Live Process Migration for Electronic Security Attack Mitigation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing process migration techniques often result in service disruptions due to electronic security attacks on source or target computing devices, which can be exacerbated by performance degradation issues, leading to undesirable service interruptions and user dissatisfaction.

Innovation Solution

The method involves continuous monitoring of performance metrics and security attacks across computing devices, allowing for the initiation or reversal of live process migration based on real-time determinations, ensuring that processes are migrated only to secure target devices, thereby minimizing disruptions and addressing potential security threats.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If live migration is initiated based on performance metrics, then service continuity is improved, but service disruption occurs when security attacks are present

Engineering Contradiction:
Improveservice continuityVSAvoidservice disruption due to security attacks
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary security assessment of both source and target computing devices before initiating live migration. Security metrics are monitored and evaluated in advance to determine whether the target device is suitable for migration, preventing migration to compromised devices and thus avoiding service disruption caused by security attacks.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system continuously monitors security metrics of computing devices and uses this feedback to dynamically adjust migration decisions. When security threats are detected, the system receives feedback about the compromised state and reverses or prevents migration actions, ensuring service continuity by avoiding vulnerable devices.

Inventive Principle:
Principle #23Feedback

2Speed

If migration decisions are made without security verification, then migration speed is improved, but security risks increase

Engineering Contradiction:
Improvemigration speedVSAvoidsecurity reliability
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

Security verification is performed as a preliminary step before migration execution. The system assesses security metrics of source and target devices in advance, establishing security clearance before the actual migration begins. This preliminary security check ensures that migration speed is not significantly impacted while maintaining security reliability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system introduces security metrics as an intermediary factor between migration decisions and execution. Before migration occurs, security assessment acts as a mediator to verify the safety of the operation, allowing fast migration when secure while blocking migration when security risks are present.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11411969B2Live process migration in conjunction with electronic security attacks
Publication Date: 2022.08.09 RED HAT INC
  • US11411969B2 patent drawing
  • US11411969B2 patent drawing
  • US11411969B2 patent drawing

AI summary

Live process migration in conjunction with electronic security attacks. A determination is made to cause the initiation of a live migration of a process executing on a first computing device to a second computing device. Prior to causing the initiation of the live migration of the process, it is determined that the first computing device is undergoing an electronic security attack. In response to determining that the first computing device is undergoing the electronic security attack, the initiation of the live migration of the process is caused, or the determination to cause the initiation of the live migration of the process is reversed.