IP Library Granted Patent US 10,885,187
Granted Patent B1
US 10,885,187 · App. 15/789,443 · Granted Jan 5, 2021

Virus scanning on storage systems comprising multiple storage servers with a plurality of file systems

Inventor: Paul Djerbaka (Leominster, MA)
Assignee: EMC IP Holding Company LLC
G06F21/565G06F9/45558G06F16/183G06F2009/45595G06F2221/034
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,885,187
App. No.
15/789,443
Granted
Jan 5, 2021
Kind
B1
Abstract

A storage system includes at least one processing device comprising a processor coupled to a memory, the at least one processing device being configured to determine two or more storage servers accessible to the storage system and to conduct a virus scan by iterating through the two or more storage servers to scan files stored in a plurality of file systems of the two or more storage servers. Iterating through the two or more storage servers comprises selecting one of the storage servers, identifying the file systems provided by the selected storage server, committing the identified file systems to a plurality of antivirus servers coupled to the storage array, scanning files in the committed file systems utilizing the plurality of antivirus servers, and, responsive to completing the scan of files in the committed file systems, selecting another one of the storage servers and repeating the identifying, committing and scanning.

Claims (69)

1. A storage system comprising:

at least one processing device comprising a processor coupled to a non-transitory memory having program code stored thereon that when executed by the processor causes the processor to:

determine two or more storage servers accessible to the storage system; and

conduct a virus scan by iterating through the two or more storage servers to scan files stored in a plurality of file systems of the two or more storage servers;

wherein iterating through the two or more storage servers comprises:

selecting one of the storage servers;

identifying the file systems provided by the selected storage server;

committing the identified file systems to a plurality of dedicated antivirus servers coupled to the storage system through one or more dedicated interfaces;

scanning files in the committed file systems utilizing the plurality of dedicated antivirus servers; and

responsive to completing the scan of files in the committed file systems, selecting another one of the storage servers and repeating the identifying, committing and scanning;

wherein the two or more storage servers comprise front end servers having a plurality of client devices in communication therewith through one or more networks;

wherein the dedicated antivirus servers comprise back end antivirus servers;

wherein committing the identified file systems is exclusive to the dedicated antivirus servers through the one or more dedicated interfaces;

wherein scanning the files in the committed file systems utilizing the plurality of dedicated antivirus servers comprises scanning (i) files accessed by the plurality of client devices and (ii) files copied to the committed file systems without access requests by the plurality of client devices; and

wherein one or more of the files copied to the committed file systems without access requests by the plurality of client devices comprise files accumulated in the storage servers through one or more of at least one data migration and at least one data consolidation.

2. The storage system of claim 1 , further comprising a storage array comprising the at least one processing device and at least one of the two or more storage servers.

3. The storage system of claim 1 wherein scanning files in the committed file systems utilizing the plurality of dedicated antivirus servers comprises accessing files in the committed file systems using one or more dedicated command line interfaces.

4. The storage system of claim 3 wherein a multiprotocol interface is utilized to access files in the committed file systems, the multiprotocol interface comprising a Network File System (NFS) interface and a Common Internet File System (CIFS) interface.

5. The storage system of claim 3 wherein accessing files in the committed file systems comprises utilizing a Secure Shell (SSH) command line interface.

6. The storage system of claim 1 wherein conducting the virus scan is responsive to invoking a script file stored locally in the memory of the at least one processing device.

7. The storage system of claim 6 wherein the script file comprises a configuration of one or more file types to scan in the committed file systems.

8. The storage system of claim 6 wherein the script file comprises a shell script.

9. The storage system of claim 6 wherein conducting the virus scan is performed on-demand by invoking the script file stored locally in the memory of the at least one processing device through at least one of the client devices having access to the at least one processing device and permission to invoke the script file.

10. The storage system of claim 6 wherein conducting the virus scan is performed periodically based on a time-based job scheduler implemented by the at least one processing device that invokes the script file stored locally in the memory of the at least one processing device.

11. The storage system of claim 10 wherein the time-based job scheduler comprises Cron.

12. The storage system of claim 1 wherein scanning the files in the committed file systems comprises, responsive to detecting a malicious file stored in a given one of the file systems, quarantining the malicious file and updating a log to indicate detection of the malicious file.

13. The storage system of claim 12 wherein iterating through the two or more storage servers comprises, responsive to completing the scan of files in the committed file systems of the selected storage server, writing the log to a memory of the at least one processing device.

