摘要:
Appropriate control is performed for data blocks and data block groups in a file.A file system having various functions provides an upper program with an interface for changing size, storage position and processing method in each function of extents being data block management units in a file. The file system can improve the effects aimed by the respective functions by implementing the extent configuration and processing optimized for the various functions of the file system, based on the instruction from the upper program.
摘要:
A wide area distributed storage system checks for erasure of WORM (Write-Once Read-Many) files. A first management server acquires a storage location of a second file on a second disk apparatus which corresponds to a first file stored on a first disk apparatus, of which a retention period has expired, and queries a second management server about a retention period of the second file whose storage location has been acquired. The queried second management server refers to a file table and indicates existence or non-existence of the second file on the second disk apparatus and whether the retention period of the second file has expired or not. The system avoids unintended deletion of files by querying a plurality of file management servers about whether a file with an expired retention period should be set as a deletable object.
摘要:
Provided is a storage system for solving the problem in that, when the registration of a nonexistent user is deleted, only a system administrator can access files that the user left, so that a load placed on the administrator increases at the time of an audit. The authentication program for permitting a user, who is attempting to log in to a storage system, to access a file recorded in the storage system, the program including: a first step for receiving a user name and a password from the user; a second step for referring to a validity term corresponding to a pair of the user name and the password recorded in the storage system; and a third step for permitting access by the user to a file corresponding to the validity term based on a result of the second step, the first to third steps being executed by a processor.
摘要:
A log management system is devised to easily discover improper handling log information by managers. Virtual operation systems (OS) are respectively installed for respective users in a file server constructed as an NAS device. These virtual OS function as virtual NAS. The virtual OS and manager OS exchange information relating to log information via an information exchange part constructed as a kernel. The log information produced in the virtual OS is transmitted to a first log management device via a first communications network, and is also transmitted to a second log management device via a second communications network separated from the first communications network. As a result of the same log information being managed by multiplex management using separate management devices, the system detects whether or not there has been any improper handling of the log information.
摘要:
The present invention provides a log management system which is devised so that improper behavior by managers with regard to the log information can easily be discovered. Virtual OS are respectively installed for respective users in a file server that can also be constructed as an NAS device. These virtual OS function as virtual NAS. The virtual OS and manager OS can exchange information relating to log information via an information exchange part constructed as a kernel. The log information produced in the virtual OS is transmitted to a first log management device via a first communications network, and is also transmitted to a second log management device via a second communications network. The respective networks are separated. As a result of the same log information being managed by multiplex management using separate management devices, it can be detected whether or not there has been any improper behavior with respect to the log information.
摘要:
This invention addresses to execute an emergency access interception in a widely distributed environment. An access controller 100 manages an access control list (ACL) 110 recording access right to each object, and a black list (BL) 120 recording user information corresponding to the emergency access interception. The access controller 100 receives a request for authentication to access right and judges whether or not the access right is proper, first according to the BL 120 then ACL110. In case where the user information corresponding to the request is recorded in the BL 120, the access controller 100 sends out the user information to other access controllers and instructs them to register it in the black list. This invention effectively actualizes the emergency access interception under the widely distributed environment in case where the interception is required for any user.
摘要:
The performance of the analysis system is deteriorated because file content extraction processing is performed in the file aggregation server and in the analysis server and further because annotation data creation is performed in the file aggregation server. Therefore, the present invention solves the problem by providing a file aggregation server classifying files into analysis target contents, non analysis target contents, and content matched data, and providing only the analysis target contents to the analysis server. Since this method enables the analysis server to acquire the analysis target contents directly from the file aggregation server, the processing of extracting contents from the files becomes unnecessary, and the throughput of the entire analysis system is improved.
摘要:
The client computer which transmits an access request specifying an object existing in the first file system and the second computer which accesses the second file system are connected to the first computer which accesses the first file system. The second file system includes a shared directory. A specific object which is an object complying with the path name including the name determined in accordance with the type of the second computer is stored in the shared directory. The controller mounts the shared directory to the first file system. The controller creates a link which comprises a name determined in accordance with a certain naming regulation independent of the type of the computer and corresponds to the specific object in the first file system.
摘要:
A file server stores the storage management information and migration policy information. The storage management information includes the information that indicates a storage attribute for each storage apparatus. The migration policy information includes a plurality of information sets. Each of the information sets includes the information that indicates a condition of a file attribute and the information that indicates a condition of a storage attribute of a storage apparatus that is a migration destination. The file server specifies a migration target file, specifies a storage apparatus that conforms to the storage attribute condition that is indicated by the information set that includes the information that indicates a condition of a file attribute that conforms to of a file attribute of a target file based on the storage management information, and migrates a target file from a storage apparatus that has stored the target file to the storage apparatus that has been specified.
摘要:
In order to mitigate a load in communications among an integrated search server, a plurality of search users and a plurality of search servers in an integrated search system, in the present invention, when an integrated search is executed, first, information for narrowing down the search servers is obtained from each search server, and subsequently, the search servers are narrowed down based on this information, and search results are obtained from only the search servers which have been narrowed down. Thereby, there are advantageous effects of reducing memory usage of the integrated search server, and reducing unnecessary network traffic between the integrated search server and each search server.