Distributed ledger for network security management
US-11050763-B1 · Jun 29, 2021 · US
US11514182B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11514182-B2 |
| Application number | US-202016808757-A |
| Country | US |
| Kind code | B2 |
| Filing date | Mar 4, 2020 |
| Priority date | Mar 4, 2020 |
| Publication date | Nov 29, 2022 |
| Grant date | Nov 29, 2022 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method for managing data includes obtaining a workload generation request, wherein the workload generation request specifies a security compliant rule, in response to the workload generation request: selecting a first set of resource devices using a resource allocation master list, initiating a security compliance test on the first set of resource devices to obtain a security compliance result, making a first determination, based on the security compliance result, that the first set of resource devices meet a security compliance criterion, and in response to the first determination: storing a virtual certificate in a security compliance database based on the security compliance result, and allocating the first set of resource devices to a workload based on the workload generation request.
Opening claim text (preview).
What is claimed is: 1. A method for managing data, the method comprising: obtaining, by a management module of a chassis and from an administrative system, a workload generation request, wherein the workload generation request specifies generating a workload that complies with a data compliance rule; in response to the workload generation request: obtaining, from the management module, data compliance information associated with a plurality of resource devices; selecting, from the plurality of resource devices, a second plurality of resource devices based on the data compliance information and the data compliance rule to implement the workload, wherein the chassis further comprises a first portion of the second plurality of resource devices and wherein the chassis does not comprise a second portion of the second plurality of resource devices; initiating a storage of a data compliance certificate in the management module; generating a ledger entry based on the data compliance certificate and the second plurality of resource devices; and storing the ledger entry in a ledger service, wherein the chassis is operatively connected to the administrative system, the ledger service, and the second portion of the second plurality of resource devices. 2. The method of claim 1 , wherein the data compliance rule specifies a geographic region in which resource devices of the workload are to be located. 3. The method of claim 1 , wherein the ledger entry comprises the data compliance certificate, the data compliance rule, and specifies the second plurality of resource devices. 4. The method of claim 1 , wherein the ledger entry is associated with a previous ledger entry that is associated with a previous iteration of the data compliance rule associated with the workload. 5. The method of claim 1 , wherein a resource device of the second plurality of resource devices is a processing device. 6. The method of claim 1 , wherein a resource device of the second plurality of resource devices is a network device. 7. The method of claim 1 , wherein a resource device of the second plurality of resource devices is a storage device. 8. A non-transitory computer readable medium comprising computer readable program code, which when executed by a computer processor enables the computer processor to perform a method for managing data, the method comprising: obtaining, by a management module of a chassis and from an administrative system, a workload generation request, wherein the workload generation request specifies generating a workload that complies with a data compliance rule; in response to the workload generation request: obtaining, from the management module, data compliance information associated with a plurality of resource devices; selecting, from the plurality of resource devices, a second plurality of resource devices based on the data compliance information and the data compliance rule to implement the workload, wherein the chassis further comprises a first portion of the second plurality of resource devices and wherein the chassis does not comprise a second portion of the second plurality of resource devices; initiating a storage of a data compliance certificate in the management module; generating a ledger entry based on the data compliance certificate and the second plurality of resource devices; and storing the ledger entry in a ledger service, wherein the chassis is operatively connected to the administrative system, the ledger service, and the second portion of the second plurality of resource devices. 9. The non-transitory computer readable medium of claim 8 , wherein the data compliance rule specifies a geographic region in which resource devices of the workload are to be located. 10. The non-transitory computer readable medium of claim 8 , wherein the ledger entry comprises the data compliance certificate, the data compliance rule, and specifies the second plurality of resource devices. 11. The non-transitory computer readable medium of claim 8 , wherein the ledger entry is associated with a previous ledger entry that is associated with a previous iteration of the data compliance rule associated with the workload. 12. The non-transitory computer readable medium of claim 8 , wherein a resource device of the second plurality of resource devices is a processing device. 13. The non-transitory computer readable medium of claim 8 , wherein a resource device of the second plurality of resource devices is a storage device. 14. The non-transitory computer readable medium of claim 8 , wherein a resource device of the second plurality of resource devices is a network device. 15. A system, comprising: a processor; and memory comprising instructions, which when executed by the processor, perform a method, the method comprising: obtaining, by a management module of a chassis and from an administrative system, a workload generation request, wherein the workload generation request specifies generating a workload that complies with a data compliance rule; in response to the workload generation request: obtaining, from the management module, data compliance information associated with a plurality of resource devices; selecting, from the plurality of resource devices, a second plurality of resource devices based on the data compliance information and the data compliance rule to implement the workload, wherein the chassis further comprises a first portion of the second plurality of resource devices and wherein the chassis does not comprise a second portion of the second plurality of resource devices; initiating a storage of a data compliance certificate m the management module; generating a ledger entry based on the data compliance certificate and the second plurality of resource devices; and storing the ledger entry in a ledger service, wherein the chassis is operatively connected to the administrative system, the ledger service, and the second portion of the second plurality of resource devices. 16. The system of claim 15 , wherein the data compliance rule specifies a geographic region in which resource devices of the workload are to be located. 17. The system of claim 15 , wherein the ledger entry comprises the data compliance certificate, the data compliance rule, and specifies the second plurality of resource devices. 18. The system of claim 15 , wherein the ledger entry is associated with a previous ledger entry that is associated with a previous iteration of the data compliance rule associated with the workload. 19. The system of claim 15 , wherein a resource device of the second plurality of resource devices is a processing device. 20. The system of claim 15 , wherein a resource device of the second plurality of resource devices is a network device.
using certificates (cryptographic mechanisms or cryptographic arrangements for entity authentication involving certificates H04L9/3263) · CPC title
the resources being hardware resources other than CPUs, Servers and Terminals · CPC title
Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities · CPC title
Techniques for rebalancing the load in a distributed system · CPC title
using certificates · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.