发明名称 System and method for policy based control of NAS storage devices
摘要 A system and method for providing policy-based data management and control on a NAS device deployed on a network and having event enabling framework software. When a user makes a request to store, read, or manipulate data on the NAS device, the NAS device provides an indication of this request to a management tool running on a remote system through the event enabling framework software. The management tool reviews the request in light of its previously established policy-based data storage management configuration and subsequently informs the NAS device, via the event enabling framework software, to either accept or not accept the user's request to store, read or modify data on the NAS device.
申请公布号 US8769633(B1) 申请公布日期 2014.07.01
申请号 US201213712084 申请日期 2012.12.12
申请人 发明人 Backa Bruce R.
分类号 H04L29/06;G06F21/00 主分类号 H04L29/06
代理机构 Sampson & Associates, P.C. 代理人 Sampson & Associates, P.C.
主权项 1. A system for providing policy-based data management and control of a network attached storage (NAS) device, comprising: at least one network attached storage device, coupled to a network and including a data storage device configured for storing data; wherein the network attached storage device is configured for receiving and responding to the user requests using a connectionless protocol modified to provide connection information; event enabling framework software, said network attached storage device event enabling framework software coupled to said at least one network attached storage device and to a network attached storage device policy based management tool, and configured for receiving user requests from said network attached storage device and for passing said received user requests for access to or storing data on said network attached storage device to a network attached storage device policy based management tool, said network attached storage device policy based management tool configured for determining whether a user request for access to or storing data on said network attached storage device is compliant with one or more established policies, said event enabling framework software responsive to said determination of whether or not said user will be authorized to perform said requested access to or storage of data on said network attached storage device received from said network attached storage device policy based management tool, for providing an indication of said determination to said network attached storage device; a network attached storage device policy based management tool, coupled to said network and to said event enabling framework software and operating on a device other than said at least one network attached storage device, and having one or more configurable parameters defining said one or more established policies, for controlling user access to and storing data on said network attached storage device, and configured for allowing a user to enter said network attached storage device established policies, and responsive to said indication from said event enabling framework software of a user requesting to access or to store data on said network attached storage device, for providing an indication to said event enabling framework software of whether or not said user is authorized to perform said requested access to or storage of data on said network attached storage device; a database communicably coupled to said management tool; and said management tool configured to capture audit information related to said received user requests and to said determination, and further configured to store the captured audit information in said database.
地址