Data Center Cable Security via Virtual Port Remapping

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In network-based storage systems, maintenance activities can inadvertently or maliciously disrupt connections between devices and switches, leading to data disruptions, corruption, or loss due to the lack of secure cable management protocols.

Innovation Solution

A method and system that require dual password authentication to suspend data flow, virtually remap ports, and unlock physical locks on cables, ensuring secure cable removal and maintenance while maintaining data integrity through redundant pathways.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If cable removal is allowed without authentication, then maintenance operations are simple and fast, but security is compromised and unauthorized disconnection can occur

Engineering Contradiction:
Improvecable connection securityVSAvoidcable removal process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary authentication actions before allowing cable removal. The authentication unit verifies passwords or biometric data before suspending data flow or unlocking physical locks, ensuring security is established in advance rather than during the actual cable removal operation.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The cable removal process is segmented into multiple independent steps: authentication verification, data flow suspension, virtual port mapping, and physical lock unlocking. Each step is controlled separately, allowing the system to maintain security while enabling legitimate maintenance operations through a structured multi-stage process.

Inventive Principle:
Principle #1Segmentation

2Reliability

If data flow is suspended during cable removal, then data integrity is protected, but operational productivity decreases

Engineering Contradiction:
Improvedata integrityVSAvoidmaintenance operation speed
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system introduces virtual port mapping as an intermediary mechanism. When a cable is removed, data flow is redirected through virtual port mappings to alternative physical paths, maintaining data transmission continuity and integrity while allowing the physical cable to be safely removed without causing operational disruption.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system establishes redundant data pathways and virtual port mappings before cable removal occurs. This preparatory cushioning ensures that if data flow must be suspended temporarily, the impact is minimized because alternative paths are already in place to resume transmission quickly.

Inventive Principle:
Principle #11Beforehand cushioning (Prior cushioning)

3Reliability

If physical locks are used on cables, then unauthorized removal is prevented, but device complexity increases

Engineering Contradiction:
Improvecable protectionVSAvoidcable management system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system merges multiple security mechanisms into an integrated cable protection system: logical authentication, data flow control, virtual port mapping, and physical locks all work together as a unified security framework. This consolidation manages complexity by coordinating these functions through a single authentication unit rather than treating them as separate independent systems.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The authentication unit serves multiple functions: verifying passwords, validating biometric data, suspending data flow, controlling virtual port mappings, and managing physical locks. This multi-functionality reduces overall system complexity by consolidating control logic into a single universal authentication component rather than requiring separate control systems for each security measure.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11729162B2Data center cable security
Publication Date: 2023.08.15 SAUDI ARABIAN OIL CO
  • US11729162B2 patent drawing
  • US11729162B2 patent drawing
  • US11729162B2 patent drawing

AI summary

A system and method for providing cable security in a network is generally described. The method includes receiving a request to remove a cable, where the request includes a first password and a second password, and wherein the cable connects a first port and a second port. The method further includes determining a first authenticity of the first password. After determining the first authenticity of the first password, the method further includes suspending a data flow through the cable, virtually mapping, by a storage device configuration unit, the first port to a third port, and transmitting the data flow from the third port to the second port. The method further includes determining an authenticity of the second password. After determining the authenticity of the second password, the method includes unlocking a physical lock connected to the cable.