Systems and methods for associating a virtual machine with an access control right
    1.
    发明授权
    Systems and methods for associating a virtual machine with an access control right 有权
    将虚拟机与访问控制权关联的系统和方法

    公开(公告)号:US08943606B2

    公开(公告)日:2015-01-27

    申请号:US13875109

    申请日:2013-05-01

    申请人: RightScale, Inc.

    摘要: The present invention is related to associating a machine or virtual machine instance with an access control right in a cloud-based computing environment. In one aspect, the present invention relates to an apparatus for or a method of associating a machine or virtual machine instance with an access control right in a cloud-based computing environment. In various embodiments, the apparatus is capable of, and the method includes, the following: receiving, in a cloud-based computing environment, a request to perform an action; using an identifier for the machine or virtual machine instance to determine that the received request was sent by, or on behalf of, the machine or virtual machine instance; and identifying an access control right associated with the machine or virtual machine instance making the request, to determine whether to perform the action on behalf of, or grant access by, the machine or virtual machine instance.

    摘要翻译: 本发明涉及将机器或虚拟机实例与基于云的计算环境中的访问控制权相关联。 一方面,本发明涉及一种将机器或虚拟机实例与基于云的计算环境中的访问控制权相关联的装置或方法。 在各种实施例中,该装置能够并且该方法包括以下内容:在基于云的计算环境中接收执行动作的请求; 使用机器或虚拟机实例的标识符来确定所接收的请求是由机器或虚拟机实例发送的,或代表机器或虚拟机实例发送的; 以及识别与进行所述请求的所述机器或虚拟机实例相关联的访问控制权,以确定是否代表所述机器或虚拟机实例来执行所述动作,或者允许所述机器或虚拟机实例的访问。

    SYSTEMS AND METHODS FOR EFFICIENTLY MANAGING AND CONFIGURING VIRTUAL SERVERS

    公开(公告)号:US20120198345A1

    公开(公告)日:2012-08-02

    申请号:US13452740

    申请日:2012-04-20

    IPC分类号: G06F3/01

    CPC分类号: H04L67/00

    摘要: The present invention is related to providing faster and more efficient ways to deploy and manage virtual server configurations in a hosted virtual server service. Broadly, a web interface allows a user to set conditions upon which specific types of virtual servers will be instantiated or terminated on a third-party hosted virtual server service. For example, the user may wish to instantiate a new virtual server each time the load on existing virtual servers exceeds a predetermined threshold. The web interface may also allow a user to select from among a plurality of hosted virtual server services. The web interface may further allow a user to incorporate dynamic variables into configurations of instantiated virtual servers.

    DEPLOYMENT TEMPLATES WITH EMBEDDED PERMISSIONS
    3.
    发明申请
    DEPLOYMENT TEMPLATES WITH EMBEDDED PERMISSIONS 审中-公开
    具有嵌入式许可的部署模板

    公开(公告)号:US20160337356A1

    公开(公告)日:2016-11-17

    申请号:US14712487

    申请日:2015-05-14

    申请人: RightScale Inc.

    IPC分类号: H04L29/06

    CPC分类号: H04L63/10

    摘要: Systems and methods for authorizing execution of actionable data by receiving a request to enable third-party use of the actionable data, the request authorized by an account with a first set of permissions, and recording the first set of permissions in association with the actionable data, receiving a request to execute the actionable data, the request authorized by an account with a second set of permissions, determining that a unified set of permissions inclusive of the first set of permissions and the second set of permissions is sufficient to authorize execution of the actionable data, and authorizing execution of the actionable data responsive to the determination. Presented as an example of actionable data is a deployment template for provisioning resources in a cloud computing environment. The disclosed systems and methods are equally applicable to other forms and contexts of actionable data.

    摘要翻译: 通过接收允许第三方使用可操作数据的请求来授权执行可操作数据的系统和方法,由具有第一组权限的帐户授权的请求,以及与可操作数据相关联地记录第一组权限 ,接收执行所述可操作数据的请求,所述请求由具有第二组权限的帐户授权,确定包括所述第一组权限和所述第二组权限的统一的权限集合足以授权执行 可操作的数据,以及响应于确定来授权执行可操作数据。 作为可操作数据的示例呈现的是用于在云计算环境中配置资源的部署模板。 所公开的系统和方法同样适用于可操作数据的其他形式和上下文。

    Systems and methods for establishing cloud-based instances with independent permissions
    4.
    发明授权
    Systems and methods for establishing cloud-based instances with independent permissions 有权
    用于创建具有独立权限的基于云的实例的系统和方法

    公开(公告)号:US09215229B2

    公开(公告)日:2015-12-15

    申请号:US14317159

    申请日:2014-06-27

    申请人: RightScale Inc.

