Patents by Inventor Lintu THOMAS
Lintu THOMAS has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 9324123Abstract: A key identifier for an encryption key repository is stored with customer data on a logical device. When the customer data is compressible, the key identifier is stored in space freed by compressing the customer data. When the customer data is not compressible, a portion of the customer data is copied to a key record in the key repository identified by the key identifier, and the key identifier overwrites the copied customer data.Type: GrantFiled: August 16, 2013Date of Patent: April 26, 2016Assignee: Brocade Communications Systems, Inc.Inventor: Lintu Thomas
-
Patent number: 8930558Abstract: A gateway includes a Fibre Channel (“FC”) port configured to couple to multiple FC targets, and an iSCSI port configured to couple to an iSCSI initiator. The iSCSI port is configured to facilitate communication between the FC targets and the iSCSI initiator, and proxy the multiple FC targets as a virtual iSCSI target. The iSCSI port is also configured to divide the Logical Unit Number (“LUN”) range into a plurality of subdivided LUN ranges, and associate the FC targets with the subdivided LUN ranges.Type: GrantFiled: July 9, 2008Date of Patent: January 6, 2015Assignee: Brocade Communications Systems, Inc.Inventors: Lintu Thomas, Suresh Vobbilisetty
-
Patent number: 8862899Abstract: In embodiments according to the present invention an encryption switch is used to authorize access to LUNs from client VMs present in the cloud provider network. The encryption switch includes responder side software for an authentication protocol and an agent in the client VM includes the requestor side of the authentication protocol. The certificate of the client is securely provided to the encryption switch, which associates the client VM with the LUN. The client private key is securely provided to the client VM, which retains it only non-persistently. The client VM requests LUN access and performs an authentication handshake with the encryption switch. If successful the client VM than has access to the LUN. As the original certificate is linked to the client, if the client is itself a VM, should the client be moved to a different host, the certificate moves with it and LUN accessibility is maintained.Type: GrantFiled: August 14, 2012Date of Patent: October 14, 2014Assignee: Brocade Communications Systems, Inc.Inventors: Aseem Rastogi, Lintu Thomas, Christopher Del Signore
-
Patent number: 8856548Abstract: An encryption switch which is used in a cloud environment to secure data on the LUNs used by the clients. A client provides a certificate to the cloud service. The encryption switch develops a cloud crypto domain (CCD) as a secure area, with the data at rest on the LUNs encrypted. The encryption switch develops a master key for client use in the CCD, which is provided to the client encrypted by the client's public key. Data encryption keys (DEKs) are created for each LUN and provided to the client. The DEKs are stored in a key vault by the client for use if needed. The cloud service provisions a client VM to be used with the encrypted LUN and develops a nexus between the LUN and the client VM for the encryption switch to use in data operations. The client communicates through the client VM to access the LUN.Type: GrantFiled: August 14, 2012Date of Patent: October 7, 2014Assignee: Brocade Communications Systems, Inc.Inventors: Christopher Del Signore, Aseem Rastogi, Lintu Thomas
-
Publication number: 20140164247Abstract: A key identifier for an encryption key repository is stored with customer data on a logical device. When the customer data is compressible, the key identifier is stored in space freed by compressing the customer data. When the customer data is not compressible, a portion of the customer data is copied to a key record in the key repository identified by the key identifier, and the key identifier overwrites the copied customer data.Type: ApplicationFiled: August 16, 2013Publication date: June 12, 2014Applicant: Brocade Communications Systems, Inc.Inventor: Lintu Thomas
-
Patent number: 8538027Abstract: A key identifier for an encryption key repository is stored with customer data on a logical device. When the customer data is compressible, the key identifier is stored in space freed by compressing the customer data. When the customer data is not compressible, a portion of the customer data is copied to a key record in the key repository identified by the key identifier, and the key identifier overwrites the copied customer data.Type: GrantFiled: October 16, 2009Date of Patent: September 17, 2013Assignee: Brocade Communications Systems, Inc.Inventor: Lintu Thomas
