Partitionable Computing System Security Isolation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Partitionable computing systems are vulnerable to malicious attacks, where a compromised partition can lead to the entire system being compromised, lacking effective security measures to isolate and protect individual partitions.

Innovation Solution

Implementing a system where elements can be moved between partitions by updating routing tables and transitioning security statuses, ensuring secure operations and preventing unauthorized access through secure and unsecure state management, using a state machine and routing devices to control access and configure partitions dynamically.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If elements are combined into partitions to perform specific computing functions, then the system becomes more scalable and functional, but the system becomes vulnerable to malicious attacks where one compromised partition can compromise the entire system

Engineering Contradiction:
Improvepartitioning capabilityVSAvoidsystem security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system divides the computing environment into separate partitions with distinct security contexts. Each partition operates independently with its own security status, preventing lateral movement of attacks between partitions while maintaining functional versatility through dynamic partitioning capabilities

Inventive Principle:
Principle #1Segmentation

2Reliability

If security status is transitioned between secure and unsecure states, then unauthorized access is prevented, but the complexity of managing security states and routing tables increases

Engineering Contradiction:
Improvesecurity protectionVSAvoidsecurity management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system dynamically transitions security statuses between secure and unsecure states based on operational requirements. Routing tables are automatically updated to reflect current security states, enabling flexible security management that adapts to changing conditions without requiring manual reconfiguration

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system monitors security statuses and automatically adjusts routing table configurations in response to security events. This feedback mechanism ensures that security protections are maintained while reducing manual management complexity through automated responses to security state changes

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS7356678B2Security measures in a partitionable computing system
Publication Date: 2008.04.08 HEWLETT PACKARD ENTERPRISE DEV LP
  • US7356678B2 patent drawing
  • US7356678B2 patent drawing
  • US7356678B2 patent drawing

AI summary

Methods and apparatus in a partitionable computing system. The system can include a computer readable medium comprising instructions configured to move an element of a first partition to a second partition.