Credential Management Module for Converged Infrastructure

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Managing credential information in converged infrastructure systems is inefficient due to the need for manual password changes across multiple components, which is time-consuming and insecure as passwords become well-known over time.

Innovation Solution

A credential management module (CMM) is introduced to centrally manage credential information by communicating with converged infrastructure elements, receiving credential policies, and automatically rotating access credentials based on set rules, reducing the need for manual intervention and enhancing security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual password management is used for each CIS component device, then administrative control is maintained, but the process becomes extremely time consuming and insecure as passwords become well known over time

Engineering Contradiction:
ImprovesecurityVSAvoidtime consuming
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces a credential management module (CMM) as an intermediary system that automatically manages credentials across multiple CIS component devices. The CMM generates, distributes, and rotates credentials without requiring administrators to manually access each device, thereby maintaining security through automated credential rotation while eliminating the time-consuming manual process.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If manual credential rotation is performed by accessing each CIS component device individually, then credential security can be maintained, but the administrative effort becomes extremely time consuming and inconvenient

Engineering Contradiction:
Improvecredential securityVSAvoidadministrative efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The credential management module enables self-service credential rotation by automatically generating new credentials and pushing them to the appropriate CIS component devices without requiring administrator intervention for each individual device. The system autonomously manages the credential lifecycle, maintaining security while dramatically improving administrative efficiency.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The CMM acts as a centralized intermediary that manages all credential operations across multiple devices. It generates credentials according to policies, distributes them to target devices, and handles rotation automatically, freeing administrators from manual credential management tasks while maintaining security standards.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of manufacture

If software tables or handwritten data sheets are used for password record keeping, then credential information can be stored, but passwords become well known and less secure over a period of time

Engineering Contradiction:
Improvecredential storageVSAvoidsecurity
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

The patent replaces manual mechanical systems (software tables and handwritten data sheets) with an automated electronic credential management system. The CMM generates and manages credentials electronically through automated processes, eliminating the security vulnerabilities associated with static, manually-managed credential storage while providing secure, dynamic credential management.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS9729575B1Methods, systems, and computer readable mediums for performing centralized management of converged infrastructure system credential information
Publication Date: 2017.08.08 EMC IP HLDG CO LLC
  • US9729575B1 patent drawing
  • US9729575B1 patent drawing
  • US9729575B1 patent drawing

AI summary

Methods, systems, and computer readable mediums for managing credential information are disclosed. According to one method, the method includes, at a credential management module (CMM) associated with a converged infrastructure system (CIS), establishing communication with at least one or more converged infrastructure elements (CIEs) included in a CIS. The method further includes receiving a credential policy corresponding to each of the at least one or more CIEs and generating credential information in accordance with the received credential policy.