×

Method and apparatus for deleting data upon expiration

  • US 7,559,088 B2
  • Filed: 02/04/2005
  • Issued: 07/07/2009
  • Est. Priority Date: 02/04/2004
  • Status: Active Grant
First Claim
Patent Images

1. A method for managing expiration operations of a backup management system to render expired backup data inaccessible, the method comprising:

  • generating backup data from original data contained in a primary data volume as indicated by a data backup policy, wherein the data backup policy governs generation, storage, and expiration of the backup data;

    storing the backup data in a backup storage unit and encrypting the backup data, wherein the backup data but not the original data is encrypted;

    storing a decryption key and an associated expiration time in an encryption storage unit for each of a plurality of backup data, wherein;

    the decryption key is for decrypting the encrypted data;

    the expiration time is indicated by the data backup policy and indicates the time at which each of the plurality of backup data should be rendered inaccessible;

    a first backup data and a second backup data of the plurality of backup data are assigned an identical decryption key when the first backup data and the second backup data have an identical expiration time;

    the first backup data and the second backup data are assigned distinct decryption keys when the first backup data and the second backup data have different expiration times; and

    deleting the decryption key at a time indicated by the expiration time for each of the plurality of backup data, such that an expired backup data becomes inaccessible even if the expired backup data is not deleted from the backup storage unit.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×