← USPTO Patent Grants

Contextual security policy engine for compute node clusters

Grant US12580967B2 Kind: B2 Mar 17, 2026

Assignee

DELL PRODUCTS L.P.

Inventors

Vinay Sawal, Viswanath Ponnuru, Igor Pedan, Sumanth Vidyadhara, Magesh Kumar Sivaswamy

Abstract

The technology described herein, which can be incorporated into a bare metal as a service environment, is generally directed towards monitoring retrieving and analyzing security configuration stored on recovery partition storage (e.g., OEM partition drives), which can contain critical logs, error state data, and boot critical security data. A backend security policy engine enforces security context configuration policy data, including to prevent malicious attacks on the backend services. Bare metal in-band compute device health is monitored by an out-of-band network using telemetry data services. When an unrecoverable system state is detected, the out-of-band network activates the recovery partition storage for recording the system sensitive logs, debug data and error states, which is stored as encrypted per security policies. Security policy is enforced, including on system logs, to prevent data tampering and/or malicious attacks. A recovery scenario is performed to restore operation of the compute device.

CPC Classifications

H04L 63/20 G06F 21/602 G06F 21/575

Filing Date

2023-08-02

Application No.

18363880

Claims

20