    IPC分类号: G06F21/00 H04L29/06 H04L29/08

    摘要: A method and system for facilitating management of cloud-based service instances, the system including one or more computing systems configured to communicate with at least one multi-tenant computing cloud, and configured to establish a cloud-based service instance hosted in the multi-tenant computing cloud and an access entity with permissions to access the established cloud-based service instance. The system can receive a request for the cloud-based service instance, the request authenticated as originating from a requestor; consult a set of access controls associated with the cloud-based service instance; determine, responsive to the consulting, if the request is allowable by the requestor; and enable, responsive to determining that the request is allowable by the requestor, the requestor to complete the request using a restricted access credential associated with the access entity.

    摘要翻译: 一种用于促进基于云的服务实例的管理的方法和系统,所述系统包括配置成与至少一个多租户计算云进行通信的一个或多个计算系统,并且被配置为建立在所述多租户计算云中托管的基于云的服务实例, 租户计算云和具有访问已建立的基于云的服务实例的权限的访问实体。 系统可以接收对基于云的服务实例的请求,该请求被认证为源自请求者; 请咨询与云服务实例相关联的一组访问控制; 确定,响应咨询,如果请求是请求者允许的; 并且响应于确定所述请求被所述请求者所允许,所述请求者使用与所述访问实体相关联的受限访问凭证来完成所述请求。

    SYSTEMS AND METHODS FOR ASSOCIATING A VIRTUAL MACHINE WITH AN ACCESS CONTROL RIGHT
    5.
    发明申请
    SYSTEMS AND METHODS FOR ASSOCIATING A VIRTUAL MACHINE WITH AN ACCESS CONTROL RIGHT 有权
    一种具有访问控制权的虚拟机的系统和方法

    公开(公告)号:US20140082699A1

    公开(公告)日:2014-03-20

    申请号:US13875109

    申请日:2013-05-01

    申请人: RIGHTSCALE, INC.

    IPC分类号: H04L29/06

    摘要: The present invention is related to associating a machine or virtual machine instance with an access control right in a cloud-based computing environment. In one aspect, the present invention relates to an apparatus for or a method of associating a machine or virtual machine instance with an access control right in a cloud-based computing environment. In various embodiments, the apparatus is capable of, and the method includes, the following: receiving, in a cloud-based computing environment, a request to perform an action; using an identifier for the machine or virtual machine instance to determine that the received request was sent by, or on behalf of, the machine or virtual machine instance; and identifying an access control right associated with the machine or virtual machine instance making the request, to determine whether to perform the action on behalf of, or grant access by, the machine or virtual machine instance.

    摘要翻译: 本发明涉及将机器或虚拟机实例与基于云的计算环境中的访问控制权相关联。 一方面,本发明涉及一种将机器或虚拟机实例与基于云的计算环境中的访问控制权相关联的装置或方法。 在各种实施例中,该装置能够并且该方法包括以下内容:在基于云的计算环境中接收执行动作的请求; 使用机器或虚拟机实例的标识符来确定所接收的请求是由机器或虚拟机实例发送的,或代表机器或虚拟机实例发送的; 以及识别与进行所述请求的所述机器或虚拟机实例相关联的访问控制权,以确定是否代表所述机器或虚拟机实例来执行所述动作,或者允许所述机器或虚拟机实例的访问。

    Systems and methods for establishing cloud-based instances with independent permissions
    6.
    发明授权
    Systems and methods for establishing cloud-based instances with independent permissions 有权
    用于创建具有独立权限的基于云的实例的系统和方法

    公开(公告)号:US08769644B1

    公开(公告)日:2014-07-01

    申请号:US14137226

    申请日:2013-12-20

    申请人: RightScale Inc.

    IPC分类号: G06F21/00 H04L29/06

    摘要: A method and system for facilitating management of cloud-based service instances, the system including one or more computing systems configured to communicate with at least one multi-tenant computing cloud, and configured to establish a cloud-based service instance hosted in the multi-tenant computing cloud and an access entity with permissions to access the established cloud-based service instance. The system can receive a request for the cloud-based service instance, the request authenticated as originating from a requestor; consult a set of access controls associated with the cloud-based service instance; determine, responsive to the consulting, if the request is allowable by the requestor; and enable, responsive to determining that the request is allowable by the requestor, the requestor to complete the request using a restricted access credential associated with the access entity.

