US20100162036A1

Self-Monitoring Cluster of Network Security Devices

Claim Score by NHIP

Read claim 30, the broadest

Abstract

A computing device may be joined to a cluster by discovering the device, determining whether the device is eligible to join the cluster, configuring the device, and assigning the device a cluster role. A device may be assigned to act as a cluster master, backup master, active device, standby device, or another role. The cluster master may be configured to assign tasks, such as network flow processing to the cluster devices. The cluster master and backup master may maintain global, run-time synchronization data pertaining to each of the network flows, shared resources, cluster configuration, and the like. The devices within the cluster may monitor one another. Monitoring may include transmitting status messages comprising indicators of device health to the other devices in the cluster. In the event a device satisfies failover conditions, a failover operation to replace the device with another standby device, may be performed.

US20100162036A1, drawing sheet 1
Sheet 1 of 19

Term

Projected expiry 21 December 2029.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

31 claims: 4 independent, 27 dependent

  1. 1
    A computer-readable storage medium comprising computer-readable instructions configured to cause a computing device to perform a method for monitoring a cluster comprising a plurality of communicatively coupled computing devices, the method comprising:within each of the cluster computing devices: calculating a health score of a computing device, the health score comprising an indication of the operational status of the computing device, transmitting a status message receivable by the other computing devices in the cluster, the status message comprising the health score, and receiving status messages from other computing devices in the cluster, each status message comprising a computing device health score;and a subset of the plurality of computing devices identifying one of the plurality of computing devices to remove from the cluster in a failover operation based upon the status messages.
  2. 21
    A system comprising:a cluster communications interface;and a cluster comprising a plurality of communications devices communicatively coupled to the communications interface, each of the plurality of computing devices comprising a cluster monitoring and failover module configured to calculate a health score of a computing device, the health score based upon application-layer performance characteristics of the computing device, to transmit a status message on the cluster communications interface, to receive status messages from other cluster computing devices on the cluster communications interface, and to identify a computing device to be removed from the cluster based using the status messages.
  3. 28
    A method for monitoring a cluster comprising a plurality of communicatively coupled computing devices, the method comprising:within each of the cluster computing devices: calculating a health score of a cluster computing device, the health score comprising a status indicator of one or more applications running on the computing device, transmitting a status message to a subset of the plurality of cluster computing devices, the transmitted status message comprising the health score, and receiving status messages from other cluster computing devices, each status message comprising a respective health score, and a subset of the plurality of computing devices identifying one of the cluster computing devices to be removed from the cluster in a failover operation based upon the status messages, the failover operation comprising: selecting a replacement cluster computing device to perform a processing task assigned to the identified computing device, transitioning the processing task to the replacement computing device by providing the replacement cluster computing device with run-time synchronization data associated with the processing task, and updating a processing task assignment data structure to indicate that the processing task is assigned to the replacement computing device.
  4. 30
    Broadest claimClaim Score 68, broad(NHIP)A method for managing a cluster comprising a plurality of communicatively coupled computing devices by a cluster master, the method comprising:receiving a command to modify a configuration of each of the cluster computing devices, wherein the modification of a cluster computing device comprises temporarily removing the computing device from the cluster;for each of the cluster computing devices: selecting another cluster computing device to implement one or more processing tasks of the cluster computing device, transitioning the one or more processing tasks to the selected cluster computing device, modifying the cluster computing device, and preventing modification of the selected cluster computing device during modification of the cluster computing device.