IP Library Granted Patent US 12683931
Granted Patent B2
US 12683931 · App. 17/872,037 · Granted Jul 14, 2026

Edge platform service mesh with connectivity module for heterogeneous endpoints

Inventors: Anurag Sharma (Cedar Park, TX); Michael Emery Brown (Austin, TX); Daniel E. Cummins (Hudson, NH); Eric Williams (Champaign, IL); Dominique Prunier (Montreal, CA)
Assignee: Dell Products L.P.
H04L63/0281H04L12/66H04L67/51
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12683931
App. No.
17/872,037
Granted
Jul 14, 2026
Kind
B2
Abstract

A disclosed edge computing platform includes an edge orchestrator (EO) and one or more distributed endpoints. The EO includes an edge proxy, an edge control plane resource, and a service mesh. The service mesh includes a plurality of services, each of which is paired with a corresponding Envoy proxy. The edge proxy communicatively couples the service mesh to a mesh communication tunnel. The edge control plane resource is configured to enable secure routing based on edge estate data maintained in an external store and ownership authorization data in accordance with a suitable authentication technology (e.g. FDO). Each distributed endpoint includes a downstream connectivity module (DCM) including a DCM proxy coupling the distributed endpoint to the mesh communication tunnel. The distributed endpoints may include edge compute endpoints and external compute fabrics. Disclosed teachings enable secure service-to-service communication across the entire edge estate irrespective of types and location of services.

Claims (37)

1 . An edge computing platform, comprising:

an edge orchestrator (EO), wherein the EO includes:

a service mesh including a plurality of services, each of which is paired with a corresponding network proxy;

an edge proxy communicatively coupling the service mesh to a mesh communication tunnel; and

an edge control plane resource coupled to the service mesh wherein the edge control plane resource is configured to enable secure routing based on edge estate data and ownership authorization data; and

a plurality of distributed endpoints, wherein each of the plurality of distributed endpoints includes:

one or more distributed endpoint resources; and

a downstream connectivity module (DCM) including a DCM proxy coupling the distributed endpoint to the mesh communication tunnel;

wherein the plurality of distributed endpoints include:

a first edge compute endpoint (ECE) comprising an Internet of Things (IOT) gateway device ECE, wherein the DCM of the first ECE is implemented as a single binary executable within an operating system of the IoT gateway device ECE;

a second ECE comprising a server ECE wherein the DCM of the second ECE exposes a host OS via a management controller of the server ECE.

2 . The platform of claim 1 , wherein each network proxy comprises an envoy proxy.

3 . The platform of claim 1 , wherein the edge control plane resource comprises an envoy xDS control plane.

4 . The platform of claim 1 , further comprising:

an edge estate database indicative of edge compute endpoints and a service inventory.

5 . A method for use in an edge computing platform that includes an edge orchestrator (EO), wherein the EO includes, a service mesh including a plurality of services, each of which is paired with a corresponding network proxy, an edge proxy communicatively coupling the service mesh to a mesh communication tunnel and an edge control plane resource coupled to the service mesh, wherein the method comprises:

providing a plurality of distributed endpoints, wherein each of the plurality of distributed endpoints includes: one or more distributed endpoint resources and a downstream connectivity module (DCM) including a DCM proxy coupling the distributed endpoint to the mesh communication tunnel; and

incorporating each of the plurality of distributed endpoints into the edge computing platform by coupling each of the DCMs to the mesh communication tunnel;

wherein the plurality of distributed endpoints include:

a first edge compute endpoint (ECE) comprising an Internet of Things (IOT) gateway device ECE, wherein the DCM of the first ECE is implemented as a single binary executable within an operating system of the IoT gateway device ECE; and

a second ECE comprising a server ECE wherein the DCM of the second ECE exposes a host OS via a management controller of the server ECE.

6 . The method of claim 5 , wherein each network proxy comprises an envoy proxy.

7 . The method of claim 5 , wherein the edge control plane resource comprises an envoy xDS control plane.

8 . The method of claim 5 , further comprising:

an edge estate database indicative of edge compute endpoints and a service inventory.

9 . An information handling system, comprising

a central processing unit (CPU); and

a memory, accessible to the CPU, including process-executable instructions that, when executed by the CPU, cause the system to perform operations including:

providing a plurality of distributed endpoints, wherein each of the plurality of distributed endpoints includes: one or more distributed endpoint resources and a downstream connectivity module (DCM) including a DCM proxy coupling the distributed endpoint to the mesh communication tunnel; and

incorporating each of the plurality of distributed endpoints into the edge computing platform by coupling each of the DCMs to the mesh communication tunnel;

wherein the plurality of distributed endpoints include:

a first edge compute endpoint (ECE) comprising an Internet of Things (IoT) gateway device ECE, wherein the DCM of the first ECE is implemented as a single binary executable within an operating system of the IoT gateway device ECE; and

a second ECE comprising a server ECE wherein the DCM of the second ECE exposes a host OS via a management controller of the server ECE.

10 . The information handling system of claim 9 , wherein each network proxy comprises an envoy proxy.

11 . The information handling system of claim 9 , wherein the edge control plane resource comprises an envoy xDS control plane.

12 . The information handling system of claim 9 , further comprising:

an edge estate database indicative of edge compute endpoints and a service inventory.