IP Library Granted Patent US 12,184,650
Granted Patent B2
US 12,184,650 · App. 17/526,777 · Granted Dec 31, 2024

Scalable and secure edge cluster registration

Inventors: Jonathan Hal Cope (Leander, TX); Huamin Chen (Westford, MA); Ricardo Noriega De Soto (Madrid, ES); Frank Alexander Zdarsky (Karlsruhe, DE)
Assignee: Red Hat, Inc.
H04L63/0884H04L61/2596H04L67/141H04L67/56G06F9/45533
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,184,650
App. No.
17/526,777
Granted
Dec 31, 2024
Kind
B2
Abstract

A method includes initiating, by a device manager associated with a cluster manager proxy, a connection with a cluster of computing devices, wherein initiating the connection includes providing first credentials to the cluster of computing devices to access the cluster manager proxy. The method further includes receiving, at the cluster manager proxy, a first request to register the cluster of computing devices with a cluster manager, the first request including the first credentials to access the cluster manager proxy and sending, from the cluster manager proxy to the cluster manager, a second request to register the cluster of computing devices with the cluster manager, the second request including second credentials to access the cluster manager.

Claims (55)

1. A method comprising:

initiating, by a device manager associated with a cluster manager proxy, a connection with a cluster of computing devices, wherein initiating the connection comprises providing first credentials to the cluster of computing devices to access the cluster manager proxy;

receiving, at a processing device executing the cluster manager proxy, a first request to register the cluster of computing devices with a cluster manager, the first request comprising the first credentials to access the cluster manager proxy and information associated with the cluster, the information comprising registration information of the cluster to allow for workload management by the cluster manager upon registration of the cluster;

retrieving, by the cluster manager proxy, second credentials associated with access of the cluster manager;

storing, by the cluster manager proxy, the second credentials;

generating, by the cluster manager proxy, a second request to register the cluster of computing devices with the cluster manager, the second request comprising the second credentials and the information associated with the cluster; and

sending, from the processing device executing the cluster manager proxy to the cluster manager, the second request to register the cluster of computing devices with the cluster manager, based on the information associated with the cluster included in the second request.

2. The method of claim 1 , further comprising:

receiving, by the cluster manager proxy, one or more workload instructions from the cluster manager; and

forwarding, by the cluster manager proxy, the one or more workload instructions to the cluster of computing devices.

3. The method of claim 2 , wherein forwarding the one or more workload instructions to the cluster of computing devices comprises:

translating, by the cluster manager proxy, a destination address of the one or more workload instructions from the cluster manager proxy to the cluster of computing devices and a source address of the one or more workload instructions from the cluster manager to the cluster manager proxy.

4. The method of claim 1 , wherein the cluster of computing devices does not have access to the second credentials.

5. The method of claim 1 , wherein initiating the connection to the cluster of computing devices comprises:

bootstrapping the cluster of computing devices to communicate with the cluster manager proxy.

6. The method of claim 5 , further comprising:

in response to receiving the first request to register the cluster of computing devices with the cluster manager, authenticating that the cluster of computing devices has been bootstrapped by the device manager.

7. The method of claim 1 , wherein the cluster of computing devices is an edge computing cluster.

8. A system comprising:

a memory; and

a processing device operatively coupled to the memory, the processing device to:

initiate, by a device manager associated with a cluster manager proxy, a connection with a cluster of computing devices, wherein initiating the connection comprises providing first credentials to the cluster of computing devices to access the cluster manager proxy;

receive, at the cluster manager proxy, a first request to register the cluster of computing devices with a cluster manager, the first request comprising the first credentials to access the cluster manager proxy and information associated with the cluster, the information comprising registration information of the cluster to allow for workload management by the cluster manager upon registration of the cluster;

retrieve, by the cluster manager proxy, second credentials associated with access of the cluster manager

store, by the cluster manager proxy, the second credentials;

generate, by the cluster manager proxy, a second request to register the cluster of computing devices with the cluster manager, the second request comprising the second credentials and the information associated with the cluster; and

send, by the cluster manager proxy to the cluster manager, the second request to register the cluster of computing devices with the cluster manager, based on the information associated with the cluster included in the second request.

