Computer program, method, and computer system for approving service requests in a multi-cluster system

A centralized system in multi-cluster environments compiles and labels service requests to optimize authorization, addressing inefficiencies and improving service quality by reducing redundant checks and maintaining system integrity.

JP7868937B2Active Publication Date: 2026-06-02INTERNATIONAL BUSINESS MACHINE CORPORATION

Patent Information

Authority / Receiving Office
JP Β· JP
Patent Type
Patents
Current Assignee / Owner
INTERNATIONAL BUSINESS MACHINE CORPORATION
Filing Date
2022-12-13
Publication Date
2026-06-02

AI Technical Summary

Technical Problem

In multi-cluster systems, existing authorization processes for service requests lead to inefficient use of computing resources and degrade service quality due to independent authorization checks at each microservice level, causing response delays and excessive memory/network bandwidth usage.

Method used

A centralized system, such as an ingress module, compiles dependency chain matrices from service endpoints and generates labels for requests, ensuring authorization is handled centrally, reducing redundant checks across clusters.

Benefits of technology

This approach enhances service quality by minimizing redundant authorization checks, optimizing resource usage, and maintaining system integrity by detecting unauthorized requests.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007868937000001
    Figure 0007868937000001
  • Figure 0007868937000002
    Figure 0007868937000002
  • Figure 0007868937000003
    Figure 0007868937000003
Patent Text Reader

Abstract

To provide a computer program, a method, and a computer system for authorizing a service request in a multi-cluster system.SOLUTION: A method includes: receiving one dependency chain matrix from each of a plurality of service end points in a multi-cluster system; converging the received multiple dependency chain matrices into one converged data matrix; sharing the one converged data matrix as a side car module to each of the plurality of service end points; receiving a service request by an external user or a service request by a service for at least one of the plurality of service end points; validating an authorization for the service request based on the one converged data matrix; and generating a label that is appended to the service request and passed downstream to the plurality of service end points.SELECTED DRAWING: Figure 6
Need to check novelty before this filing date? Find Prior Art