Invention Grant
- Patent Title: Configuration updates for access-restricted hosts
-
Application No.: US16179548Application Date: 2018-11-02
-
Publication No.: US10904011B2Publication Date: 2021-01-26
- Inventor: Justin Lee Werner , Gregory Alan Rubin , Matthew John Campagna , Michael Bentkofsky
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US NV Reno
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US NV Reno
- Agency: Hogan Lovells US LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/32 ; G06F9/4401 ; G06F9/445 ; G06F9/50 ; H04L12/24

Abstract:
A host machine operated for a specific purpose can have restricted access to other components in a multi-tenant environment in order to provide for the security of the host machine. The access restriction can prevent the host machine from obtaining updates to critical system-level configurations, but such information can be obtained through a signed command received to an API for the host machine. The command can be signed by a quorum of operators, and the host machine can be configured to verify the signatures and the quorum before processing the command. The host machine can store the updates to ephemeral storage as well as persistent storage, such that upon a reboot or power cycle the host machine can operate with current configuration data.
Public/Granted literature
- US20190089541A1 CONFIGURATION UPDATES FOR ACCESS-RESTRICTED HOSTS Public/Granted day:2019-03-21
Information query