Streamlined installation and management of remote computing applications
A system for conserving computing and operator resources by streamlining the installation and management of applications on a remote host system, such as a cloud-based system. The system may receive from an operator, a requested modification of an application installation image stored in a secure registry of the remote host system. In response, the system may authenticate the operator, and verify that the requested modification is a permitted modification. The system can also transmit a notification of the requested modification to other operators to allow the other operators an opportunity to object to the requested modification. In the absence of objections, the system may cause the requested modification to be executed.
1 . A system comprising:
a processor;
a memory communicatively coupled to the processor, the memory including instructions that are executable by the processor to cause the processor to perform operations comprising:
receiving, over a network, from an operator of a plurality of operators, a requested modification of an application installation image stored in a secure registry of a remote host system;
authenticating an identity of the operator and determining that the operator is permitted to make the requested modification based on constraints associated with an authorized access level assigned to the operator;
verifying that the requested modification is a permitted modification by comparing the requested modification to a stored set of categories of modifications that have been identified as permissible by the plurality of operators;
transmitting a notification of the requested modification to each operator of the plurality of operators who is authorized to manage or install the application installation image, the notification identifying the operator and including or enabling a feedback interface for receiving and logging objections to the requested modification by the other operators of the plurality of operators within a predefined length of time, the transmitting occurring only after verifying that the requested modification is a permitted modification;
in response to determining that the predefined length of time after transmitting the notification has ended, determining an absence of any logged objections to the requested modification by any of the other operators of the plurality of operators during the predefined length of time; and
based on the absence of any logged objections by any of the other operators of the plurality of operators within the predefined length of time, causing the requested modification to be executed.
2 . The system of claim 1 , wherein authenticating the identity of the operator includes assigning a unique authentication token to the operator, the unique authentication token transmissible with communications between the operator and the remote host system, and usable to authenticate the operator to the remote host system and to identify the operator to other operators of the plurality of operators.
3 . The system of claim 1 , wherein the memory further includes:
the stored set of categories of modifications; and
an operator objections log that is configured to temporarily store objections raised in response to a requested installation or modification of an application installation image, by any operator of the plurality of operators who is authorized to manage or install the application installation image, the operator objections log communicatively coupled to the feedback interface.
4 . The system of claim 1 , wherein the modification to the application installation image is replacement of the application installation image with a new application installation image.
5 . The system of claim 1 , wherein:
the system includes a local portion that is securely separated from a cloud-based portion;
the remote host system is associated with the cloud-based portion and is configured as a wire payment initiation system that utilizes at least one physical server or virtual server of a cloud services provider; and
the processor is a component of the remote host system.
6 . The system of claim 1 , further comprising:
an authentication module configured to authenticate an identity of each operator of the plurality of operators using password-based, certification-based, token-based, or multi-factor identification authentication techniques;
an authorization module configured to regulate an ability of each operator of the plurality of operators to access, interact with, or modify applications, application installation images, or other elements of the remote host system, by determining an authorized access level assigned to each operator and applying access level-based constraints to actions of the operators; and
a verification module configured to verify that a requested modification of an application installation image is a permitted modification by comparing the requested modification to a stored set of categories of permitted modifications and to, at least in part, cause notifications of requested modifications to application installation images to be transmitted each operator of the plurality of operators who is authorized to manage or install the application installation image.
7 . The system of claim 1 , wherein the instructions are further executable by the processor to cause the processor to, after causing the requested modification to be executed:
deploy the application installation image having the requested modification to create a container; and
run the container.
8 . A computer-implemented method comprising:
receiving, by a processor, over a network, from an operator of a plurality of operators, a requested modification of an application installation image stored in a secure registry of a remote host system;
authenticating, by the processor, an identity of the operator and determining that the operator is permitted to make the requested modification based on constraints associated with an authorized access level assigned to the operator;
verifying, by the processor, that the requested modification is a permitted modification, by comparing the requested modification to a stored set of categories of modifications that have been identified as permissible by the plurality of operators;
transmitting, by the processor, a notification of the requested modification to each operator of the plurality of operators who is authorized to manage or install the application installation image, the notification identifying the operator and including or enabling a feedback interface for receiving and logging objections to the requested modification by the other operators of the plurality of operators within a predefined length of time, the transmitting occurring only after verifying that the requested modification is a permitted modification;
in response to determining that the predefined length of time after transmitting the notification has ended, determining, by the processor, an absence of any logged objections to the requested modification by any of the other operators of the plurality of operators during the predefined length of time; and
based on the absence of any logged objections by any of the other operators of the plurality of operators within the predefined length of time, causing the requested modification to be executed.