    摘要翻译: 一种用于促进基于云的服务实例的管理的方法和系统,所述系统包括配置成与至少一个多租户计算云进行通信的一个或多个计算系统,并且被配置为建立在所述多租户计算云中托管的基于云的服务实例, 租户计算云和具有访问已建立的基于云的服务实例的权限的访问实体。 该系统可以接收对基于云的服务实例的请求,该请求被认证为源自请求者; 请咨询与云服务实例相关联的一组访问控制; 确定,响应咨询,如果请求是请求者允许的; 并且响应于确定所述请求被所述请求者所允许,所述请求者使用与所述访问实体相关联的受限访问凭证来完成所述请求。

    Systems and methods for efficiently managing and configuring virtual servers

    公开(公告)号:US08504920B2

    公开(公告)日:2013-08-06

    申请号:US13452740

    申请日:2012-04-20

    IPC分类号: G06F15/177

    CPC分类号: H04L67/00

    摘要: The present invention is related to providing faster and more efficient ways to deploy and manage virtual server configurations in a hosted virtual server service. Broadly, a web interface allows a user to set conditions upon which specific types of virtual servers will be instantiated or terminated on a third-party hosted virtual server service. For example, the user may wish to instantiate a new virtual server each time the load on existing virtual servers exceeds a predetermined threshold. The web interface may also allow a user to select from among a plurality of hosted virtual server services. The web interface may further allow a user to incorporate dynamic variables into configurations of instantiated virtual servers.

    Systems and methods for efficiently managing and configuring virtual servers

    公开(公告)号:US08489995B2

    公开(公告)日:2013-07-16

    申请号:US12050865

    申请日:2008-03-18

    IPC分类号: G06F15/177

    CPC分类号: H04L67/00

    摘要: The present invention is related to providing faster and more efficient ways to deploy and manage virtual server configurations in a hosted virtual server service. Broadly, a web interface allows a user to set conditions upon which specific types of virtual servers will be instantiated or terminated on a third-party hosted virtual server service. For example, the user may wish to instantiate a new virtual server each time the load on existing virtual servers exceeds a predetermined threshold. The web interface may also allow a user to select from among a plurality of hosted virtual server services. The web interface may further allow a user to incorporate dynamic variables into configurations of instantiated virtual servers.

    Systems and methods for cloud-deployments with imperatives

    公开(公告)号:US10574523B2

    公开(公告)日:2020-02-25

    申请号:US14996393

    申请日:2016-01-15

    申请人: RightScale Inc.

    IPC分类号: H04L29/08 H04L12/24 H04L29/06

    摘要: Systems and methods for facilitating cloud-computing provisioning using deployment templates. A deployment management system receives a deployment template that includes a declarative portion specifying a plurality of resources to be deployed and an imperative portion specifying at least one procedure for adding, reconfiguring, or terminating a resource. The deployment management system generates an enumeration of a set of resources deployed prior to implementing a transition based on the deployment template, and generates a second enumeration of resources prospectively representative of a deployment conformant with the template subsequent to implementing the transition. The deployment management system identifies difference between the enumerations and generates a transition plan including a sequence of procedures for implementing the deployment template. In some implementations, an administrator can modify the transition plan. In some implementations, the transition plan includes conditional logic sequences and/or operations triggered by events.

    SYSTEMS AND METHODS FOR CLOUD-DEPLOYMENTS WITH IMPERATIVES

    公开(公告)号:US20170207968A1

    公开(公告)日:2017-07-20

    申请号:US14996393

    申请日:2016-01-15

    申请人: RightScale Inc.

    IPC分类号: H04L12/24 H04L29/06 H04L29/08

    摘要: Systems and methods for facilitating cloud-computing provisioning using deployment templates. A deployment management system receives a deployment template that includes a declarative portion specifying a plurality of resources to be deployed and an imperative portion specifying at least one procedure for adding, reconfiguring, or terminating a resource. The deployment management system generates an enumeration of a set of resources deployed prior to implementing a transition based on the deployment template, and generates a second enumeration of resources prospectively representative of a deployment conformant with the template subsequent to implementing the transition. The deployment management system identifies difference between the enumerations and generates a transition plan including a sequence of procedures for implementing the deployment template. In some implementations, an administrator can modify the transition plan. In some implementations, the transition plan includes conditional logic sequences and/or operations triggered by events.