AbstractA file format for a serverless distributed file system is composed of two parts: a primary data stream and a metadata stream. The data stream contains a file that is divided into multiple blocks. Each block is encrypted using a hash of the block as the encryption key. The metadata stream contains a header, a structure for indexing the encrypted blocks in the primary data stream, and some user information. The indexing structure defines leaf nodes for each of the blocks. Each leaf node consists of an access value used for decryption of the associated block and a verification value used to verify the encrypted block independently of other blocks. In one implementation, the access value is formed by hashing the file block and encrypting the resultant hash value using a randomly generated key. The key is then encrypted using the user's key as the encryption key. The verification value is formed by hashing the associated encrypted block using a one-way hash function. The file format supports verification of individual file blocks without knowledge of the randomly generated key or any user keys. To verify a block of the file, the file system traverses the tree to the appropriate leaf node associated with a target block to be verified. The file system hashes the target block and if the hash matches the access value contained in the leaf node, the block is authentic. Other References- Evans, Matt, “FTFS: The Design of A Fault Tolerant Distributed File-System,” May 2000, pp. 1-49.
- Cheriton, David R. and Mann, Timothy P., “Decentralizing a Global Naming Service for Improved Performance and Fault Tolerance,” ACM Transactions on Computer Systems, vol. 7, No. 2, May 1989, pp. 147-183.
- E. Adar and B. Huberman, “Free Riding on Gnutella,” Xerox PARC Technical Report, pp. 1-22, Aug. 2000.
- R. Anderson, “The Eternity Service,” PRAGO-CRYPT, pp. 242-252, Oct. 1996.
- T. Anderson, M. Dahlin, J. Neefe, D. Patterson, D. Roselli, and R. Wang, “Serverless Network File Systems,” 15th Symposium on Operating Systems Principles, pp. 109-126, Dec. 1995.
- W. Boloky, J. Douceur, D. Ely, M. Theimer, “Feasibility of a Serverless Distributed File System Deployed on an Existing Set of Desktop PCs”, Proceedings of the International Conference on Measurement and Modeling of Computer Systems, pp. 34-43, Jun. 17-21, 2000.
- W. Bolosky, S. Corbin, D. Goebel, and J. Douceur, “Single Instance Storage in Windows® 2000,” Proceedings of the 4th USENIX Windows Systems Symposium, pp. 13-24, Aug. 2000.
- G. Cabri, A. Corradi, F. Zambonelli, “Experience of Adaptive Replication in Distributed File Systems”, 22nd IEEE EUROMICRO, 10 pages, Sep. 1996.
- M. Castro and B. Liskov, “Practical Byzantine Fault Tolerance,” Proceedings of the Third Symposium on Operating Systems Design and Implementation, 14 pages, Feb. 1999.
- M. Castro and B. Liskov, “Proactive Recovery in a Byzantine-Fault-Tolerant System,” 4th Symposium on Operating Systems Design and Implementation, pp. 273-287, Oct. 2000.
- I. Clarke, O. Sandberg, B. Wiley, and T. Hong, “Freenet: A Distributed Anonymous Information Storage and Retrieval System,” ICSI Workshop on Design Issues in Anonymity and Unobservability, 21 pages, Jul. 2000.
- J. Douceur and W. Bolosky, “A Large-Scale Study of File-System Contents,” SIGMETRICS, pp. 59-70, May 1999.
- L. Fan, P. Cao, J. Almeida, and A. Broder, “Summary Cache: A Scalable Wide-Area Web Cache Sharing Protocol”, ACM SIGCOMM, pp. 254-265, 1998.
- A. Goldberg and P. Yianilos, “Towards an Archival Intermemory,” IEEE International Forum on Research and Technology Advances in Digital Libraries, pp. 147-156, Apr. 1998.
- J. Howard, M. Kazar, S. Menees, D. Nichols, M. Satyanarayanan, R. Sidebotham, and M. West, “Scale and Performance in a Distributed File System,” ACM Transactions on Computer Systems, pp. 51-81, Feb. 1988.
- J. Kistler and M. Satyanarayanan, “Disconnected Operation in the Coda File System,” ACM Transactions on Computer Systems, vol. 10, No. 1, pp. 3-25, Feb. 1992.
- J. Kubiatowicz et al., “OceanStore: An Architecture for Global-Scale Persistent Storage,” Proceedings of the Ninth International Conference on Architectural Support for Programming Languages and Operating Systems, 12 pages, Nov. 2000.
- E. Lee and C. Thekkath, “Patel: Distributed Virtual Disks, Seventh International Conference on Architectural Support for Programming Languages and Operating Systems”, pp. 84-92, Oct. 1996.
