IP Library Granted Patent US 10,764,357
Granted Patent B1
US 10,764,357 · App. 14/577,149 · Granted Sep 1, 2020

Compliance-based application deployment system and method for a cloud computing environment

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,764,357
App. No.
14/577,149
Granted
Sep 1, 2020
Kind
B1
Abstract

A compliance-based application deployment system for a cloud computing environment includes a computing system that executes a service to obtain a computing node compliance level for each of multiple computing nodes configured in the cloud computing environment. When a request is received to provision an application, the service provisions the application on one of the computing nodes having a specified compliance level included in the request.

Claims (58)

1. A compliance-based application deployment method comprising:

obtaining, using executable instructions stored in a non-transitory medium and executed on at least one processor, a compliance level for each of a plurality of computing nodes configured in a cloud computing environment;

generating, using the instructions, a standardized compliance specification instance;

appending to the standardized compliance specification instance, using the instructions, a compliance level metadata, wherein the compliance level metadata directly includes the obtained compliance level;

generating, using the instructions, a user interface on a display screen to receive a request to provision an application on the cloud computing environment, the request including a specified compliance level associated with the application, the request comprising an identification of a type of second application that is non-compliant with the application;

selecting, using the instructions, at least one compliant computing node from among the plurality of computing nodes, the obtained compliance level for the at least one compliant computing node meeting the specified compliance level, by:

retrieving the standardized compliance specification instance and extracting the obtained compliance level from the appended metadata of the standardized compliance specification instance;

comparing the obtained compliance level to the specified compliance level associated with the application; and

selecting the at least one compliant computing node based on a determination that the obtained compliance level is not below the specified compliance level;

provisioning, using the instructions, the application on the selected at least one computing node; and

monitoring, using the instructions, a configuration of the at least one computing node by a compliance detection service in communication with the at least one computing node, the compliance detection service updating the compliance level for each of the plurality of computing nodes in response to changes in the configuration of a respective computing node of the plurality of computing nodes;

wherein when an application of the specified type of second application that is non-compliant with the application is deployed to the at least one computing node based on the monitored configuration change of the at least one computing node, an at least second compliant computing node is selected from among the plurality of computing nodes and the application is provisioned on the selected at least second computing node.

2. The compliance-based application deployment method of claim 1 , further comprising generating the user interface to receive manual selection of the at least one computing node.

3. The compliance-based application deployment method of claim 2 , further comprising inhibiting the manual selection of a non-compliant computing node.

4. The compliance-based application deployment method of claim 2 , further comprising allowing the manual selection of a non-compliant computing node, and generating an alert message.

5. The compliance-based application deployment method of claim 1 , further comprising:

monitoring the compliance level on an ongoing basis; and

generating an alert message when the at least one computing node becomes non-compliant with the specified compliance level.

6. The compliance-based application deployment method of claim 1 , further comprising provisioning the application on the at least one computing node using an operations management application.

7. The compliance-based application deployment method of claim 1 , further comprising receiving at least one of a standard specified compliance level and a custom specified compliance level.

8. A compliance-based application deployment system for a cloud computing environment, the system comprising:

a computing system comprising at least one processor and at least one memory to store a service that is configured to, when executed by the at least one processor:

obtain a compliance level for each of a plurality of computing nodes configured in the a cloud computing environment;

generate a standardized compliance specification instance;

append a compliance level metadata to the standardized compliance specification instance, wherein the compliance level metadata directly includes the obtained compliance level;

generate a user interface on a display screen to receive a request to provision an application on the cloud computing environment, the request including a specified compliance level associated with the application, the request comprising an identification of a type of second application that is non-compliant with the application;

select at least one compliant computing node from among the plurality of computing nodes, the obtained compliance level for the at least one compliant computing node meeting the specified compliance level, by:

retrieving the standardized compliance specification instance and extracting the obtained compliance level from the appended metadata of the standardized compliance specification instance;

comparing the obtained compliance level to the specified compliance level associated with the application; and

selecting the at least on compliant computing node based on a determination that the obtained compliance level is not below the specified compliance level;

provision the application on the selected at least one computing node; and

monitor a configuration of the at least one computing node by a compliance detection service in communication with the at least one computing node, the compliance detection service updating the compliance level for each of the plurality of computing nodes in response to changes in the configuration of a respective computing node of the plurality of computing nodes;

wherein when an application of the specified type of second application that is non-compliant with the application is deployed to the at least one computing node based on the monitored configuration change of the at least one computing node, an at least second compliant computing node is selected from among the plurality of computing nodes and the application is provisioned on the selected at least second computing node.

