Cross-Tenant Data Sharing via Intermediary Database

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Multi-tenant cloud-based architectures isolate data across virtual environments, preventing users from different tenants from collaborating and sharing data, which is essential for global account planning, case management, and team sales efforts.

Innovation Solution

A method and system that allow collaboration between tenants by creating a database record in a dedicated portion of the data storage device, transmitting it to another tenant's isolated environment, and synchronizing data objects using a uniform resource locator (URL) without relying on the embedded collaboration tool, enabling data sharing across isolated virtual environments.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If data is isolated in dedicated portions of the data storage device for each tenant, then data security and privacy are improved, but collaboration and data sharing between tenants is prevented

Engineering Contradiction:
Improvedata securityVSAvoidcollaboration capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces a database as an intermediary component that enables data sharing between isolated virtual environments. The database receives data from the first virtual environment, stores it, and makes it accessible to the second virtual environment, thereby facilitating collaboration while maintaining the security isolation of the original dedicated storage portions.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments data access and storage into multiple dedicated portions for different tenants while introducing a separate database component that can access and share data across these segments. This allows secure isolation at the storage level while enabling controlled sharing at the database level.

Inventive Principle:
Principle #1Segmentation

2Productivity

If a multi-tenant cloud-based architecture is used, then resource sharing and cost efficiency are improved, but data isolation prevents cross-tenant collaboration

Engineering Contradiction:
Improveresource efficiencyVSAvoiddata sharing operation
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The database component serves multiple functions: it stores data from the dedicated portions, enables data sharing between different virtual environments, and provides a universal access mechanism for cross-tenant collaboration. This multi-functional approach maintains resource efficiency while adding collaboration capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If data is stored in a centralized database, then data access and sharing between tenants is enabled, but the isolation and security boundaries of virtual environments are weakened

Engineering Contradiction:
Improvedata sharing capabilityVSAvoidenvironment isolation
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The database acts as a controlled intermediary that respects the isolation boundaries of virtual environments while enabling selective data sharing. The system can determine which data from which virtual environment should be shared with which other virtual environment, maintaining security boundaries while enabling collaboration where needed.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11966770B2Collaboration across isolated virtual environments
Publication Date: 2024.04.23 SALESFORCE INC
  • US11966770B2 patent drawing
  • US11966770B2 patent drawing
  • US11966770B2 patent drawing

AI summary

A system can allow collaboration between two or more tenants in a multi-tenant system. Each tenant can share a common access to a processing space and a data storage device. Each tenant can be assigned to a virtual environment having a dedicated portion of the data storage device. The system can create a database record in a first dedicated portion assigned to the first tenant. The database record can be displayed on a user interface of the first tenant and include a collaboration tool component embedded within the database record. The database record can be transmitted to a database and transmitted from the database to a second dedicated portion of the data storage device. The second dedicated portion can be assigned to a second tenant of the multi-tenant system.