Abstract: A secure computing system includes a plurality of application nodes, each node including a device address, a platform address, and a node ID. A mapping is maintained between each of the node IDs and the platform addresses. A mapping is also maintained between each of the platform addresses and the device addresses. An analyzer analyzes communication to application nodes to detect a predetermined event. In response to the detection of an event, a reconfigurator may change a platform address of one or more of the application nodes. The mappings of addresses are updated in response to the change. A consensus state maintainer may ensure that application nodes communicating with each other are provided with the updated mapping. By changing the platform addresses of the application nodes, an ability of an external threat to communicate with the application nodes may be reduced.
Type:
Grant
Filed:
October 4, 2012
Date of Patent:
July 15, 2014
Assignee:
Lonocloud, Inc.
Inventors:
Ingolf Krueger, Hossein Eslambolchi, Markus Kaltenbach
Abstract: A secure computing system includes a plurality of application nodes, each node including a device address, a platform address, and a node ID. A mapping is maintained between each of the node IDs and the platform addresses. A mapping is also maintained between each of the platform addresses and the device addresses. An analyzer analyzes communication to application nodes to detect a predetermined event. In response to the detection of an event, a reconfigurator may change a platform address of one or more of the application nodes. The mappings of addresses are updated in response to the change. A consensus state maintainer may ensure that application nodes communicating with each other are provided with the updated mapping. By changing the platform addresses of the application nodes, an ability of an external threat to communicate with the application nodes may be reduced.
Type:
Application
Filed:
October 4, 2012
Publication date:
January 2, 2014
Applicant:
LONOCLOUD, INC.
Inventors:
Ingolf Krueger, Hossein Eslambolchi, Markus Kaltenbach
Abstract: Platforms, systems, software, and methods for deploying and maintaining distributed computing, networking and storage comprising a configuration of dedicated service meshes. The invention further comprising a module for dynamically managing physical nodes; a module for dynamically managing nodes on physical nodes; a module for dynamically managing services/workers on nodes; a module for governing communication within the system and with the system; a plurality of communication endpoints; a plurality of services, wherein each service is associated with one or more endpoints, wherein services communicate by message exchange via their endpoints; a module for grouping nodes into clusters; a module for grouping endpoints into meshes such that all member services of a mesh can be addressed as a whole or as pertinent subsets thereof; and a module for dynamically effecting topology changes.