Policy Processor for Distributed Network Configuration Management
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Managing the configuration of numerous assets in distributed computing networks, such as enterprise networks, is inefficient when done individually, necessitating a centralized configuration management solution to streamline policy enforcement and conflict resolution.
Innovation Solution
A policy processor system that enables IT managers to declare policies, automatically enacting them across the network using standard protocols and data models, with a conflict resolution model to handle incompatible policies, and includes a document processor, rule processor, and graph processor to evaluate and enforce policy rules effectively.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If individual asset management is used, then each asset can be managed independently, but the management efficiency decreases significantly when dealing with numerous assets
Solution Approach 1:
The patent combines multiple policy management functions into a centralized configuration management system that handles numerous assets collectively. The policy processor evaluates and enacts policies across multiple assets simultaneously, merging individual management tasks into a unified workflow that improves efficiency while maintaining the ability to manage each asset independently when needed.
2Productivity
If centralized configuration management is implemented, then management efficiency improves, but the system complexity increases
Solution Approach 1:
The centralized configuration management system is segmented into distinct functional components: a policy processor for evaluating policies, a conflict resolution model for handling incompatible policies, and a mechanism for enforcing policies. This segmentation allows the system to manage complexity through modular design while maintaining centralized control and high management efficiency.
3Reliability
If multiple policies are enforced simultaneously, then comprehensive configuration control is achieved, but policy conflicts arise that require resolution
Solution Approach 1:
The patent introduces a conflict resolution model as an intermediary component between policy evaluation and policy enforcement. This mediator automatically resolves conflicts between incompatible policies by applying predefined resolution rules, thereby maintaining comprehensive configuration control while reducing the complexity of manual conflict resolution.
4Extent of automation
If automated policy enactment is implemented, then operational efficiency improves, but the need for conflict resolution mechanisms increases system complexity
Solution Approach 1:
The system performs preliminary conflict resolution through the conflict resolution model before policy enactment occurs. By pre-establishing resolution rules and evaluating potential conflicts in advance, the system automates the entire policy enforcement process including conflict resolution, thereby maintaining high automation levels while managing complexity through predefined resolution strategies.
Data Source
AI summary
A policy processor is described that may be used to implement a system for managing the configuration of assets in a distributed computing network, such as an enterprise network. The policy processor resides on a managed node in the distributed computing network and operates to receive, evaluate and enact policies issued by one or more policy authorities in the distributed computing network. The policy processor utilizes a conflict resolution model to determine which policy rules included within the policies should be put into effect and which should not.