14. A method comprising:

determining two or more storage servers accessible to a storage system; and

conducting a virus scan by iterating through the two or more storage servers to scan files stored in a plurality of file systems of the two or more storage servers;

wherein iterating through the two or more storage servers comprises:

selecting one of the storage servers;

identifying the file systems provided by the selected storage server;

committing the identified file systems to a plurality of dedicated antivirus servers coupled to the storage system through one or more dedicated interfaces;

scanning files in the committed file systems utilizing the plurality of dedicated antivirus servers; and

responsive to completing the scan of files in the committed file systems, selecting another one of the storage servers and repeating the identifying, committing and scanning;

wherein the two or more storage servers comprise front end servers having a plurality of client devices in communication therewith through one or more networks;

wherein the dedicated antivirus servers comprise back end antivirus servers;

wherein committing the identified file systems is exclusive to the dedicated antivirus servers through the one or more dedicated interfaces;

wherein scanning the files in the committed file systems utilizing the plurality of dedicated antivirus servers comprises scanning (i) files accessed by the plurality of client devices and (ii) files copied to the committed file systems without access requests by the plurality of client devices;

wherein one or more of the files copied to the committed file systems without access requests by the plurality of client devices comprise files accumulated in the storage servers through one or more of at least one data migration and at least one data consolidation; and

wherein the method is implemented using at least one processing device comprising a processor coupled to a memory.

15. The method of claim 14 wherein:

scanning files in the committed file systems utilizing the plurality of dedicated antivirus servers comprises accessing files in the committed file systems using one or more dedicated command line interfaces; and

a multiprotocol interface is utilized to access files in the committed file systems, the multiprotocol interface comprising a Network File System (NFS) interface and a Common Internet File System (CIFS) interface.

16. The method of claim 14 wherein conducting the virus scan is responsive to invoking a script file stored locally in the memory of the at least one processing device, and wherein conducting the virus scan is performed at least one of:

on-demand by invoking the script file stored locally in the memory of the at least one processing device through at least one of the client devices having access to the at least one processing device and permission to invoke the script file; and

periodically based on a time-based job scheduler implemented by the at least one processing device that invokes the script file stored locally in the memory of the at least one processing device.

17. A computer program product comprising a non-transitory computer-readable storage medium having stored therein program code of one or more software programs, wherein the program code when executed by at least one processing device comprising a processor coupled to a memory causes the at least one processing device:

to determine two or more storage servers accessible to a storage system; and

to conduct a virus scan by iterating through the two or more storage servers to scan files stored in a plurality of file systems of the two or more storage servers;

wherein iterating through the two or more storage servers comprises:

selecting one of the storage servers;

identifying the file systems provided by the selected storage server;

committing the identified file systems to a plurality of dedicated antivirus servers coupled to the storage system through one or more dedicated interfaces;

scanning files in the committed file systems utilizing the plurality of dedicated antivirus servers; and

responsive to completing the scan of files in the committed file systems, selecting another one of the storage servers and repeating the identifying, committing and scanning;

wherein the two or more storage servers comprise front end servers having a plurality of client devices in communication therewith through one or more networks;

wherein the dedicated antivirus servers comprise back end antivirus servers;

wherein committing the identified file systems is exclusive to the dedicated antivirus servers through the one or more dedicated interfaces;

wherein scanning the files in the committed file systems utilizing the plurality of dedicated antivirus servers comprises scanning (i) files accessed by the plurality of client devices and (ii) files copied to the committed file systems without access requests by the plurality of client devices; and

wherein one or more of the files copied to the committed file systems without access requests by the plurality of client devices comprise files accumulated in the storage servers through one or more of at least one data migration and at least one data consolidation.

18. The computer program product of claim 17 wherein:

scanning files in the committed file systems utilizing the plurality of dedicated antivirus servers comprises accessing files in the committed file systems using one or more dedicated command line interfaces; and

a multiprotocol interface is utilized to access files in the committed file systems, the multiprotocol interface comprising a Network File System (NFS) interface and a Common Internet File System (CIFS) interface.

19. The computer program product of claim 17 wherein conducting the virus scan is responsive to invoking a script file stored locally in the memory of the at least one processing device, and wherein conducting the virus scan is performed at least one of:

on-demand by invoking the script file stored locally in the memory of the at least one processing device through at least one of the client devices having access to the at least one processing device and permission to invoke the script file; and

periodically based on a time-based job scheduler implemented by the at least one processing device that invokes the script file stored locally in the memory of the at least one processing device.

20. The computer program product of claim 17 wherein scanning the files in the committed file systems comprises, responsive to detecting a malicious file stored in a given one of the file systems, quarantining the malicious file and updating a log to indicate detection of the malicious file.

Assignments (8)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (044535/0109) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO WYSE TECHNOLOGY L.L.C.)
Reel/Frame 060753/0414 →
RELEASE OF SECURITY INTEREST AT REEL 044535 FRAME 0001 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 058298/0475 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
PATENT SECURITY AGREEMENT (CREDIT) Recorded Nov 29, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 044535/0001 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Nov 29, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 044535/0109 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 20, 2017
From: DJERBAKA, PAUL
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 043914/0855 →
Cited By (3)
US 12,363,162 US 12,407,714 US 12,647,440