Partitionable Computing System Security Isolation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Partitionable computing systems are vulnerable to malicious attacks, where a compromised partition can lead to the entire system being compromised, lacking effective security measures to isolate and protect individual partitions.
Innovation Solution
Implementing a system where elements can be moved between partitions by updating routing tables and transitioning security statuses, ensuring secure operations and preventing unauthorized access through secure and unsecure state management, using a state machine and routing devices to control access and configure partitions dynamically.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If elements are combined into partitions to perform specific computing functions, then the system becomes more scalable and functional, but the system becomes vulnerable to malicious attacks where one compromised partition can compromise the entire system
Solution Approach 1:
The system divides the computing environment into separate partitions with distinct security contexts. Each partition operates independently with its own security status, preventing lateral movement of attacks between partitions while maintaining functional versatility through dynamic partitioning capabilities
2Reliability
If security status is transitioned between secure and unsecure states, then unauthorized access is prevented, but the complexity of managing security states and routing tables increases
Solution Approach 1:
The system dynamically transitions security statuses between secure and unsecure states based on operational requirements. Routing tables are automatically updated to reflect current security states, enabling flexible security management that adapts to changing conditions without requiring manual reconfiguration
Solution Approach 2:
The system monitors security statuses and automatically adjusts routing table configurations in response to security events. This feedback mechanism ensures that security protections are maintained while reducing manual management complexity through automated responses to security state changes
Data Source
AI summary
Methods and apparatus in a partitionable computing system. The system can include a computer readable medium comprising instructions configured to move an element of a first partition to a second partition.


