IP Library Granted Patent US 10,706,152
Granted Patent B2
US 10,706,152 · App. 15/784,409 · Granted Jul 7, 2020

Systems and methods for concealed object store in a virtualized information handling system

Inventors: Shekar Babu Suryanarayana (Bangalore, IN); Yogesh P. Kulkarni (Round Rock, TX)
Assignee: Dell Products L.P.
G06F21/57G06F9/45558G06F21/53G06F21/575G06F2009/45583G06F2009/45587
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,706,152
App. No.
15/784,409
Granted
Jul 7, 2020
Kind
B2
Abstract

In accordance with embodiments of the present disclosure, an information handling system may include a processor subsystem configured to execute a hypervisor, wherein the hypervisor is configured to host a plurality of virtual machines and a memory subsystem communicatively coupled to the processor subsystem. The memory subsystem may be configured to implement namespaces for the hypervisor and the plurality of virtual machines and implement for each of the namespaces a concealed namespace object store as a hidden metadata area of the memory subsystem unexposed to the hypervisor and the plurality of virtual machines, each concealed namespace object store comprising metadata for an associated namespace.

Claims (28)

1. An information handling system, comprising:

a processor subsystem configured to execute a hypervisor, wherein the hypervisor is configured to host a plurality of virtual machines; and

a memory subsystem communicatively coupled to the processor subsystem, the memory subsystem configured to:

implement namespaces for the hypervisor and the plurality of virtual machines; and

implement for each of the namespaces a concealed namespace object store as a hidden metadata area of the memory subsystem unexposed to the hypervisor and the plurality of virtual machines, each concealed namespace object store comprising metadata for an associated namespace;

wherein, for each namespace, the concealed namespace object store is inaccessible to the hypervisor, but a remainder of the namespace is accessible to the hypervisor.

2. The information handling system of claim 1 , wherein the processor subsystem is further configured to execute a concealed real time service executing on the hypervisor, wherein the concealed real time service is configured to control access to each concealed namespace object store by validating access of the hypervisor and the plurality of virtual machines to the concealed namespace object stores.

3. The information handling system of claim 2 , wherein the concealed real time service is configured to validate access of one of the hypervisor and the plurality of virtual machines by validating a signature of the one of the hypervisor and the plurality of virtual machines.

4. The information handling system of claim 2 , wherein each concealed namespace object store is defined by a concealed namespace object table maintained by the hypervisor.

5. The information handling system of claim 4 , wherein the memory subsystem comprises a persistent memory comprising one or more non-volatile dual-inline memory modules, and wherein the concealed namespace object table is maintained within a non-volatile dual-inline memory firmware interface table.

6. A method comprising, in an information handling system comprising a processor subsystem configured to execute a hypervisor, wherein the hypervisor is configured to host a plurality of virtual machines and comprising a memory subsystem communicatively coupled to the processor subsystem:

implementing, within the memory subsystem, namespaces for the hypervisor and the plurality of virtual machines; and

implementing, within the memory subsystem, for each of the namespaces a concealed namespace object store as a hidden metadata area of the memory subsystem unexposed to the hypervisor and the plurality of virtual machines, each concealed namespace object store comprising metadata for an associated namespace;

wherein, for each namespace, the concealed namespace object store is inaccessible to the hypervisor, but a remainder of the namespace is accessible to the hypervisor.

7. The method of claim 6 , further comprising executing, by the processor subsystem, a concealed real time service executing on the hypervisor, wherein the concealed real time service is configured to control access to each concealed namespace object store by validating access of the hypervisor and the plurality of virtual machines to the concealed namespace object stores.

8. The method of claim 7 , wherein the concealed real time service is configured to validate access of one of the hypervisor and the plurality of virtual machines by validating a signature of the one of the hypervisor and the plurality of virtual machines.

9. The method of claim 7 , wherein each concealed namespace object store is defined by a concealed namespace object table maintained by the hypervisor.

10. The method of claim 9 , wherein the memory subsystem comprises a persistent memory comprising one or more non-volatile dual-inline memory modules, and wherein the concealed namespace object table is maintained within a non-volatile dual-inline memory firmware interface table.

11. An article of manufacture comprising:

a non-transitory computer-readable medium; and

computer-executable instructions carried on the computer-readable medium, the instructions readable by a processor, the instructions, when read and executed, for causing the processor to, in an information handling system comprising a processor subsystem configured to execute a hypervisor, wherein the hypervisor is configured to host a plurality of virtual machines and comprising a memory subsystem communicatively coupled to the processor subsystem:

implement, within the memory subsystem, namespaces for the hypervisor and the plurality of virtual machines; and

implement, within the memory subsystem, for each of the namespaces a concealed namespace object store as a hidden metadata area of the memory subsystem unexposed to the hypervisor and the plurality of virtual machines, each concealed namespace object store comprising metadata for an associated namespace;

wherein, for each namespace, the concealed namespace object store is inaccessible to the hypervisor, but a remainder of the namespace is accessible to the hypervisor.

12. The article of claim 11 , the instructions further configured to execute, within the processor subsystem, a concealed real time service executing on the hypervisor, wherein the concealed real time service is configured to control access to each concealed namespace object store by validating access of the hypervisor and the plurality of virtual machines to the concealed namespace object stores.

13. The article of claim 12 , wherein the concealed real time service is configured to validate access of one of the hypervisor and the plurality of virtual machines by validating a signature of the one of the hypervisor and the plurality of virtual machines.

14. The article of claim 12 , wherein each concealed namespace object store is defined by a concealed namespace object table maintained by the hypervisor.

15. The article of claim 14 , wherein the memory subsystem comprises a persistent memory comprising one or more non-volatile dual-inline memory modules, and wherein the concealed namespace object table is maintained within a non-volatile dual-inline memory firmware interface table.

Assignments (8)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (044535/0109) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO WYSE TECHNOLOGY L.L.C.)
Reel/Frame 060753/0414 →
RELEASE OF SECURITY INTEREST AT REEL 044535 FRAME 0001 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 058298/0475 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
PATENT SECURITY AGREEMENT (CREDIT) Recorded Nov 29, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 044535/0001 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Nov 29, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 044535/0109 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 16, 2017
From: SURYANARAYANA, SHEKAR BABU; KULKARNI, YOGESH P.
To: DELL PRODUCTS L.P.
Reel/Frame 043873/0262 →
Continuity (1)
Related Publication 20190114427A1 · Apr 18, 2019
Cited By (1)
US 12,524,260