SECRET ROTATION IN A CLOUD SERVICE
    1.
    发明申请

    公开(公告)号:WO2023043564A1

    公开(公告)日:2023-03-23

    申请号:PCT/US2022/040673

    申请日:2022-08-18

    IPC分类号: H04L9/08 G06F21/60 G06F8/656

    摘要: The present technology provides a method to regenerate secrets while a version of the system is operational, thus avoiding the loss of availability that would have resulted from a system shutdown. The technology described herein may work in a computing context that assigns a first secret in an active role and a second secret in the backup role. The technology described herein activates a second instance of the service with the secret not being regenerated serving as the active role. The second instance is then moved to the production mode and the first version of the service is moved to the staging mode. A new secret is generated and then assigned to the first instance of the service while it runs in the staging mode. Once the secret rotation is complete, the primary service instance is then moved back to the production mode with the new secret configuration.

    SYSTEMS AND METHODS FOR ZERO DOWNTIME DISTRIBUTED SEARCH SYSTEM UPDATES

    公开(公告)号:WO2023034513A1

    公开(公告)日:2023-03-09

    申请号:PCT/US2022/042358

    申请日:2022-09-01

    申请人: STRIPE , INC.

    IPC分类号: G06F8/656 G06F8/71 G06F16/25

    摘要: A method and apparatus for performing search system upgrades is described. The method may include processing a software upgrade for a search system cluster distributed over one or more nodes, the one or more nodes comprising current search system data nodes. The method may also include allocating at least a set of one or more search system data nodes for the software upgrade including at least one upgraded search system data node. Furthermore, the method can include receiving, during the software upgrade, transaction data for a transaction, and receiving search requests to be executed by the search system cluster. Additionally, the method may include performing ingestion of all received transaction data comprising storing and indexing the transaction data in both the current search system data nodes and the at least one upgraded search system data node, and processing the search requests by the search system cluster against the current search system data nodes until the software upgrade is determined to be complete.

    INSTRUCTION UPDATES TO HARDWARE DEVICES
    4.
    发明申请

    公开(公告)号:WO2022271157A1

    公开(公告)日:2022-12-29

    申请号:PCT/US2021/038511

    申请日:2021-06-22

    IPC分类号: G06F8/656 G06F13/38

    摘要: In some examples, a computing device, includes a first hardware device, a first firmware component coupled to the first hardware device, a second hardware device, a bus, and a basic input/output system (BIOS). In some examples, the BIOS is coupled to the first hardware device and to the second hardware device by the bus. In some examples, during a boot sequence, the BIOS is to set the second hardware device to a reset state. In some examples, the BIOS is to update instructions to the first firmware component via the bus while the second hardware device is in the reset state. In some examples, the BIOS is to lock the bus after the instructions are updated.

    更新装置、更新方法、および、プログラム

    公开(公告)号:WO2022044270A1

    公开(公告)日:2022-03-03

    申请号:PCT/JP2020/032634

    申请日:2020-08-28

    IPC分类号: G06F8/656

    摘要: クラスタ構成の仮想マシンのソフトウェアを更新する更新装置1であって、動作中の予備系の第1の仮想マシン50-1と、ソフトウェア更新後の第2の仮想マシン50-1'とを制御する制御部12と、第2の仮想マシン50-1'の起動に用いる、更新後のソフトウェアを含むイメージファイル30を設定する設定部11と、を備え、制御部12は、イメージファイル30を用いて、第2の仮想マシン50-1'を起動し、第1の仮想マシン50-1に設定されたフローティングIPアドレス84を、第2の仮想マシン50-1'に設定し、第2の仮想マシン50-1'を、予備系の仮想マシン50-1'に切り替え、第1の仮想マシン50-1の前記フローティングIPアドレス84の設定を削除する。

    OS-MANAGED BIOS MODULES
    6.
    发明申请

    公开(公告)号:WO2021226783A1

    公开(公告)日:2021-11-18

    申请号:PCT/CN2020/089576

    申请日:2020-05-11

    IPC分类号: G06F8/656

    摘要: Systems, apparatuses and methods may provide technology for managing BIOS modules. The technology may include a boot controller to perform a boot procedure by loading and executing a basic input output system (BIOS) boot module, a setup controller to load and execute a BIOS boot module during runtime (i.e., bypassing reboot) using a changed hardware configuration parameter, and an update controller to load and execute a new or updated BIOS boot module during runtime (i.e., bypassing reboot), where each controller is to operate under direction of an operating system (OS). The technology may perform these BIOS operations within a secure BIOS environment.

    BASEBOARD MANAGEMENT CONTROLLER FIRMWARE UPDATE

    公开(公告)号:WO2021091776A1

    公开(公告)日:2021-05-14

    申请号:PCT/US2020/058077

    申请日:2020-10-30

    IPC分类号: G06F8/656

    摘要: A baseboard management controller (BMC) may comprise a processor, a non-volatile memory and a volatile memory. The non-volatile memory comprises firmware categorized into a plurality of independently updatable service modules. Each of the independently updatable service modules is stored on a read-write partition of the non-volatile memory and comprises at least one of an application, a library and a driver. The BMC comprises an update agent that performs an update process. In the update process, a BMC update package, which comprises an update service module for updating an existing service module stored in one of the plurality of RW partitions, is stored in the volatile memory. The existing service module stored in the RW partition is replaced with the update service module.

    SYSTEMS AND METHODS FOR REPLACING A THEME OF A VIRTUAL ENVIRONMENT

    公开(公告)号:WO2021084101A1

    公开(公告)日:2021-05-06

    申请号:PCT/EP2020/080582

    申请日:2020-10-30

    发明人: IOANNOU, Nikolaos

    IPC分类号: G06F9/451 G06F8/65 G06F8/656

    摘要: Methods and systems are described for automatically replacing a theme of a virtual environment. This is achieved by receiving a notification at a multimedia device to retrieve one or more themes from a server; determining a current status of the multimedia device; in response to determining the current status of the multimedia device: retrieving the one or more replacement themes from the server if the status of the multimedia device is in accordance with one or more predetermined criteria; and re-scheduling until a further notification is received at the multimedia device or terminating retrieval of the one or more replacement themes from the server if the status of the multimedia device is not in accordance with the one or more predetermined criteria.

    AUTOMATIC PROBABILISTIC UPGRADE OF TENANT DEVICES

    公开(公告)号:WO2021045815A1

    公开(公告)日:2021-03-11

    申请号:PCT/US2020/037993

    申请日:2020-06-17

    IPC分类号: G06F8/656

    摘要: In one example of the technology, device information associated with a device upgrade and a plurality of devices includes risk parameters including values associated with a minimum health value that is associated with a minimum acceptable number of healthy devices among the plurality of devices and a confidence value associated with a minimum acceptable probability that the number of healthy devices among the plurality of devices is at least as great as the minimum health value; and, for each device a success probability value that is associated with a probability that the device will be healthy after the device upgrade is performed on the device. A Poisson binomial distribution is iteratively used to determine a set of devices among the plurality of device for which the largest possible number of devices are included in the set of devices while meeting the risk parameters. The set of devices is then upgraded.