US 12,003,489 B2
Mechanisms to reduce exposure of sensitive telemetry data in computing networks
Reshma Lal, Portland, OR (US); Anahit Tarkhanyan, Cupertino, CA (US); Jianping Xu, Portland, OR (US); and Christine E. Severns-Williams, Deephaven, MN (US)
Assigned to Intel Corporation, Santa Clara, CA (US)
Filed by Intel Corporation, Santa Clara, CA (US)
Filed on Dec. 7, 2021, as Appl. No. 17/544,355.
Prior Publication US 2022/0141201 A1, May 5, 2022
Int. Cl. H04L 9/40 (2022.01); H04L 9/08 (2006.01); H04L 9/32 (2006.01); H04L 43/04 (2022.01); H04L 43/06 (2022.01); H04L 43/0817 (2022.01)
CPC H04L 63/0428 (2013.01) [H04L 9/0819 (2013.01); H04L 9/321 (2013.01); H04L 9/3263 (2013.01); H04L 43/04 (2013.01); H04L 43/06 (2013.01); H04L 63/0823 (2013.01); H04L 63/10 (2013.01); H04L 63/1433 (2013.01); H04L 63/1475 (2013.01); H04L 43/0817 (2013.01); H04L 63/20 (2013.01)] 22 Claims
OG exemplary drawing
 
1. One or more machine readable storage media comprising instructions stored thereon, the instructions when executed by a machine, cause the machine to implement a trusted telemetry governor (TTG) inside a trusted execution environment by:
determining security policy to be applied to telemetry data corresponding to component of a computing infrastructure, the security policy to indicate a correlation between, on one hand, a type of telemetry data consumer, and on another hand, at least one of a type or a form of telemetry data to be made accessible to the telemetry data consumer;
receiving the telemetry data in encrypted format;
based on the security policy:
processing the telemetry data including at least one of generating transformed telemetry data or analyzing the telemetry data to generate a report therefrom; and
generating telemetry information from the telemetry data, the telemetry information including at least one of processed telemetry data, a report or a recommendation based on an analysis of the telemetry data; and
sending the telemetry information outside of the trusted execution environment.