Configurable Private Networks With API-Based Remote Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The management of large-scale computing resources in data centers has become complicated due to increased scale and scope, and existing virtualization technologies do not adequately address the need for secure, flexible, and efficient provisioning and administration of computing resources across diverse user needs.

Innovation Solution

A configurable network service allows remote users to create and configure private computer networks using APIs or GUIs, enabling secure access through VPN connections or other secure means, with the service managing computing nodes and providing access to remote resources while ensuring network security and flexibility.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If virtualization technologies are used to share physical computing machines among multiple users, then resource utilization efficiency is improved, but system complexity and management difficulty increase

Engineering Contradiction:
Improveresource utilization efficiencyVSAvoidsystem management complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent introduces a network service as an intermediary layer between users and physical computing resources. This service abstracts the complexity of virtualized infrastructure by providing standardized APIs and automated provisioning, allowing users to manage resources without dealing with underlying virtualization complexity while maintaining high resource utilization through shared physical machines

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The network service provides universal access mechanisms that work across different virtualization platforms and computing resources. By creating a unified interface layer, the system can share diverse physical computing machines among multiple users with different needs while presenting a consistent management model, thereby improving resource utilization without proportionally increasing management complexity

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Quantity of substance

If data center scale and scope are increased to provide more computing resources, then service capacity is improved, but provisioning and management complexity increase

Engineering Contradiction:
Improvecomputing resource capacityVSAvoidprovisioning and management complexity
Core Design Contradiction:
Quantity of substanceVSDevice complexity

Solution Approach 1:

The patent implements self-service capabilities through automated provisioning systems that can allocate and configure computing resources without manual intervention. The network service includes automated user registration, resource allocation, and configuration management that scale automatically with data center growth, allowing service capacity to increase while management complexity remains controlled through automation

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system incorporates feedback mechanisms that monitor resource utilization, user needs, and system state in real-time. This feedback enables dynamic resource allocation and automated scaling decisions, allowing the data center to expand capacity efficiently while the provisioning system adapts to maintain optimal management complexity levels through data-driven automation

Inventive Principle:
Principle #23Feedback

3Reliability

If secure access mechanisms are implemented for remote users, then network security is improved, but access flexibility and ease of use may be reduced

Engineering Contradiction:
Improvenetwork securityVSAvoidaccess flexibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The network service acts as a secure intermediary that mediates between remote users and computing resources. It implements security controls, authentication, and access policies at the service layer while presenting a simple, flexible interface to users. This approach maintains strong security through centralized control mechanisms while preserving user access flexibility through automated credential management and standardized APIs

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12432110B2Providing access to configurable private computer networks
Publication Date: 2025.09.30 AMAZON TECH INC
  • US12432110B2 patent drawing
  • US12432110B2 patent drawing
  • US12432110B2 patent drawing

AI summary

Techniques are described for providing users with access to computer networks, such as to enable users to interact with a remote configurable network service in order to create and configure computer networks that are provided by the configurable network service for use by the users. Computer networks provided by the configurable network service may be configured to be private computer networks that are accessible only by the users who create them, and may each be created and configured by a client of the configurable network service to be an extension to an existing computer network of the client, such as a private computer network extension to an existing private computer network of the client. If so, secure private access between an existing computer network and new computer network extension that is being provided may be enabled using one or more VPN connections or other private access mechanisms.