IP Library Granted Patent US 7,979,701
Granted Patent B1
US 7,979,701 · App. 11/532,480 · Granted Jul 12, 2011

Cross mapping graphical interface to show encryption relationships between hosts and storage devices

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,979,701
App. No.
11/532,480
Granted
Jul 12, 2011
Kind
B1
Abstract

The invention operates in connection with a secure storage compartment feature of a storage security appliance to allow users to see the encryption and permission relationships between hosts and storage in one view. The invention also provides a user tool that enables users to manage secure storage compartments (encryption/key relationship) easily and access permissions between them. The invention also provides a user tool that helps users find missing relationships/permissions easily when troubleshooting a host's missing storage after a storage security appliance is installed. The invention further provides a user tool that overlays cross mapping/relationship information on top of a topology view, thereby making it easy for a user to see missing or extraneous relationships between hosts and storage.

Claims (33)

1. A method for cross mapping a graphical user interface of a computer connected to a network to show encryption relationships between a plurality of hosts and a plurality of storage devices connected to the network, comprising:

displaying, at a single view on the graphical user interface executed by a processor operatively connected to the computer, the encryption relationships and access permissions between the plurality of hosts and the plurality of storage devices;

selecting through the graphical user interface a first host of the plurality of hosts from the displayed encryption relationships and access permissions;

in response to selecting the first host, displaying at the single view all secure storage compartments and corresponding logical unit numbers (LUNs) to which the first host has;

selecting through the graphical user interface a first secure storage compartment from the displayed encryption relationship and access permissions;

in response to selecting the first secure storage compartment, displaying at the single view each host that has access to the first secure storage compartment;

displaying cross mapping relationships between each host and the first storage compartments;

selecting through the graphical user interface a first (LUN) from the displayed encryption relationships and access permissions, wherein the first LUN corresponds to the first secure storage compartment; and

in response to selecting the first LUN, displaying at the single view the first secure storage compartment to which the first LUN corresponds and each host that has access to the first LUN.

2. The method of claim 1 , wherein the computer comprises a security appliance.

3. The method of claim 1 , wherein the hosts comprise host groups and wherein the secure storage compartments comprise secure storage compartment groups, and wherein displaying comprises:

displaying the single view at a group level to show relationships between the host groups and the secure storage compartment groups.

4. The method of claim 1 , further comprising:

retrieving from a storage security appliance information comprising a complete list of the hosts, the storage devices, and at least one key with regard to each secure storage compartments to display the single view.

5. The method of claim 4 , further comprising:

overlaying a cross mapping of the encryption relationships at the single view in response to retrieving the information.

6. An apparatus for cross mapping a graphical user interface of a computer connected to a network to show encryption relationships between a plurality of hosts and a plurality of storage devices connected to the network, comprising:

means for displaying, at a single view on the graphical user interface executed by a processor operatively connected to the computer, the encryption relationships and access permissions between the plurality of hosts and the plurality of storage devices;

means for selecting through the graphical user interface a first host of the plurality of hosts from the displayed encryption relationships and access permissions;

means for displaying at the single view all secure storage compartments and corresponding logical unit numbers (LUNs) to which the first host has access in response to selecting the first host;

means for selecting through the graphical user interface a first secure storage compartment from the displayed encryption relationship and access permissions;

means for displaying at the single view each host that has access to the first secure storage compartment in response to selecting the first secure storage compartment;

means for displaying cross mapping relationships between each host and the first storage compartments;

means for selecting through the graphical user interface a LUN from the displayed encryption relationships and access permissions, wherein the first LUN corresponds to the first secure storage compartment; and

means for displaying at the single view the first secure storage compartment to which the first LUN corresponds and each host that has access to the first LUN in response to selecting the first LUN.

7. The apparatus of claim 6 , wherein the computer comprises a security appliance.

8. The apparatus of claim 6 wherein the hosts comprise host groups and wherein the secure storage compartments comprise secure storage compartment groups.

9. The apparatus of claim 6 wherein the hosts comprise host groups and wherein the secure storage compartments comprise secure storage compartment groups, and wherein displaying comprises:

means for displaying the single view at a group level to show relationships between the host groups and the secure storage compartment groups.

10. The apparatus of claim 6 , further comprising:

means for retrieving from a storage security appliance information comprising a complete list of the hosts, the storage devices, and at least one key with regard to each secure storage compartments to display the single view.

11. The apparatus of claim 6 , further comprising:

means for overlaying a cross mapping of the encryption relationships at the single view in response to retrieving the information.

Assignments (2)
CHANGE OF NAME Recorded Jul 16, 2024
From: NETWORK APPLIANCE, INC.
To: NETAPP, INC.
Reel/Frame 067999/0836 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 7, 2006
From: GANDHASRI, RAJAMOHAN
To: NETWORK APPLIANCE, INC.
Reel/Frame 018598/0905 →