Remote Data Center Host Configuration via Secure Boot

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional methods for deploying and configuring data centers are complex, inefficient, and expose security risks due to the need for physical deployments and the use of protocols like DHCP and tftpboot over wide area networks, limiting scalability and responsiveness to changing business needs.

Innovation Solution

A system and method for remotely configuring and building hybrid data centers using a centralized location, where a processing system determines application requirements, generates a custom bootable ISO file, and remotely boots and configures compute hosts over a secure channel without pre-existing software resources, utilizing a static IP address and HTTPS protocol.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional physical deployment methods are used for data center configuration, then security risks are exposed and complexity increases, but deployment reliability and security are compromised

Engineering Contradiction:
Improvedeployment securityVSAvoiddeployment complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent replaces physical mechanical deployment processes with automated software-based provisioning. Configuration files and scripts are transmitted electronically to remotely boot and configure compute hosts, eliminating the need for physical presence at data center locations and reducing both security risks and operational complexity

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system enables self-service deployment where compute hosts automatically boot and configure themselves using received configuration files. The automated provisioning process eliminates manual intervention, reducing deployment complexity while maintaining security through controlled access mechanisms

Inventive Principle:
Principle #25Self-service

2Adaptability or versatility

If DHCP and tftpboot protocols are used over wide area networks for remote configuration, then network flexibility improves, but security vulnerabilities increase

Engineering Contradiction:
Improvenetwork flexibilityVSAvoidsecurity vulnerabilities
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces configuration files as an intermediary mechanism between the provisioning system and compute hosts. Instead of using vulnerable protocols like DHCP and tftpboot over wide area networks, the system transmits configuration data through secure channels, maintaining network flexibility while eliminating security vulnerabilities

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent extracts the configuration data from vulnerable network protocols and places it into secure, controlled configuration files. This separation allows the system to maintain network flexibility for legitimate operations while removing the security risks associated with traditional remote configuration protocols

Inventive Principle:
Principle #2Taking out (Extraction)

3Productivity

If manual deployment processes are used for data center setup, then control and precision are maintained, but productivity and responsiveness to business needs deteriorate

Engineering Contradiction:
Improvedeployment speedVSAvoiddeployment time
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by pre-configuring computation hosts with boot instructions and configuration files before deployment. This allows the system to rapidly provision new compute hosts without manual configuration steps, significantly improving productivity and reducing deployment time while maintaining control through automated processes

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12047236B2System and method for remote configuration of scalable datacenter
Publication Date: 2024.07.23 AT&T INTELLECTUAL PROPERTY I L P
  • US12047236B2 patent drawing
  • US12047236B2 patent drawing
  • US12047236B2 patent drawing

AI summary

Aspects of the subject disclosure may include, for example, determining, an application requirement for a server of a data center geographically separated from a central location. A configuration file adapted for the server according to the application requirement is obtained at the central location and a host processor located at the data center is selected according to the application requirement. A static IP address preassigned to an administrative portion of the selected host processor is identified. The selected host processor is initialized remotely over a wide area network via the administrative port without utilizing any software resources pre-existing at the data center. The initializing configures the selected host processor according to the configuration file to service the application requirement. Other embodiments are disclosed.