File access control in a multi-protocol file server

A file server and file technology, used in instruments, memory systems, digital data processing components, etc., to solve problems such as security errors and accidents

Inactive Publication Date: 2007-09-19
NETWORK APPLIANCE INC
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This known method has the drawback that the user's access control scheme differs significantly from the set of access control schemes used for the file, thereby causing security issues for those client devices using security semantics other than those associated with the target file. mistakes and accidents

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • File access control in a multi-protocol file server
  • File access control in a multi-protocol file server

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0012] In the following description, preferred embodiments of the present invention are described in terms of preferred processing steps and data structures. However, after reading this specification, those skilled in the art will recognize that implementations may be implemented with one or more general-purpose processors (or special-purpose processors adapted to specific processing steps and data structures) operating under program control embodiments of the present invention, and no undue experimentation or other invention is required to implement the optimal processing steps and data structures described herein with such a device.

[0013] The invention described herein may be used in conjunction with the invention described in the following specifications:

[0014] • Attorney's Application No. 08 / 985398, filed December 5, 1997, No. NET-023 in the name of Andrea Borr, entitled "Uniform File Locking for Multiple Protocols."

[0015] This application is hereby incorporated ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a method and system for enforcing file access control among client devices using multiple diverse access control models and multiple diverse file server protocols. A multi-protocol file server identifies each file with one particular access control model out of a plurality of possible models, and enforces that one particular model for all accesses to that file. When the file server receives a file server request for that file using a different access control model, the file server translates the access control limits for that file into no-less-restrictive limits in the different model. The file server restricts access by the client device using the translated access control limits. Each file is assigned the access control model of the user who created the file or who last set access control limits for the file. When a user having a different access control model sets access control limits, the access control model for the file is changed to the new model. Files are organized in a tree hierarchy, in which each tree is limited to one or more access control models (which can limit the ability of users to set access control limits for files in that tree). Each tree can be limited to NT-model-only format, Unix-model-only format, or mixed NT-or-Unix-models format.

Description

technical field [0001] The invention relates to file access control in a multi-protocol file server. Background technique [0002] In an integrated computer network, it is desirable for multiple client devices to share access to the same files. One well-known approach is to provide a network file server for storing files that receives and responds to file server requests from client devices. These file server requests are formed using a file server protocol that is recognizable by and belongs to both the file server and the client device. Since the files are stored in the file server, multiple client devices have the opportunity to share access to the same files. [0003] In a file system used by more than one user, it is desirable to programmatically restrict access to files in the file system. Restricting access includes at least the following: (1) user authentication—determining that requesting users are who they say they are; and (2) access control verification—determ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G06F1/00G06F12/00G06F21/41G06F21/62
CPCG06F2221/2141G06F21/6218G06F21/41G06F21/6236
Inventor D·希茨A·波尔R·J·豪利M·穆勒斯坦J·皮尔逊
Owner NETWORK APPLIANCE INC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products