发明名称 Determining virtual adapter access controls in a computing environment
摘要 A control component of a computing environment initiates sending of request(s) over a network of the computing environment by an activated virtual adapter. The activated virtual adapter is hosted on a physical adapter of a host system coupled to the network, and is for use by a guest, hosted by the host system, in performing data input and output. The request(s) retrieve access control information from the network indicative of access control(s) enforced in controlling access by the activated virtual adapter to network component(s). The initiating provides indication(s) to the physical adapter, absent involvement of the guest, that the request(s) be sent by the virtual adapter. Based on the initiating, the control component obtains the access control information from the physical adapter, and determines, based on that information, the access control(s) being enforced by the network in controlling access by the activated virtual adapter to the network component(s).
申请公布号 US9374324(B2) 申请公布日期 2016.06.21
申请号 US201414212255 申请日期 2014.03.14
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 Kuch George P.;Friedrich Ralph;Sczepczenski Richard M.;Higgs Raymond M.;Moore Elizabeth A.;Pandich Johnathon R.
分类号 H04L12/931;H04L12/935;G06F9/455 主分类号 H04L12/931
代理机构 Heslin Rothenberg Farley & Mesiti P.C. 代理人 Chiu, Esq. Steven;Hulihan, Esq. Matthew M.;Heslin Rothenberg Farley & Mesiti P.C.
主权项 1. A computer program product, comprising: a non-transitory computer readable storage medium readable by a processing circuit and storing instructions for execution by the processing circuit for performing a method comprising: initiating, by a control component of a computing environment, sending of one or more requests over a network of the computing environment by an activated virtual adapter, the activated virtual adapter being hosted on a physical adapter of a host system coupled to the network, the activated virtual adapter for use by a guest, hosted by the host system, in performing data input and output, wherein the one or more requests retrieve access control information from the network, the access control information indicative of one or more access controls enforced by the network in controlling access by the activated virtual adapter to one or more network components of the network, and wherein the initiating comprises the control component providing one or more indications to the physical adapter, absent involvement of the guest, that the one or more requests be sent by the virtual adapter;based on the initiating, obtaining, by the control component, the access control information from the physical adapter; anddetermining, by the control component, based on the obtained access control information, the one or more access controls being enforced by the network in controlling access by the activated virtual adapter to the one or more network components, wherein the initiating initiates sending a first request, of the one or more requests, to determine remote ports of the network that are accessible to the activated virtual adapter, wherein the retrieved access control information comprises an indication of one or more remote ports of the network that are accessible to the activated virtual adapter, wherein the initiating initiates sending a second request, of the one or more requests, to log into a remote port of the indicated one or more remote ports accessible to the activated virtual adapter, and wherein the remote port is a remote port of storage device hosting a storage array, wherein a logical unit of the storage array is indicated by a logical unit number, and wherein a third request of the one or more requests comprises a logical unit number interrogation request.
地址 Armonk NY US