- D. Maziéres, M. Kaminsky, M. F. Kaashoek, and E. Witchel, “Seperating Key Management from File System Security”, 17th ACM Symposium on Operating Systems Principles, pp. 124-139, Dec. 1999.
- D.L. McCue, M.C. Little, “Computing Replica Placement in Distributed Systems”, IEEE Second Workshop on Replicated Data, pp. 58-61, Nov. 1992.
- M. K. McKusick, W. N. Joy, S. J. Leffler, and R. S. Fabry, “A Fast File System for Unix,” ACM Transactions on Computer Systems, vol. 2, No. 3, pp. 181-197, Aug. 1984.
- The OceanStore Project web pages, http://oceanstore.cs.berkeley.edu/info/overview.html, 2 pages, last modified Jul. 8, 2002.
- C. Plaxton, R. Rajaraman, and A Richa, “Accessing Nearby Copies of Replicated Objects in a Distributed Environment”, Proceedings of the 9th Annual ACM Symposium on Parallel Algorithms and Architectures, pp. 311-320, 1997.
- C. Plaxton, R. Rajaraman, and A Richa, “Accessing Nearby Copies of Replicated Objects in a Distributed Environment”, Theory of Computing Systems, pp. 32:241-280, 1999.
- R. T. Reich and D. Albee, “S.M.A.R.T. Phase-II,” No. WP-9803-001, Maxtor Corporation, 3 pages, Feb. 1998.
- J. D. Saltzer and M. D. Schroeder. “The Protection of Information in Computer Systems,” Proceedings of the IEEE 63(9), pp. 1278-1308, Sep. 1975.
- R. Sandberg, D. Goldberg, S. Kleiman, D. Walsh, and B. Lyon, “Design and Implementation of the Sun Network Filesystem,” Summer USENIX Conference, pp. 119-130, Jun. 1985.
- A. Sweeny, D. Doucette, W. Hu, C. Anderson, M. Nishimoto, and G. Peck, “Scalability in the XFS File System,” USENIX Annual Technical Conference, 15 pages, 1996.
- C. Thekkath, T. Mann, and E. Lee, “Frangipani: A Scalable Distributed File System,” 16th ACM Symposium on Operating Systems Principles, pp. 224-237, 1997.
- W. Vogels, “File system usage in Windows NT 4.0,” 17th ACM Symposium on Operating Systems Principles, pp. 93-109, Dec. 1999.
- J. Wylie, M. Bigrigg, J. Strunk, G. Ganger, H. Kiliççöte, and P. Khosla, “Survivable Information Storage Systems,” IEEE Computer, pp. 33(8):61-68, Aug. 2000.
- ISU: http://www.isu.edu/departments/comcom/unix.workshop/shell.html 3 pps.
| InventorsAssigneeApplication No. 09814259 filed on 03/21/2001 US Classes:713/171, Having key exchange713/189, DATA PROCESSING PROTECTION USING CRYPTOGRAPHY380/211, Interactive TV709/213, MULTICOMPUTER DATA TRANSFERRING VIA SHARED MEMORY380/277, KEY MANAGEMENT713/170, Authentication of an entity and a message725/142, Having particular storage feature713/190, Computer instruction/address encryption713/152Application layer securityField of Search713/171, Having key exchange713/189, DATA PROCESSING PROTECTION USING CRYPTOGRAPHY380/259, Symmetric key cryptography380/37Block/data stream encipheringExaminers Primary: Wright, Norman M.Attorney, Agent or FirmUS Patent References5317728, Storage management of a first file system using a second file system containing surrogate files and catalog management information Issued on: 05/31/1994 Inventor: Tevis, et al.5452447, Method and apparatus for a caching file server Issued on: 09/19/1995 Inventor: Nelson, et al.5588147, Replication facility Issued on: 12/24/1996 Inventor: Neeman, et al.5778395, System for backing up files from disk volumes on multiple nodes of a computer network Issued on: 07/07/1998 Inventor: Whiting, et al.5870474, Method and apparatus for providing conditional access in connection-oriented, interactive networks with a multiplicity of service providers Issued on: 02/09/1999 Inventor: Wasilewski, et al.5873085, Virtual file management system Issued on: 02/16/1999 Inventor: Enoki, et al.5907673, Checkpointing computer system having duplicated files for executing process and method for managing the duplicated files for restoring the process Issued on: 05/25/1999 Inventor: Hirayama, et al.5991771, Transaction synchronization in a disconnectable computer and network Issued on: 11/23/1999 Inventor: Falls, et al.6026474, Shared client-side web caching using globally addressable memory Issued on: 02/15/2000 Inventor: Carter, et al.6067545Resource rebalancing in networked computer systems Issued on: 05/23/2000 Inventor: WolffInternational Class G06F 11/30
|