Techniques to verify and authenticate resources in a data center computer environment

US2020053438A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2020053438-A1
Application numberUS-201916656009-A
CountryUS
Kind codeA1
Filing dateOct 17, 2019
Priority dateJul 22, 2016
Publication dateFeb 13, 2020
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Embodiments are generally directed apparatuses, methods, techniques and so forth to receive a sled manifest comprising identifiers for physical resources of a sled, receive results of an authentication and validation operations performed to authenticate and validate the physical resources of the sled, determine whether the results of the authentication and validation operations indicate the physical resources are authenticate or not authenticate. Further and in response to the determination that the results indicate the physical resources are authenticated, permit the physical resources to process a workload, and in response to the determination that the results indicate the physical resources are not authenticated, prevent the physical resources from processing the workload.

First claim

Opening claim text (preview).

What is claimed is: 1 . An apparatus, comprising: a processor; and memory comprising instructions that when executed by the processor cause the processor to: generate a nonce, communicate the nonce to a physical resource of a sled, receive a signed version of the nonce from the physical resource, and determine whether the physical resource is authentic based in part on the signed version of the nonce. 2 . The apparatus of claim 1 , the memory comprising instructions that when executed by the processor cause the processor to permit the physical resources to process a workload in response to a determination that the physical resource is authentic. 3 . The apparatus of claim 1 , the memory comprising instructions that when executed by the processor cause the processor to prevent the physical resources from processing a workload in response to a determination that the physical resource is not authentic. 4 . The apparatus of claim 1 , the memory comprising instructions that when executed by the processor cause the processor to determine whether the physical resource is authentic based in part on the signed version of the nonce and public key, the public key obtained from an original manufacturer of the physical resource. 5 . The apparatus of claim 1 , the memory comprising instructions that when executed by the processor cause the processor to add an indication of the physical resources in a database in response to a determination that the physical resource is authentic. 6 . The apparatus of claim 1 , the memory comprising instructions that when executed by the processor cause the processor to generate a composed node comprising the physical resources of the sled in response to a determination that the physical resource is authentic. 7 . A non-transitory computer-readable storage medium, comprising a plurality of instructions, that when executed by processing circuitry, enable the processing circuitry to: generate a nonce; communicate the nonce to a physical resource of a sled; receive a signed version of the nonce from the physical resource; and determine whether the physical resource is authentic based in part on the signed version of the nonce. 8 . The non-transitory computer-readable storage medium of claim 7 , the plurality of instructions, when executed, enable the processing circuitry to permit the physical resources to process a workload in response to a determination that the physical resource is authentic. 9 . The non-transitory computer-readable storage medium of claim 7 , the plurality of instructions, when executed, enable the processing circuitry to prevent the physical resources from processing a workload in response to a determination that the physical resource is not authentic. 10 . The non-transitory computer-readable storage medium of claim 7 , the plurality of instructions, when executed, enable the processing circuitry to determine whether the physical resource is authentic based in part on the signed version of the nonce and public key, the public key obtained from an original manufacturer of the physical resource. 11 . The non-transitory computer-readable storage medium of claim 7 , the plurality of instructions, when executed, enable the processing circuitry to add an indication of the physical resources in a database in response to a determination that the physical resource is authentic. 12 . The non-transitory computer-readable storage medium of claim 7 , the plurality of instructions, when executed, enable the processing circuitry to generate a composed node comprising the physical resources of the sled in response to a determination that the physical resource is authentic. 13 . An apparatus comprising: a physical resource of a sled; circuitry; and memory comprising instructions that when executed by the circuitry cause the circuitry to: receive a nonce from a pod management controller, sign the nonce, send the signed nonce to the pod management controller, the pod management controller to determine whether the physical resource is authentic based in part on the signed nonce. 14 . The apparatus of claim 13 , the memory comprising instructions that when executed by the circuitry cause the circuitry to receive an indication to process, via the physical resource, a workload in response to a determination, by the pod management controller, that the physical resource is authentic. 15 . The apparatus of claim 13 , the memory comprising instructions that when executed by the circuitry cause the circuitry to sign the nonce with a private key of a keypair. 16 . The apparatus of claim 15 , wherein a public key of the keypair is available from an original manufacturer of the physical resource. 17 . A non-transitory computer-readable storage medium, comprising a plurality of instructions, that when executed by circuitry of a physical resource of a sled, enable the circuitry to: receive a nonce from a pod management controller; sign the nonce; send the signed nonce to the pod management controller, the pod management controller to determine whether the physical resource is authentic based in part on the signed nonce. 18 . The non-transitory computer-readable storage medium of claim 17 , the plurality of instructions, when executed, enable the circuitry to receive an indication to process, via the physical resource, a workload in response to a determination, by the pod management controller, that the physical resource is authentic. 19 . The non-transitory computer-readable storage medium of claim 17 , the plurality of instructions, when executed, enable the circuitry to sign the nonce with a private key of a keypair. 20 . The non-transitory computer-readable storage medium of claim 19 , wherein a public key of the keypair is available from an original manufacturer of the physical resource.

Assignees

Inventors

Classifications

  • G06F15/161Primary

    Computing infrastructure, e.g. computer clusters, blade chassis or hardware partitioning (casings, cabinets, racks or drawers for data centers H05K5/00) · CPC title

  • Workload prediction · CPC title

  • Servers; Data center rooms, e.g. 19-inch computer racks · CPC title

  • Heatsink mounted on the surface of the printed circuit board [PCB] · CPC title

  • Operation or maintenance aspects · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2020053438A1 cover?
Embodiments are generally directed apparatuses, methods, techniques and so forth to receive a sled manifest comprising identifiers for physical resources of a sled, receive results of an authentication and validation operations performed to authenticate and validate the physical resources of the sled, determine whether the results of the authentication and validation operations indicate the phy…
Who is the assignee on this patent?
Intel Corp
What technology area does this patent fall under?
Primary CPC classification G06F15/161. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu Feb 13 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).