9. The compliance-based application deployment system of claim 8 , wherein the service is further configured to generate the user interface to receive manual selection of the at least one computing node.

10. The compliance-based application deployment system of claim 9 , wherein the service is further configured to inhibit the manual selection of a non-compliant computing node.

11. The compliance-based application deployment system of claim 9 , wherein the service is further configured to allow the manual selection of a non-compliant computing node, and generate an alert message.

12. The compliance-based application deployment system of claim 8 , wherein the service is further configured to:

monitor the compliance level on an ongoing basis; and

generate an alert message when the computing node becomes non-compliant with the specified compliance level.

13. The compliance-based application deployment system of claim 8 , wherein the service is further configured to provision the application on the at least one computing node using an operations management application.

14. The compliance-based application deployment system of claim 8 , wherein the request comprises a Topology and Orchestration Specification for Cloud Applications (TOSCA) formatted message.

15. The compliance-based application deployment system of claim 8 , wherein the service is further configured to receive at least one of a standard specified compliance level and a custom specified compliance level.

16. A non-transitory, computer readable medium that is encoded with instructions that, when executed by at least one processor, is operable to perform at least the following:

obtaining a compliance level for each of a plurality of computing nodes configured in a cloud computing environment;

generating a standardized compliance specification instance;

appending a compliance level metadata to the standardized compliance specification instance, wherein the compliance level metadata directly includes the obtained compliance level;

generating a user interface on a display screen to receive a request to provision an application on the cloud computing environment, the request including a specified compliance level associated with the application, the request comprising an identification of a type of second application that is non-compliant with the application;

selecting at least one compliant computing node from among the plurality of computing nodes, the obtained compliance level for the at least one compliant computing node meeting the specified compliance level, by:

retrieving the standardized compliance specification instance and extracting the obtained compliance level from the appended metadata of the standardized compliance specification instance;

comparing the obtained compliance level to the specified compliance level associated with the application; and

selecting the at least one compliant computing node based on a determination that the obtained compliance level is not below the specified compliance level;

provisioning the application on the selected at least one computing node; and

monitoring a configuration of the at least one computing node by a compliance detection service in communication with the at least one computing node, the compliance detection service updating the compliance level for each of the plurality of computing nodes in response to changes in the configuration of a respective computing node of the plurality of computing nodes;

wherein when an application of the specified type of second application that is non-compliant with the application is deployed to the at least one computing node based on the monitored configuration change of the at least one computing node, an at least second compliant computing node is selected from among the plurality of computing nodes and the application is provisioned on the selected at least second computing node.

17. The non-transitory, computer readable medium that is encoded with instructions of claim 16 , further operable to perform generating the user interface to receive manual selection of the at least one computing node.

18. The non-transitory, computer readable medium that is encoded with instructions of claim 16 , further operable to perform:

monitoring the compliance level at an ongoing basis; and

generating an alert message when the computing node becomes non-compliant with the specified compliance level.

Assignments (6)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
MERGER Recorded Apr 14, 2020
From: VCE IP HOLDING COMPANY LLC
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 052398/0413 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 8, 2016
From: VCE COMPANY, LLC
To: VCE IP HOLDING COMPANY LLC
Reel/Frame 040576/0161 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 19, 2014
From: BONCZKOWSKI, JOSHUA L.; BASU, SANJAY; ELLERS, JAMES A.
To: VCE COMPANY, LLC
Reel/Frame 034558/0364 →