Managed System Tunneling Proxy Management Traffic

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current information handling systems face challenges in efficiently managing and monitoring proxy-managed devices within a network, as these devices often have limited management interoperability, lacking an IP stack for end-to-end connectivity and browser-based access, which complicates control and monitoring tasks.

Innovation Solution

The implementation of a method and system for tunneling management traffic, where a managed system acts as a proxy to forward user interfaces and control/status information from proxy-managed devices to a management system, using passthru device drivers and authentication credentials to enable comprehensive management, even for devices with limited interoperability.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If proxy-managed devices are connected to the network without an IP stack, then device complexity is reduced and security is improved, but management interoperability and end-to-end connectivity are lost

Engineering Contradiction:
ImprovesecurityVSAvoidmanagement interoperability
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a managed system as an intermediary that bridges the gap between proxy-managed devices without IP stacks and the network management infrastructure. The managed system establishes a tunnel connection to the management system and forwards management traffic to and from proxy-managed devices, enabling remote management while preserving the security architecture of devices without IP stacks.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Device complexity

If proxy-managed devices lack browser-based access, then device complexity is reduced, but remote management capability is worsened

Engineering Contradiction:
Improvedevice complexityVSAvoidremote management capability
Core Design Contradiction:
Device complexityVSEase of operation

Solution Approach 1:

The managed system acts as a mediator that provides browser-based access to proxy-managed devices. It hosts a user interface that allows network administrators to remotely configure and monitor devices through a web browser, while the actual management traffic is tunneled through the managed system to reach the devices that lack direct browser-based access capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If tunneling management traffic through a managed system is implemented, then management interoperability is improved, but network complexity and configuration requirements increase

Engineering Contradiction:
Improvemanagement interoperabilityVSAvoidnetwork complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The managed system performs multiple functions: it acts as a tunnel endpoint for management traffic, provides a web-based management interface, authenticates devices using credentials from a management system, and forwards management commands and status information. This multi-functionality consolidates complexity into a single system rather than requiring modifications to each proxy-managed device.

Inventive Principle:
Principle #6Universality (Multi-functionality)

4Reliability

If authentication credentials are obtained from a management system, then security is improved, but the number of components and configuration steps increase

Engineering Contradiction:
ImprovesecurityVSAvoidconfiguration steps
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The managed system obtains authentication credentials from the management system in advance, before proxy-managed devices need to be managed. This preliminary authentication setup allows the managed system to establish secure tunnel connections and manage devices without requiring real-time authentication negotiations, simplifying the operational process while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10862877B2System and method for tunneling of management traffic
Publication Date: 2020.12.08 DELL PROD LP
  • US10862877B2 patent drawing
  • US10862877B2 patent drawing
  • US10862877B2 patent drawing

AI summary

A method of tunneling management traffic includes receiving at a managed system a control feature from a proxy-managed system that is connected to the managed system, determining that the proxy-managed system is not visible to a management system, providing the control feature to the management system in response to determining that the proxy-managed system is not visible, receiving a modification to the control feature from the management system, and providing, from the managed system, the modification to the control feature to the proxy-managed system in response to receiving the modification to the control feature from the management system.