VM Boot Remote Access via Communication Module and ACL
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing encryption methods for cloud virtual servers require direct interaction with encryption keys and passphrases during booting, leading to potential leakage of confidential information and suspension of the booting process in case of errors, necessitating manual administrator intervention.
Innovation Solution
A remote access method and system that utilizes a communication module during booting, enabling secure shell (SSH) access through an access control list (ACL) and key management service to handle errors and provide encryption settings without direct key/passphrase interaction.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If direct interface is used to receive encryption key and passphrase during booting, then encryption functionality is achieved, but confidential information may be leaked and booting process may be suspended
Solution Approach 1:
The patent introduces a remote terminal access function as an intermediary between the administrator and the virtual machine during booting. This intermediary enables error verification and handling without requiring direct administrator access to the virtual machine, thereby preventing confidential information leakage while maintaining booting reliability.
Solution Approach 2:
The patent applies preliminary action by establishing remote terminal access functionality before the booting process completes. This allows error verification and handling to be performed in advance during the booting phase, preventing booting suspension and ensuring reliable completion without direct administrator intervention.
2Ease of operation
If administrator directly accesses virtual machine for error handling, then booting errors can be verified, but encryption key exposure risk increases
Solution Approach 1:
The remote terminal access function serves as a mediator that enables administrators to verify and handle booting errors without directly accessing the virtual machine. This intermediary mechanism maintains ease of error handling while eliminating encryption key exposure risks by keeping the administrator isolated from the encrypted environment.
3Extent of automation
If communication module is applied during booting, then remote access is enabled, but system complexity increases
Solution Approach 1:
The patent applies universality by integrating the communication module into the existing booting process infrastructure. The remote terminal access function leverages existing booting components and protocols, enabling remote access automation without significantly increasing system complexity through multi-functional reuse of available resources.
Data Source
AI summary
A remote access method include acquiring a virtual machine image including a remote access function to be temporarily executed during booting of a virtual machine; generating the virtual machine using the virtual machine image; executing the remote access function included in the virtual machine image after booting of the virtual machine starts; and, in response to occurrence of an error during booting of the virtual machine, guiding an owner of the virtual machine through an access scheme to the remote access function of the virtual machine in which booting is pending based on the remote access function.


