Cloud Services Layer Dynamic Object Registration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing multi-tenant, multi-service cloud environments are inflexible, as they require pre-defined object types and roles, limiting user customization and dynamic service registration, and do not allow for unique service-related object types beyond those predefined by the system.

Innovation Solution

The cloud services layer enables dynamic registration of unique service-related object types, roles, policies, and permissions through web service interfaces, allowing users to customize access and management of services, with entities like identity, security, service registration, and entitlement entities managing these objects.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If pre-defined object types and roles are used in cloud environments, then system management is simplified, but user customization capability is limited

Engineering Contradiction:
Improveuser customization capabilityVSAvoidsystem management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The system transitions from static pre-defined object types to dynamic object type registration. Services can register custom object types, roles, and permissions at runtime through the service registration entity, allowing the system structure to adapt dynamically to user needs while maintaining manageable complexity through automated entity relationships.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The cloud environment enables self-service customization where services and users can register their own object types, roles, and permissions without requiring system administrator intervention for each customization. The identity entity and service registration entity automatically manage the registration and integration of custom objects into the existing framework.

Inventive Principle:
Principle #25Self-service

2Adaptability or versatility

If fixed service structures are implemented, then system stability is improved, but dynamic service registration is limited

Engineering Contradiction:
Improvedynamic service registrationVSAvoidsystem stability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system implements dynamic service registration through the service registration entity, which allows services to register custom object types, roles, and permissions at runtime. This dynamic capability is built upon a stable foundation of predefined entity relationships and security policies managed by the identity and security entities, ensuring system stability while enabling adaptability.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The service registration entity acts as an intermediary between new services and the existing cloud environment framework. It mediates the registration process by validating and integrating custom object types, roles, and permissions into the established system structure, maintaining stability while enabling dynamic service addition.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If pre-defined roles and permissions are used, then security management is simplified, but access customization is limited

Engineering Contradiction:
Improveaccess customizationVSAvoidsecurity management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

Services and users can self-register custom roles and permissions through the service registration entity without requiring manual security configuration. The security entity automatically integrates these custom roles and permissions into the existing security framework, maintaining simplified security management while enabling detailed access customization.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The security entity provides universal security management that handles both pre-defined and custom roles and permissions through a unified framework. This multi-functional approach allows the same security infrastructure to manage standard roles while accommodating service-specific custom roles and permissions, avoiding the need for separate security management systems.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8516249B2Cloud services layer
Publication Date: 2013.08.20 WORKDAY INC
  • US8516249B2 patent drawing
  • US8516249B2 patent drawing
  • US8516249B2 patent drawing

AI summary

A method including receiving a service registration request to register a service with a multi-tenant, multi-service cloud network from a user; registering object types that pertain to the service, wherein the object types include at least one service object type that is not an object type offered by the cloud network to the user; and registering objects based on the object types, wherein the objects include at least one object associated with the at least one service object type.