remedial action with respect to at least one of the volume or a source of the request.

9. The system of claim 8 , wherein the operation comprises at least one of a deletion of the volume, an encryption of the volume, a renaming of the volume, or a moving of the volume.

10. The system of claim 8 , wherein the one or more processors are further configured to execute the computer-executable instructions to determine the dependency mapping between the plurality of volumes.

11. The system of claim 10 , wherein the determining the dependency mapping comprises determining an endpoint of an interaction between the volume and the one or more other volumes.

12. The system of claim 10 , wherein the determining the dependency mapping comprises determining that the one or more volumes depend on the volume based on a type of application associated with at least one of the volume and the one or more other volumes.

13. A non-transitory, computer-readable medium storing computer instructions that, when executed, direct one or more processors of one or more computing devices to:

detect a request to perform an operation with respect to a volume included in a plurality of volumes included in a storage system;

determine, based on a dependency mapping that specifies dependencies between the plurality of volumes, that performance of the operation would affect a dependency between the volume and one or more other volumes included in the plurality of volumes;

determine, based on the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes, that the request is possibly associated with a security threat against data stored on the volume by the storage system, wherein the determining that the performance of the operation would affect the dependency between the volume and the one or more other volumes is further based on an absence of a corresponding request to perform a corresponding operation with respect to the one or more other volumes; and

perform, based on the determining that the request is possibly associated with a security threat, a remedial action with respect to at least one of the volume or a source of the request.

