Cloud-Based User Authorization Control For Storage System Access

    公开(公告)号:US20230068106A1

    公开(公告)日:2023-03-02

    申请号:US18053402

    申请日:2022-11-08

    Abstract: Providing authorization and authentication in a cloud for a user of a storage array includes: receiving, by a storage array access module from a client-side array services module, a token representing authentication of user credentials and authorized access privileges defining one or more storage array services accessible by the user, where the token is generated by a cloud-based security module upon authentication of the user credentials and identification of authorized access privileges for the user; receiving, by the storage array access module from the user, a user access request to one or more storage array services; and determining, by the storage array access module, whether to grant the user access request in dependence upon the authorized access privileges represented by the token.

    MANAGING A STORAGE ARRAY USING CLIENT-SIDE SERVICES
    2.
    发明申请
    MANAGING A STORAGE ARRAY USING CLIENT-SIDE SERVICES 有权
    使用客户端服务管理存储阵列

    公开(公告)号:US20160352720A1

    公开(公告)日:2016-12-01

    申请号:US14726442

    申请日:2015-05-29

    CPC classification number: H04L67/10 H04L63/0807 H04L67/1097

    Abstract: Managing a storage array includes: receiving, by a client-side array services module from a cloud-based security module through data communications on a wide area network, a token representing authentication of user credentials; and managing, by the client-side array services module, a storage array only through data communications on a local area network, including sending, to the storage array, the token with a management instruction.

    Abstract translation: 管理存储阵列包括:由客户端阵列服务模块通过广域网上的数据通信从基于云的安全模块接收表示用户凭证的认证的令牌; 并且由客户端阵列服务模块仅通过局域网上的数据通信来管理存储阵列,包括通过管理指令向存储阵列发送令牌。

    Using Cloud Services To Provide Secure Access To A Storage System

    公开(公告)号:US20220086219A1

    公开(公告)日:2022-03-17

    申请号:US17536969

    申请日:2021-11-29

    Abstract: Managing a storage system, including: receiving, over a first network, user credentials associated with an access request to a storage system; sending, over a second network to a cloud-based security module, the user credentials; receiving, over the second network from the cloud-based security module, a token representing that the user credentials were successfully authenticated by the cloud-based security module; and sending, over the first network to the storage system, the token with a management instruction, wherein the storage system is not coupled for data communications to the cloud-based security module.

Patent Agency Ranking