Invention Grant
- Patent Title: Secure remote execution of infrastructure management
-
Application No.: US15383585Application Date: 2016-12-19
-
Publication No.: US10257263B1Publication Date: 2019-04-09
- Inventor: Richard Wagner
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US WA Seattle
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Hogan Lovells US LLP
- Main IPC: G06F15/173
- IPC: G06F15/173 ; H04L29/08 ; H04L12/66

Abstract:
Embodiments provide for the management of resources for an isolated sub-network without use of gateways or other such access mechanisms. A common executor sub-network logically sits between the isolated sub-network and resource provisioning infrastructure, enabling provisioning commands to be executed on behalf of a client in the isolated sub-network. A virtual endpoint enables request objects to be passed to an operations object store of the common executor sub-network. The request object can include information such as a command to be executed and a credential for authorizing the command. An executor service performs the necessary validations and authorizations, and causes the command to be executed on behalf of the client. Upon completion, a response object is provided that includes a result of the execution. The response object includes a limited amount of information, with a full response object being stored by the executor sub-network for auditing or other such purposes.
Information query