×

Sector map-based rapid data encryption policy compliance

  • US 9,477,614 B2
  • Filed: 10/03/2014
  • Issued: 10/25/2016
  • Est. Priority Date: 08/30/2011
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • receiving, by a computing device, a request to activate a policy for the computing device, the policy indicating that data written by the computing device to a storage volume after activation of the policy be encrypted;

    activating, in response to the request, the policy for the computing device, including;

    encrypting data written to the storage volume after returning an indication of compliance with the policy,using a sector map to identify one or more sectors of the storage volume that are not encrypted, the sector map identifying one or more sectors of the storage volume written to prior to the sector map being locked to prohibit changes to the sector map and the sector map including signatures of sectors that were written to the storage volume prior to the sector map being locked, data written to the storage volume after the sector map is locked being encrypted but at least some data written to the storage volume before the sector map is locked not being encrypted, andusing the sector map to determine whether to decrypt content of a sector of the storage volume in response to a request to read the content of the sector; and

    returning, in response to the request to activate the policy, the indication of compliance with the policy despite one or more sectors of the storage volume being unencrypted.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×