14. The computer-readable medium of claim 13 , wherein the instructions further direct the one or more processors to determine the dependency mapping between the plurality of volumes.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 28, 2022
From: PABÓN, LUIS PABLO; IYER, KSHITHIJ; SU, CHUN-YI; SRINIVASA, VIJAYAN SATYAMOORTHY
To: PURE STORAGE, INC., A DELAWARE CORPORATION
Reel/Frame 060662/0892 →
Continuity (1)
Related Publication 20240037259A1 · Feb 1, 2024
References Cited (97)
US 6631442B1 · Blumenau · 2003 [cited by applicant]
US 7131027B2 · Kodama · 2006 [cited by applicant]
US 7171423B2 · Nishikawa et al. · 2007 [cited by applicant]
US 7360030B1 · Georgiev · 2008 [cited by applicant]
US 7555623B2 · Asano et al. · 2009 [cited by applicant]
US 7636830B1 · Dalal et al. · 2009 [cited by applicant]
US 7647360B2 · Kano · 2010 [cited by applicant]
US 7730258B1 · Smith et al. · 2010 [cited by applicant]
US 8082407B1 · Chatterjee et al. · 2011 [cited by applicant]
US 8244998B1 · Krinke · 2012 [cited by applicant]
US 8285956B2 · Ozdemir · 2012 [cited by applicant]
US 8359429B1 · Sharma · 2013 [cited by applicant]
US 8438360B2 · Youngworth · 2013 [cited by applicant]
US 8479211B1 · Marshall et al. · 2013 [cited by applicant]
US 8719523B2 · Beeken et al. · 2014 [cited by applicant]
US 8732419B2 · Beeken et al. · 2014 [cited by applicant]
US 8935221B1 · Azier et al. · 2015 [cited by applicant]
US 9104885B1 · Strand · 2015 [cited by examiner]
US 9547445B2 · Faulkner et al. · 2017 [cited by applicant]
US 9600376B1 · Krinke et al. · 2017 [cited by applicant]
US 9632724B1 · Beeken et al. · 2017 [cited by applicant]
US 9720606B2 · Holt et al. · 2017 [cited by applicant]
US 9893972B1 · Olson et al. · 2018 [cited by applicant]
US 9959073B1 · Meiri · 2018 [cited by applicant]
US 10079842B1 · Brandwine et al. · 2018 [cited by applicant]
US 10126971B1 · Jain et al. · 2018 [cited by applicant]
US 10148675B1 · Brandwine · 2018 [cited by examiner]
US 10168407B2 · Benner et al. · 2019 [cited by applicant]
US 10210174B2 · Gowdappa et al. · 2019 [cited by applicant]
US 10268593B1 · Olson et al. · 2019 [cited by applicant]
US 10379774B2 · Jain et al. · 2019 [cited by applicant]
US 10394457B2 · Candelaria et al. · 2019 [cited by applicant]
US 10417190B1 · Donlan et al. · 2019 [cited by applicant]
US 10474372B1 · Olson et al. · 2019 [cited by applicant]
US 10506026B1 · Brown et al. · 2019 [cited by applicant]
US 10656869B1 · Greenwood et al. · 2020 [cited by applicant]
US 10664410B2 · Lesartre et al. · 2020 [cited by applicant]
US 10671525B2 · Fischer-Toubol et al. · 2020 [cited by applicant]
US 10678554B2 · S S et al. · 2020 [cited by applicant]
US 10698631B2 · Beeken et al. · 2020 [cited by applicant]
US 10719274B2 · Piduri et al. · 2020 [cited by applicant]
US 10795776B2 · Sipka et al. · 2020 [cited by applicant]
US 10949108B2 · Jain et al. · 2021 [cited by applicant]
US 11140224B2 · Padiyar et al. · 2021 [cited by applicant]
US 11144202B2 · Satoyama et al. · 2021 [cited by applicant]
US 11243918B2 · Gowdappa et al. · 2022 [cited by applicant]
US 11372667B2 · Dhruvakumar et al. · 2022 [cited by applicant]
US 11704408B1 · Ciubotariu · 2023 [cited by examiner]
US 20040088417A1 · Bober et al. · 2004 [cited by applicant]
US 20040199526A1 · Nishikawa et al. · 2004 [cited by applicant]
US 20060101221A1 · Harada · 2006 [cited by applicant]
US 20070053553A1 · Gerritsen et al. · 2007 [cited by applicant]
US 20110099342A1 · Ozdemir · 2011 [cited by applicant]
US 20110125951A1 · Youngworth · 2011 [cited by applicant]
US 20110289059A1 · Harris et al. · 2011 [cited by applicant]
US 20120030439A1 · Engelsiepen · 2012 [cited by examiner]
US 20120102286A1 · Holt et al. · 2012 [cited by applicant]
US 20120191654A1 · Beck · 2012 [cited by applicant]
US 20120221803A1 · Stabrawa · 2012 [cited by applicant]
US 20130086342A1 · Beeken et al. · 2013 [cited by applicant]
US 20130086343A1 · Beeken · 2013 [cited by examiner]
US 20130117505A1 · Fiske et al. · 2013 [cited by applicant]
US 20130275673A1 · Tiwari et al. · 2013 [cited by applicant]
US 20140281308A1 · Lango · 2014 [cited by examiner]
US 20140304239A1 · Lewis et al. · 2014 [cited by applicant]
US 20140351208A1 · Jenkins et al. · 2014 [cited by applicant]
US 20150199136A1 · Faulkner et al. · 2015 [cited by applicant]
US 20150370816A1 · Anand et al. · 2015 [cited by applicant]
US 20160085481A1 · Antony et al. · 2016 [cited by applicant]
US 20160091589A1 · Benner et al. · 2016 [cited by applicant]
US 20160246501A1 · Krishnamurthy et al. · 2016 [cited by applicant]
US 20160259742A1 · Faulkner et al. · 2016 [cited by applicant]
US 20170102881A1 · Beeken et al. · 2017 [cited by applicant]
US 20170177611A1 · Gowdappa et al. · 2017 [cited by applicant]
US 20170371749A1 · Devitt-Carolan et al. · 2017 [cited by applicant]
US 20180024891A1 · Wu et al. · 2018 [cited by applicant]
US 20180124099A1 · St. Pierre · 2018 [cited by applicant]
US 20180157600A1 · Lesartre et al. · 2018 [cited by applicant]
US 20180239613A1 · S S et al. · 2018 [cited by applicant]
US 20180260128A1 · Piduri et al. · 2018 [cited by applicant]
US 20180284984A1 · Candelaria et al. · 2018 [cited by applicant]
US 20180373628A1 · Fischer-Toubol · 2018 [cited by examiner]
US 20190042149A1 · Kesler · 2019 [cited by examiner]
US 20190050148A1 · Jain et al. · 2019 [cited by applicant]
US 20190138399A1 · Sipka et al. · 2019 [cited by applicant]
US 20190138502A1 · Gowdappa et al. · 2019 [cited by applicant]
US 20190250825A1 · Beeken et al. · 2019 [cited by applicant]
US 20190272102A1 · Jain et al. · 2019 [cited by applicant]
US 20200081794A1 · Wu et al. · 2020 [cited by applicant]
US 20200150866A1 · Satoyama et al. · 2020 [cited by applicant]
US 20210132870A1 · Bono et al. · 2021 [cited by applicant]
US 20210224162A1 · Karnik et al. · 2021 [cited by applicant]
US 20210224379A1 · Pientka · 2021 [cited by examiner]
US 20210281642A1 · Padiyar et al. · 2021 [cited by applicant]
US 20210397356A1 · Cain · 2021 [cited by applicant]
US 20220021581A1 · Cantwell · 2022 [cited by examiner]
US 20220171537A1 · Szczepanik et al. · 2022 [cited by applicant]