IP Library Granted Patent US 11,599,522
Granted Patent B2
US 11,599,522 · App. 16/667,553 · Granted Mar 7, 2023

Hardware trust boundaries and graphs in a data confidence fabric

Inventors: Stephen James Todd (Center Conway, NH); Jason A. Shepherd (Austin, TX); Gaurav Chawla (Austin, TX); Aurelian Dumitru (Round Rock, TX); Jimmy Doyle Pike (Georgetown, TX)
Assignee: EMC IP HOLDING COMPANY LLC
G06F16/2365G06F16/9024G06F21/50
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,599,522
App. No.
16/667,553
Filed
Oct 29, 2019
Granted
Mar 7, 2023
Kind
B2
Art Unit
2152
USPC
707/690
Abstract

Hardware trust boundaries in a data confidence fabric are provided. Nodes in a data confidence fabric are provisioned with identifies and confidence scores. Hardware-based trust insertion technologies are applied to data in the data confidence fabric. Protocols allow nodes to join the data confidence fabric and be aware of other nodes. Paths of data can be graphed and audited.

Claims (23)

1. A data confidence fabric comprising:

perimeter nodes, wherein each of the perimeter nodes is configured with a hardware-based trust insertion technology;

internal nodes, wherein each of the internal nodes is configured with a hardware-based trust insertion technology;

wherein the perimeter nodes are configured to provide a trust boundary for the data confidence fabric, and wherein the perimeter nodes and the internal nodes through which data passes each apply a trust insertion technology to the data such that hardware based confidence information is added to the data flowing through the data confidence fabric, each hardware based confidence information comprising a confidence score of hardware of one of the perimeter nodes and internal nodes.

2. The data confidence fabric of claim 1 , further comprising a plurality of devices configured to generate the data, wherein the data is ingested into the data confidence fabric through the perimeter nodes.

3. The data confidence fabric of claim 1 , further comprising an application, wherein the application is configured to use the data and the confidence score of the data associated with the hardware-based trust insertion technologies.

4. The data confidence fabric of claim 1 , wherein the hardware-based trust insertion technologies include one or more of a secure computing enclave, a smart network interface card, immutable storage, an accelerator deterministic routing, routing while guaranteeing payload privacy.

5. The data confidence fabric of claim 1 , wherein at least one of the perimeter nodes and the internal nodes is configured with a join protocol that determines whether a requesting node joins the data confidence fabric.

6. The data confidence fabric of claim 5 , wherein the join protocol is configured to evaluate an identity of the requesting node, a score of the requesting node, and test a hardware-based insertion technology of the requesting node.

7. The data confidence fabric of claim 6 , further comprising a memory configured to store confidence information that includes a confidence score of the data attributable to the trust insertion technologies applied by the perimeter nodes and the internal nodes.

8. The data confidence fabric of claim 7 , wherein the confidence information includes an audit trail that identifies trust insertion technologies applied to the data and wherein a graph of the data flowing through the data confidence fabric can be determined from the confidence information.

9. The data confidence fabric of claim 1 , further comprising a memory storing rules, wherein the rules are configured to enable trust-based routing of the data within the data confidence fabric.

10. The data confidence fabric of claim 1 , wherein each perimeter node and each internal node is configured to compute its own trust score based on its own trust insertion technologies.

11. A node comprising:

a processor and a memory;

a trust insertion technology configured to perform a hardware-based trust insertion for data flowing through a data confidence fabric, wherein the hardware-based insertion is performed by applying the hardware-based trust insertion technology to the data such that the data is associated with a confidence score associated with the hardware-based trust insertion technology;

wherein the memory is configured to store an identity and the confidence score associated with the hardware-based trust insertion technology, wherein the identity is configured to be verified;

wherein the memory is configured to store a join protocol configured to add nodes to the data confidence fabric, the join protocol is configured to initiate a test of a hardware capability of the requesting node.

12. The node of claim 11 , wherein the join protocol is configured to verify an identity of a requesting node requesting to join the data confidence fabric and determine a confidence score of the requesting node.

13. The node of claim 12 , wherein the join protocol is configured for joining perimeter nodes or internal nodes to the data confidence fabric.

14. The node of claim 11 , wherein the trust insertion technology comprises one or more of a secure computing enclave, a smart network interface card, immutable storage, an accelerator deterministic routing, routing while guaranteeing payload privacy.

15. The node of claim 11 , wherein the memory is configured to store rules, the rules configured to establish paths for data in the data confidence fabric and trust based routing for the data.

16. The node of claim 11 , further comprising a table configured to store confidence information, the confidence information including scores applied by trust insertion technologies in the data confidence fabric and an audit path.

Assignments (10)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (051302/0528) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO WYSE TECHNOLOGY L.L.C.); SECUREWORKS CORP.
Reel/Frame 060438/0593 →
RELEASE OF SECURITY INTEREST AT REEL 051449 FRAME 0728 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.; SECUREWORKS CORP.; EMC CORPORATION
Reel/Frame 058002/0010 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 7, 2020
From: TODD, STEPHEN JAMES; DUMITRU, AURELIAN
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 052597/0173 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Dec 31, 2019
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.; SECUREWORKS CORP.; EMC CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 051449/0728 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Dec 16, 2019
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.; SECUREWORKS CORP.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 051302/0528 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 29, 2019
From: CHAWLA, GAURAV; PIKE, JIMMY DOYLE
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 050856/0126 →
Continuity (1)
Related Publication 20210124728A1 · Apr 29, 2021
Cited By (1)
US 12,705,629