9 . The computer-implemented method of claim 8 , further comprising authenticating, by the processor, the identity of the operator by assigning a unique authentication token to the operator, the unique authentication token transmitted with communications between the operator and the remote host system, and used to authenticate the operator to the remote host system and to identify the operator to other operators of the plurality of operators.
10 . The computer-implemented method of claim 8 , further comprising temporarily storing in an operator objections log, operator objections that are raised in response to a requested installation or modification of an application installation image by any operator of the plurality of operators who is authorized to manage or install the application installation image, and are received by the processor via the feedback interface.
11 . The computer-implemented method of claim 8 , wherein the application installation image is modified by replacing the application installation image with a new application installation image.
12 . The computer-implemented method of claim 8 , wherein the request to execute an action is a request to process an electronic transaction, and the application associated with the application installation image is a transaction processing application.
13 . The computer-implemented method of claim 8 , further comprising, after causing the requested modification to be executed:
creating a container by deploying the application installation image having the requested modification; and
running the container.
14 . The computer-implemented method of claim 8 , further comprising determining, by the processor, whether a given operator of the plurality of operators has accessed the feedback interface after transmitting of the notification of the requested modification.
15 . A non-transitory computer-readable medium comprising instructions that are executable by a processor for causing the processor to perform operations comprising:
receiving, over a network, from an operator of a plurality of operators, a requested modification of an application installation image stored in a secure registry of a remote host system;
authenticating an identity of the operator and determining that the operator is permitted to make the requested modification based on constraints associated with an authorized access level assigned to the operator;
verifying that the requested modification is a permitted modification by comparing the requested modification to a stored set of categories of modifications that have been identified as permissible by the plurality of operators;
transmitting a notification of the requested modification to each operator of the plurality of operators who is authorized to manage or install the application installation image, the notification identifying the operator and-including or enabling a feedback interface for receiving and logging objections to the requested modification by the other operators of the plurality of operators within a predefined length of time, the transmitting occurring only after verifying that the requested modification is a permitted modification;
in response to determining that the predefined length of time after transmitting the notification has ended, determining an absence of any logged objections to the requested modification by any of the other operators of the plurality of operators during the predefined length of time; and
based on the absence of any logged objections by any of the other operators of the plurality of operators within the predefined length of time, causing the requested modification to be executed.
16 . The non-transitory computer-readable medium of claim 15 , wherein authenticating the identity of the operator includes assigning a unique authentication token to the operator, the unique authentication token transmissible with communications between the operator and the remote host system, and usable to authenticate the operator to the remote host system and to identify the operator to other operators of the plurality of operators.
17 . The non-transitory computer-readable medium of claim 15 , wherein the instructions are further executable by the processor to cause the processor to determine an authorized access level for each operator of the plurality of operators, the authorized access level defining constraints on modifications a given operator is permitted to make to the application installation image.
18 . The non-transitory computer-readable medium of claim 15 , wherein the modification to the application installation image is replacement of the application installation image with a new application installation image.
19 . The non-transitory computer-readable medium of claim 15 , wherein:
the system includes a local portion that is securely separated from a cloud-based portion;
the remote host system is associated with the cloud-based portion and is configured as a wire payment initiation system that utilizes at least one physical server or virtual server of a cloud services provider; and
the processor is a component of the remote host system.
20 . The non-transitory computer-readable medium of claim 15 , wherein the instructions are further executable by the processor to cause the processor to, after causing the requested modification to be executed:
deploy the application installation image having the requested modification to create a container; and
run the container.