首页>
外国专利>
Access control to block storage devices for a shared disk based file system
Access control to block storage devices for a shared disk based file system
展开▼
机译:用于基于共享磁盘的文件系统的块存储设备的访问控制
展开▼
页面导航
摘要
著录项
相似文献
摘要
For enhanced access control, a client includes a token in each read or write command sent to a block storage device. The block storage device evaluates the token to determine whether or not read or write access is permitted at a specified logical block address. For example, the token is included in the logical block address field of a SCSI read or write command. The client may compute the token as a function of the logical block address of a data block to be accessed, or a metadata server may include the token in each block address of each extent reported to the client in response to a metadata request. For enhanced security, the token also is a function of a client identifier, a logical unit number, and access rights of the client to a particular extent of file system data blocks.
展开▼