US 12,072,992 B2
Data security classification for storage systems using security level descriptors
Anand Rudrabhatla, Pleasanton, CA (US); and George Mathew, Belmont, CA (US)
Assigned to EMC IP Holding Company LLC, Hopkinton, MA (US)
Filed by EMC IP Holding Company LLC, Hopkinton, MA (US)
Filed on Jul. 16, 2021, as Appl. No. 17/377,859.
Prior Publication US 2023/0018820 A1, Jan. 19, 2023
Int. Cl. G06F 21/62 (2013.01); G06F 12/14 (2006.01)
CPC G06F 21/6209 (2013.01) [G06F 12/1491 (2013.01); G06F 2212/1052 (2013.01); G06F 2221/2145 (2013.01)] 19 Claims
OG exemplary drawing
 
1. A computer-implemented method of storing data using a security classification, comprising:
examining a file through a parser examining key words of content in the file and using a dictionary to automatically set a security level attribute for the file based on a recognition of words indicating security requirements of the file;
tagging a security level descriptor corresponding to the security level attribute to the file through a security level tagging process, the security level descriptor indicating an amount of access restriction and protection based on a privacy need of content in the file, and provided to the file during storage in a storage device selected from among a plurality of storage devices, and wherein the security level descriptor is assigned to the file through a metadata definition as an extended attribute for the file, and that encodes at least one of a security level of file storage or a storage policy applied to the file;
organizing the plurality of storage devices into two or more tiers, each tier having a security level corresponding to its suitability to protect data of different privacy levels;
storing the file in a storage device of a tier having a security level corresponding to the security level descriptor of the file.