Blockchain Edge Node Management via Distributed Ledger

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Managing geo-distributed decentralized enterprise infrastructures, such as factory floors and autonomous vehicle fleets, is challenging due to their massive scale, decentralization, and heterogeneity. Conventional management solutions struggle with synchronizing new devices, handling malicious attacks, and maintaining a single version of truth about the system state, especially when nodes operate outside an enterprise network.

Innovation Solution

A management server utilizes a blockchain network to manage edge nodes outside a private network. Each edge node can read from a distributed ledger but not write, allowing the management server to convey management requests through blockchain transactions. This ensures secure, immutable, and decentralized management of edge nodes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional management solutions are used to manage geo-distributed decentralized enterprise infrastructures, then the system can operate with existing infrastructure, but the system faces difficulty in synchronizing new devices, maintaining single version of truth, and handling malicious attacks

Engineering Contradiction:
Improvesystem state consistencyVSAvoidmanagement complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a blockchain network as an intermediary layer between the management server and edge nodes. This blockchain intermediary maintains a distributed ledger that all nodes can read, providing a single version of truth without requiring complex centralized management protocols. The blockchain mediates the synchronization and state verification between geographically distributed nodes.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates copies of the distributed ledger across multiple nodes in the network. Each node maintains a copy of the immutable ledger, eliminating the need for a single centralized truth source. This copying mechanism allows any node to verify system state independently, reducing management complexity while maintaining reliability.

Inventive Principle:
Principle #26Copying

2Adaptability or versatility

If edge nodes are allowed to operate outside the enterprise network for decentralization, then the system achieves better distribution and autonomy, but the attack surface increases and security management becomes more difficult

Engineering Contradiction:
Improvedecentralization capabilityVSAvoidattack surface
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary security actions by requiring edge nodes to be pre-configured with cryptographic keys and identity credentials before joining the network. The management server can issue management requests and policy constraints through the blockchain before nodes operate autonomously, establishing security boundaries in advance rather than reacting to threats afterward.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The blockchain network serves as a secure intermediary that mediates all communications between the management server and edge nodes. Even though nodes operate outside the traditional enterprise network perimeter, all management interactions are funneled through the blockchain, which provides immutable logging and verification, effectively reducing the attack surface despite increased decentralization.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If new edge devices are automatically added to the network, then the system achieves faster scaling and onboarding, but synchronizing new devices to the correct state becomes more challenging

Engineering Contradiction:
Improvedevice onboarding speedVSAvoidsynchronization time
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by pre-configuring new edge nodes with the blockchain client and identity credentials before deployment. When nodes join the network, they automatically connect to the existing blockchain and receive the current state of the distributed ledger, eliminating the need for manual configuration and reducing synchronization time.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

New edge nodes automatically obtain a copy of the distributed ledger from existing nodes in the network. This copying mechanism allows new devices to synchronize with the correct system state immediately upon joining, without requiring complex setup procedures or manual intervention from administrators.

Inventive Principle:
Principle #26Copying

4Reliability

If a centralized management server is used to maintain single version of truth, then system state consistency is improved, but single points of failure are created and decentralization is reduced

Engineering Contradiction:
Improvesingle version of truthVSAvoidcentralized architecture
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the centralized management function into distributed components across the blockchain network. Instead of one central authority, the management server's functionality is distributed among multiple blockchain nodes that collectively maintain the distributed ledger. Each node holds a segment of the truth, and together they form the complete single version of truth without any single point of failure.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent merges the functions of multiple decentralized nodes into a unified blockchain network that collectively maintains the single version of truth. By combining the distributed ledgers of all participating nodes, the system achieves both decentralization and consistency, eliminating the need for a separate centralized management server while maintaining reliability.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS12273394B2System and method of decentralized management of device assets outside a computer network
Publication Date: 2025.04.08 HEWLETT PACKARD ENTERPRISE DEV LP
  • US12273394B2 patent drawing
  • US12273394B2 patent drawing
  • US12273394B2 patent drawing

AI summary

The disclosure relates to decentralized management of edge nodes operating outside an enterprise network using blockchain technology. A management node may operate within a firewall of the enterprise to manage the edge nodes operating outside the firewall using blockchain technology. The management node may coordinate management by writing change requests to a decentralized ledger. The edge nodes may read the change requests from its local copy of the distributed ledger and implement the change requests. Upon implementation, an edge node may broadcast its status to the blockchain network. The management node may mine the transactions from the edge nodes into the distributed ledger, thereby creating a secure and scalable way to coordinate management and record the current and historical system state. The system also provides the edge nodes with a cryptographically secured, machine-to-machine maintained, single version of truth, enabling them to take globally valid decision based on local data.