-
Publication number: 20130219169Abstract: An encryption switch which is used in a cloud environment to secure data on the LUNs used by the clients. A client provides a certificate to the cloud service. The encryption switch develops a cloud crypto domain (CCD) as a secure area, with the data at rest on the LUNs encrypted. The encryption switch develops a master key for client use in the CCD, which is provided to the client encrypted by the client's public key. Data encryption keys (DEKs) are created for each LUN and provided to the client. The DEKs are stored in a key vault by the client for use if needed. The cloud service provisions a client VM to be used with the encrypted LUN and develops a nexus between the LUN and the client VM for the encryption switch to use in data operations. The client communicates through the client VM to access the LUN.Type: ApplicationFiled: August 14, 2012Publication date: August 22, 2013Applicant: Brocade Communications Systems, Inc.Inventors: Christopher Del Signore, Aseem Rastogi, Lintu Thomas
-
Publication number: 20130212386Abstract: In embodiments according to the present invention an encryption switch is used to authorize access to LUNs from client VMs present in the cloud provider network. The encryption switch includes responder side software for an authentication protocol and an agent in the client VM includes the requestor side of the authentication protocol. The certificate of the client is securely provided to the encryption switch, which associates the client VM with the LUN. The client private key is securely provided to the client VM, which retains it only non-persistently. The client VM requests LUN access and performs an authentication handshake with the encryption switch. If successful the client VM than has access to the LUN. As the original certificate is linked to the client, if the client is itself a VM, should the client be moved to a different host, the certificate moves with it and LUN accessibility is maintained.Type: ApplicationFiled: August 14, 2012Publication date: August 15, 2013Applicant: Brocade Communications Systems, Inc.Inventors: Aseem Rastogi, Lintu Thomas, Christopher Del Signore
-
Publication number: 20110093720Abstract: A key identifier for an encryption key repository is stored with customer data on a logical device. When the customer data is compressible, the key identifier is stored in space freed by compressing the customer data. When the customer data is not compressible, a portion of the customer data is copied to a key record in the key repository identified by the key identifier, and the key identifier overwrites the copied customer data.Type: ApplicationFiled: October 16, 2009Publication date: April 21, 2011Applicant: BROCADE COMMUNICATIONS SYSTEMS, INC.Inventor: Lintu Thomas
-
Publication number: 20100011114Abstract: A gateway includes a Fibre Channel (“FC”) port configured to couple to multiple FC targets, and an iSCSI port configured to couple to an iSCSI initiator. The iSCSI port is configured to facilitate communication between the FC targets and the iSCSI initiator, and proxy the multiple FC targets as a virtual iSCSI target. The iSCSI port is also configured to divide the Logical Unit Number (“LUN”) range into a plurality of subdivided LUN ranges, and associate the FC targets with the subdivided LUN ranges.Type: ApplicationFiled: July 9, 2008Publication date: January 14, 2010Applicant: BROCADE COMMUNICATIONS SYSTEMS, INC.Inventors: Lintu THOMAS, Suresh VOBBILISETTY
-
Publication number: 20090234959Abstract: A gateway includes a Fibre Channel (“FC”) port configured to couple to a FC target, and an internet small computer system interface (“iSCSI”) port configured to couple to iSCSI initiators. The iSCSI port is configured to facilitate communication between the iSCSI initiators and the FC target, and proxy the iSCSI initiators as a single virtual FC initiator. The iSCSI port is also configured to divide the FC Origination Exchange Identifier (“OX_ID”) range into a plurality of subdivided communication identifier ranges, and associate the iSCSI initiators with the subdivided communication ranges.Type: ApplicationFiled: March 17, 2008Publication date: September 17, 2009Applicant: BROCADE COMMUNICATIONS SYSTEMS, INC.Inventor: Lintu THOMAS