Cloud Infrastructure Multi-Tenancy Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current cloud computing environments face challenges in providing a scalable, secure, and efficient platform for delivering infrastructure, platform, and software services across public and private clouds, with limitations in managing multiple tenants and ensuring secure access and resource allocation.

Innovation Solution

The system employs a shared enablement and management infrastructure, including identity management, data integration, virtual assembly builder, and service orchestration components, to support multiple service layers and tenants, utilizing Oracle Exalogic and Exadata machines, and Java Cloud Service infrastructure for self-service provisioning and secure deployment of applications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a cloud computing environment is designed to support multiple tenants with secure access, then security and multi-tenancy are improved, but system complexity increases

Engineering Contradiction:
Improvesecure accessVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system segments cloud resources into isolated tenant environments with dedicated virtual machines, storage volumes, and network configurations. Each tenant operates in an isolated context while sharing the underlying physical infrastructure, enabling secure multi-tenancy without compromising system complexity.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces identity management components and service orchestration layers as intermediaries between tenants and cloud resources. These intermediaries handle authentication, authorization, and resource allocation, securing access while abstracting the complexity from end users.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Speed

If cloud services provide on-demand resource provisioning, then service speed is improved, but resource management complexity increases

Engineering Contradiction:
Improveprovisioning speedVSAvoidresource management complexity
Core Design Contradiction:
SpeedVSDevice complexity

Solution Approach 1:

The system pre-configures virtual machine templates, storage volume patterns, and network configurations that can be rapidly instantiated upon demand. These pre-prepared resources enable fast provisioning while the underlying management complexity is handled by automation frameworks.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements self-service portals and automated provisioning systems that allow tenants to allocate and configure resources independently. This self-service capability accelerates provisioning speed while the system automatically manages the complexity of resource allocation, billing, and monitoring.

Inventive Principle:
Principle #25Self-service

3Reliability

If the system supports enterprise-grade security and compliance, then reliability is improved, but ease of operation decreases

Engineering Contradiction:
Improveenterprise-grade securityVSAvoidease of deployment
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system implements universal security frameworks and compliance templates that can be applied across multiple tenants and workloads. These standardized security configurations enforce enterprise-grade requirements while being automatically applied, reducing the operational burden on individual users.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS20230037542A1System and method for providing a cloud computing environment
Publication Date: 2023.02.09 ORACLE INT CORP
  • US20230037542A1 patent drawing
  • US20230037542A1 patent drawing
  • US20230037542A1 patent drawing

AI summary

A system and method for enabling a cloud computing environment. In accordance with an embodiment, the system can include a variety of hardware and/or software components and features, which can be used in delivering an infrastructure, platform, and/or applications to support public and private clouds.