9. The system of claim 8 , wherein the processing device is further to:

receive, by the cluster manager proxy, one or more workload instructions from the cluster manager; and

forward, by the cluster manager proxy, the one or more workload instructions to the cluster of computing devices.

10. The system of claim 9 , wherein to forward the one or more workload instructions to the cluster of computing devices, the processing device is to:

translate, by the cluster manager proxy, a destination address of the one or more workload instructions from the cluster manager proxy to the cluster of computing devices and a source address of the one or more workload instructions from the cluster manager to the cluster manager proxy.

11. The system of claim 8 , wherein the cluster of computing devices does not have access to the second credentials.

12. The system of claim 8 , wherein to initiate the connection to the cluster of computing devices, the processing device is to:

bootstrap the cluster of computing devices to communicate with the cluster manager proxy.

13. The system of claim 12 , wherein the processing device is to:

in response to receiving the first request to register the cluster of computing devices with the cluster manager, authenticate that the cluster of computing devices has been bootstrapped by the device manager.

14. The system of claim 8 , wherein the cluster of computing devices is an edge computing cluster.

15. A non-transitory computer-readable storage medium including instructions that, when executed by a processing device, cause the processing device to:

initiate, by a device manager associated with a cluster manager proxy, a connection with a cluster of computing devices, wherein initiating the connection comprises providing first credentials to the cluster of computing devices to access the cluster manager proxy;

receive, by the processing device executing the cluster manager proxy, a first request to register the cluster of computing devices with a cluster manager, the first request comprising the first credentials to access the cluster manager proxy and information associated with the cluster, the information comprising registration information of the cluster to allow for workload management by the cluster manager upon registration of the cluster;

retrieve, by the cluster manager proxy, second credentials associated with the cluster manager;

store, by the cluster manager proxy, the second credentials;

generate, by the cluster manager proxy, a second request to register the cluster of computing devices with the cluster manager, the second request comprising the second credentials and the information associated with the cluster; and

send, from the processing device executing the cluster manager proxy to the cluster manager, the second request to register the cluster of computing devices with the cluster manager, based on the information associated with the cluster included in the second request.

16. The non-transitory computer-readable storage medium of claim 15 , wherein the processing device is further to:

receive, by the cluster manager proxy, one or more workload instructions from the cluster manager; and

forward, by the cluster manager proxy, the one or more workload instructions to the cluster of computing devices.

17. The non-transitory computer-readable storage medium of claim 16 , wherein to forward the one or more workload instructions to the cluster of computing devices, the processing device is to:

translate, by the cluster manager proxy, a destination address of the one or more workload instructions from the cluster manager proxy to the cluster of computing devices and a source address of the one or more workload instructions from the cluster manager to the cluster manager proxy.

18. The non-transitory computer-readable storage medium of claim 15 , wherein the cluster of computing devices does not have access to the second credentials.

19. The non-transitory computer-readable storage medium of claim 15 , wherein to initiate the connection to the cluster of computing devices, the processing device is to:

bootstrap the cluster of computing devices to communicate with the cluster manager proxy.

20. The non-transitory computer-readable storage medium of claim 19 , wherein the processing device is to:

in response to receiving the first request to register the cluster of computing devices with the cluster manager, authenticate that the cluster of computing devices has been bootstrapped by the device manager.

Assignments (2)
CHANGE OF NAME Recorded Mar 3, 2026
From: RED HAT, INC.
To: RED HAT, LLC
Reel/Frame 074913/0759 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 15, 2021
From: COPE, JONATHAN HAL; CHEN, HUAMIN; DE SOTO, RICARDO NORIEGA; ZDARSKY, FRANK ALEXANDER
To: RED HAT, INC.
Reel/Frame 058116/0742 →