TRUSTED AND CONNECTED MULTI-DOMAIN NODE CLUSTERS
A system includes an orchestrator to receive a first request for resources for a workload of a tenant and to select a first node cluster in a first compute domain to be provisioned for the workload. The system also includes a first security manager to run in a trusted execution environment of one or...
Saved in:
Main Authors | , , , |
---|---|
Format | Patent |
Language | English |
Published |
24.03.2022
|
Subjects | |
Online Access | Get full text |
Cover
Loading…
Summary: | A system includes an orchestrator to receive a first request for resources for a workload of a tenant and to select a first node cluster in a first compute domain to be provisioned for the workload. The system also includes a first security manager to run in a trusted execution environment of one or more processors to receive attestation results for a second node cluster from a second security manager in a second compute domain, and to establish the first node cluster and the second node cluster as a trusted group of node clusters for the workload based, at least in part, on determining that a first compute node in the first node cluster meets one or more security requirements of a workload execution policy associated with the workload and that the attestation results indicate that a second compute node in the second node cluster meets the one or more security requirements. |
---|---|
Bibliography: | Application Number: US202117541155 |