Agentless Distributed System Coordination via Validator Roles

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Distributed systems face challenges in securing computing devices from malicious attacks and compatibility issues due to the exposure of user resources, which can lead to compromised security and reduced efficiency.

Innovation Solution

Implementing a system where computing devices host validators that identify and enforce configurations based on roles without interacting with user resources, reducing exposure and enhancing security by organizing devices into functionality groups with standardized configurations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If computing devices are exposed to network environments for cooperation and task accomplishment, then productivity and system functionality are improved, but security vulnerability to malicious attacks increases

Engineering Contradiction:
Improvesystem functionalityVSAvoidsecurity vulnerability
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a coordinator entity as an intermediary that manages computing devices in the distributed system. The coordinator handles configuration, role assignment, and communication orchestration, allowing devices to cooperate productively while the intermediary filters and controls network exposures, thereby reducing direct security vulnerabilities to malicious attacks.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If computing devices are configured with specific roles and configurations for distributed system operation, then system efficiency and compatibility are improved, but device complexity and configuration management burden increase

Engineering Contradiction:
Improvesystem efficiencyVSAvoidconfiguration management
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent implements self-service mechanisms where computing devices automatically discover their roles, obtain configurations, and join the distributed system without manual intervention. Devices autonomously register with the coordinator, receive appropriate configurations based on their capabilities, and integrate into the system, thereby maintaining high efficiency while reducing configuration management complexity and burden.

Inventive Principle:
Principle #25Self-service

3Ease of operation

If software agents are deployed on computing devices to manage configurations and roles, then system management capability is improved, but security exposure and attack surface increase

Engineering Contradiction:
Improvesystem management capabilityVSAvoidsecurity exposure
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the management functionality from individual computing devices by implementing a centralized coordinator entity. The coordinator handles all configuration management, role assignment, and system operations externally, eliminating the need for software agents on each device. This maintains full system management capability while removing the security exposure and attack surface that would result from deploying agents on numerous distributed devices.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentEP3547131B1Agentless method to bring solution and cluster awareness into infrastructure
Publication Date: 2023.10.25 DELL PROD LP
  • EP3547131B1 patent drawingFigure 1A
  • EP3547131B1 patent drawingFigure 1B~1D
  • EP3547131B1 patent drawingFigure 1E

AI summary

A coordination point includes a persistent storage and a processor. The persistent storage stores a distributed system map. The processor obtains role information associated with computing devices from validators without interacting with user resources of the computing devices; updates the distributed system map using the obtained role information; identifies a portion of the computing devices as members of a functionality group using the updated distributed system map; and enforces a configuration, associated with the functionality group, on the user resources of each computing device of the portion of the computing devices.