MULTI-DOMAIN CONNECTION ESTABLISHMENT IN COMPUTER NETWORKING COMMUNICATIONS

    公开(公告)号:US20180152278A1

    公开(公告)日:2018-05-31

    申请号:US15819362

    申请日:2017-11-21

    IPC分类号: H04L5/16 H04L29/08

    CPC分类号: H04L5/16 H04L67/141

    摘要: A method, computer program product and computer system achieves full-mesh connectivity between any two domains in a multi-domain computing environment such as an Infiniband or Converged Ethernet environment. A connection between two domains is established using a single connection management identifier, and private payloads in connection management datagrams, to drive full-duplex connectivity over a pair of half-duplex connections. The half-duplex connections are established using one connection request, and one connection ID object. A connection management object interfaces between the two connected domains. The connection management object handles communications across the half-duplex connections while the connected applications operate as if they are communicating over a full-duplex connection.

    Forced detaching of applications from DMA-capable PCI mapped devices

    公开(公告)号:US11243899B2

    公开(公告)日:2022-02-08

    申请号:US15581430

    申请日:2017-04-28

    摘要: A mechanism is provided in a data processing system comprising at least one processor and at least one memory, the at least one memory comprising instructions that are executed by the at least one processor and configure the at least one processor to implement a device context device driver for forced detaching of an application from mapped devices. The device context device driver receives a command to detach an application, wherein the command specifies a process descriptor associated with the application. The device context device driver identifies a plurality of matching device context entries in a list of open device contexts maintained by the device context device driver that match the process descriptor. The device context device driver marks the plurality of matching device context entries as detached. The device context device driver invalidates mapped memory areas associated with the plurality of matching device context entries. The device context device driver shuts down all device contexts associated with the plurality of matching device context entries.

    TECHNIQUES FOR USING LOCAL KEY MANAGEMENT IN A DATA STORAGE SYSTEM

    公开(公告)号:US20200213102A1

    公开(公告)日:2020-07-02

    申请号:US16185964

    申请日:2018-11-09

    摘要: A technique for providing data security for a data storage system using local key management includes in response to connection of an external storage device to a port of the data storage system, retrieving an authentication key encryption key (AKEK) for the data storage system from the external storage device to the data storage system. A random wrapper key (RWK) is generated based on the AKEK and an encrypted random wrapper key (ERWK) for the data storage system (retrieved from a first key repository of the data storage system). The ERWK is retrieved from a first key repository of the data storage system. A master key (retrieved from a second key repository of the data processing system) is decrypted for the data storage system using the RWK. A device access key (DAK) is derived based on the master key. The DAK is used to encrypt/decrypt data for a drive associated with the DAK.

    Lockless multithreaded completion queue access

    公开(公告)号:US10031786B2

    公开(公告)日:2018-07-24

    申请号:US14994987

    申请日:2016-01-13

    IPC分类号: G06F9/46 G06F9/52 G06F9/48

    摘要: Methods, computing systems and computer program products implement embodiments of the present invention that include identifying a first number of processors in a computer, and identifying a second number of interrupt request (IRQ) lines on a hardware acceleration device in the computer and coupled to the processors, the second number greater than or equal to the first number. Each of the IRQ lines is associated with one of the processors, and upon selecting a given IRQ line for an application thread, a given processor associated with the given IRQ line is identified. Execution of the application thread is initiated on the given processor, and using the given IRQ line, a completion queue is configured for the application thread. If the thread is executing on a different processor than the one managing the completion queue, then the management of the completion queue can be migrated to the processor executing the thread.

    REMOTELY DEBUGGING AN OPERATING SYSTEM
    8.
    发明申请

    公开(公告)号:US20170286257A1

    公开(公告)日:2017-10-05

    申请号:US15083375

    申请日:2016-03-29

    IPC分类号: G06F11/36 H04L29/08

    摘要: Remotely debugging a non-responsive operating system (OS) of a computer system. Central processing units (CPUs) in a computer system are bound to receive queues of a network adapter. Interrupts for a CPU is disabled, wherein the CPU is not available to process hardware interrupt requests queued in the bound receive queues. A debugging message including debugging commands is received by the network adapter, wherein the debugging message is stored in a first receive queue of the network adapter bound to a first CPU. If the first CPU is available, the debugging commands in the debugging message stored in the first of the one or more receive queues of the network adapter are identified by a debugger of the computer system. The identified debugging commands are executed by the CPU to debug the non-responsive OS of the computer system.

    NETWORK SECURITY FOR DATA STORAGE SYSTEMS
    10.
    发明申请

    公开(公告)号:US20180357428A1

    公开(公告)日:2018-12-13

    申请号:US15616189

    申请日:2017-06-07

    摘要: In one embodiment of the present invention, a server is created, and a computer readable storage media is included in the server. An adapter is connected to the server, a set of packets is received by the adapter from a network, and the network and a repository are interfaced by the adapter. A firmware is stored on the adapter, and the adapter is controlled by the firmware. A management component is stored on the computer readable storage media, and the server is managed by the management component. A driver is stored on the management component, and the driver communicates with the adapter. A set of filters that controls transmission of the set of packets is created, and each filter in the set of filters has a set of filter rules. The set of filters is stored on the server.