Security for logical unit in storage subsystem
First Claim
1. A storage system adapted to be coupled to a plurality of host computers, said storage system comprising:
- a plurality of disk drives storing data from said host computers, said disk drives are divided into a plurality of storage areas each to be identified with a storage area number; and
a controller controlling read/write of data from/to said disk drives in response to accesses from said host computers,wherein said controller includes an access management map which includes an identification of a host group having been grouped to include some of said host computers selected from said host computers by an user, and said storage area numbers,wherein said controller controls accesses from said host computers to said storage areas in accordance with said access management map,wherein a connection interface information is set for each host group on a host group basis under a single port inside said storage system, andwherein the connection interface information represents a depth of a reception queue and a response content of an inquiry.
0 Assignments
0 Petitions
Accused Products
Abstract
Mapping tables are for stipulating information for primarily identifying computers, information for identifying a group of the computers and a logical unit number permitting access from the host computer inside storage subsystem, in accordance with arbitrary operation method by a user, and for giving them to host computer. The invention uses management table inside the storage subsystem and allocates logical units inside the storage subsystem to a host computer group arbitrarily grouped by a user in accordance with the desired form of operation of the user, can decide access approval/rejection to the logical unit inside the storage subsystem in the group unit and at the same time, can provide the security function capable of setting interface of connection in the group unit under single port of storage subsystem without changing existing processing, limitation and other functions of computer.
94 Citations
19 Claims
-
1. A storage system adapted to be coupled to a plurality of host computers, said storage system comprising:
-
a plurality of disk drives storing data from said host computers, said disk drives are divided into a plurality of storage areas each to be identified with a storage area number; and a controller controlling read/write of data from/to said disk drives in response to accesses from said host computers, wherein said controller includes an access management map which includes an identification of a host group having been grouped to include some of said host computers selected from said host computers by an user, and said storage area numbers, wherein said controller controls accesses from said host computers to said storage areas in accordance with said access management map, wherein a connection interface information is set for each host group on a host group basis under a single port inside said storage system, and wherein the connection interface information represents a depth of a reception queue and a response content of an inquiry. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13)
-
-
14. A storage system adapted to be coupled to a plurality of host computers, said storage system comprising:
-
a plurality of disk drives storing data from said host computers, said disk drives are divided into a plurality of areas each to be identified with an area number; and a controller controlling read/write of data from/to said disk drives in response to accesses from said host computers, wherein said controller includes an access management map which includes an identification of a host group having been grouped to include some of said host computers selected from said host computers by an user and said area numbers, wherein said controller controls accesses from said host computers to areas in accordance with said access management map, wherein a connection interface information is set for each host group on a host group basis under a single port inside said storage system, and wherein the connection interface information represents a depth of a reception queue and a response content of an inquiry. - View Dependent Claims (15, 16, 17, 18, 19)
-
Specification