Policy Check Queue for IT Configuration Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current IT resource management systems lack effective mechanisms to detect and notify users of policy violations before applying changes to API-manageable resources within computing infrastructures, potentially leading to unintended configurations.

Innovation Solution

Implementing a method that queues runs with proposed changes to API-manageable resources, determines associated policies, and performs a policy check to identify potential violations, notifying users of enforcement levels before applying the changes, allowing for user approval or resolution of policy violations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If policy checks are performed before applying changes, then reliability of configuration management is improved, but productivity is worsened due to additional validation steps

Engineering Contradiction:
Improveconfiguration management reliabilityVSAvoidchange application productivity
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent performs policy checks in advance before applying configuration changes. The system queues runs with proposed changes, determines associated policies, and executes policy checks to identify violations before the changes are applied to the IT infrastructure, preventing unintended configurations

Inventive Principle:
Principle #10Preliminary action

2Manufacturing precision

If comprehensive policy validation is implemented, then manufacturing precision of configuration changes is improved, but device complexity is worsened due to additional policy determination and check mechanisms

Engineering Contradiction:
Improveconfiguration change precisionVSAvoidpolicy validation system complexity
Core Design Contradiction:
Manufacturing precisionVSDevice complexity

Solution Approach 1:

The patent segments the policy validation process into distinct components: queue management for proposed changes, policy determination module that identifies relevant policies, policy check module that validates changes against policies, and enforcement level assessment. This segmentation makes the complex validation system more manageable and systematic

Inventive Principle:
Principle #1Segmentation

3Loss of information

If policy violation detection is performed before change application, then loss of information is reduced by preventing unintended configurations, but time consumption increases due to additional validation steps

Engineering Contradiction:
Improveconfiguration integrityVSAvoidchange implementation time
Core Design Contradiction:
Loss of informationVSLoss of time

Solution Approach 1:

The system performs policy violation detection in advance by queuing proposed changes and executing policy checks before applying changes to the IT infrastructure. This preliminary validation prevents unintended configurations and information loss while managing time through efficient queue processing

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS20230274230A1Plan validation and policy checks for information technology environments
Publication Date: 2023.08.31 SCALR INC
  • US20230274230A1 patent drawing
  • US20230274230A1 patent drawing
  • US20230274230A1 patent drawing

AI summary

Embodiments are directed to methods and systems for information technology (IT) resource management in workspaces maintaining configurations of API-manageable resources. In various embodiments the method includes queuing a run including a plan of proposed changes to a configuration maintained by a first workspace, and determining one or more policies associated with the first workspace. In various embodiments, the method includes determining a policy check of the first plan indicating that the proposed changes to the configuration would violate a policy in the one or more policies and indicating an enforcement parameter for the violated policy. In various embodiments, the method includes, prior to an apply of the first plan, notifying a user of the policy check by indicating the violated policy and the enforcement level parameter of the violated policy.