Shrouded Virtual Server Deployment with Immutable Hypervisor

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Cloud computing clients face security concerns regarding data privacy, as they need assurance that their virtual servers are deployed on platforms with specific security features and that administrators cannot access their data, especially in multi-country deployments where data protection policies differ.

Innovation Solution

A method and system for deploying a shrouded virtual server that includes sending authentication information to a client device, deploying a preconfigured hypervisor in an immutable mode to prevent security setting changes, and using a preconfigured boot image to ensure secure deployment, thereby preventing administrators from accessing client data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If cloud providers deploy datacenters in each country to comply with data protection policies, then data security compliance is improved, but deployment cost and complexity increase

Engineering Contradiction:
Improvedata security complianceVSAvoiddeployment complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent uses virtualization to create virtual copies of server environments that can be deployed across multiple geographic locations. Instead of maintaining separate physical datacenter infrastructures in each country, the system creates virtual instances that can be replicated and distributed, reducing deployment complexity while maintaining security compliance through location-specific virtual server deployments

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent segments the physical infrastructure from the logical server environment by introducing virtualization layers. This allows the underlying physical datacenter to remain centralized while virtual servers can be logically distributed across different geographic locations to comply with local data protection policies, thereby reducing deployment complexity without sacrificing security compliance

Inventive Principle:
Principle #1Segmentation

2Reliability

If remote datacenter is located far from local datacenter for maximum protection, then disaster recovery capability is improved, but geographic constraints limit deployment options

Engineering Contradiction:
Improvedisaster recovery capabilityVSAvoiddeployment flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent adds a virtualization dimension to the traditional geographic disaster recovery model. Instead of relying solely on physical distance for disaster recovery, the system creates virtual replicas that can be deployed in different geographic locations, allowing organizations to achieve both maximum geographic separation for disaster protection and flexibility in choosing deployment locations based on specific needs rather than being constrained by country borders

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

3Ease of repair

If administrators have access to virtual server infrastructure for management, then system maintainability is improved, but data security is compromised

Engineering Contradiction:
Improvesystem maintainabilityVSAvoiddata security
Core Design Contradiction:
Ease of repairVSReliability

Solution Approach 1:

The patent extracts administrative management functions from the virtual server data plane by implementing dedicated management interfaces and out-of-band management channels. This separation allows administrators to maintain and manage the virtualization infrastructure without gaining access to the actual client data stored in the virtual servers, thereby maintaining system maintainability while preserving data security

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces management intermediaries such as hypervisor layers and management consoles that act as intermediaries between administrators and virtual server data. These intermediaries provide necessary management capabilities while preventing direct administrator access to client data, resolving the contradiction between maintainability and security

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9882901B2End-to-end protection for shrouded virtual servers
Publication Date: 2018.01.30 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US9882901B2 patent drawing
  • US9882901B2 patent drawing
  • US9882901B2 patent drawing

AI summary

Technical solutions are described for securely deploying a shrouded virtual server. An example method includes sending, by a host manager, authentication information of a hosting system to a client device in response to a request from the client device. The \method also includes receiving a request to deploy a virtual server using a shrouded mode. The method also includes deploying a preconfigured hypervisor on the hosting system, where the preconfigured hypervisor is deployed in an immutable mode that disables changes to security settings of the preconfigured hypervisor. The method also includes deploying, by the preconfigured hypervisor, a preconfigured boot image as an instance of the virtual server on the preconfigured hypervisor. The method also includes sending, by the host manager, an identifier of the virtual server for receipt by the client device.