TRUSTED AND CONNECTED MULTI-DOMAIN NODE CLUSTERS

A system includes an orchestrator to receive a first request for resources for a workload of a tenant and to select a first node cluster in a first compute domain to be provisioned for the workload. The system also includes a first security manager to run in a trusted execution environment of one or...

Full description

Saved in:
Bibliographic Details
Main Authors Lal, Reshma, Severns-Williams, Christine E, Tarkhanyan, Anahit, Xu, Jianping
Format Patent
LanguageEnglish
Published 24.03.2022
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:A system includes an orchestrator to receive a first request for resources for a workload of a tenant and to select a first node cluster in a first compute domain to be provisioned for the workload. The system also includes a first security manager to run in a trusted execution environment of one or more processors to receive attestation results for a second node cluster from a second security manager in a second compute domain, and to establish the first node cluster and the second node cluster as a trusted group of node clusters for the workload based, at least in part, on determining that a first compute node in the first node cluster meets one or more security requirements of a workload execution policy associated with the workload and that the attestation results indicate that a second compute node in the second node cluster meets the one or more security requirements.
Bibliography:Application Number: US202117541155