Metadata-Driven Catalog Definition for Tenant Data Segregation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In multitenanted databases, performing data analyses for tenants results in loss of control over their data as it is mixed together, leading to concerns about data privacy and unauthorized access.
Innovation Solution
A metadata-driven catalog definition system that generates metadata-based filters to segregate and filter data based on opt-in and opt-out indications from tenants, ensuring that sensitive data is not shared or accessed improperly during analysis and reporting.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If data from multiple tenants is mixed together for analysis, then valuable data analyses can be produced, but tenant data privacy and control are compromised
Solution Approach 1:
The patent segments data by creating tenant-specific partitions with unique identifiers. Each tenant's data is tagged with their identifier, allowing the system to distinguish between different tenants' data while still enabling analysis. This segmentation allows mixed data storage for analysis purposes while maintaining the ability to filter and separate data by tenant when needed.
Solution Approach 2:
The patent introduces metadata as an intermediary layer between the raw data and the analysis processes. This metadata contains tenant identifiers and other contextual information that enables the system to perform analyses on mixed data while maintaining awareness of data ownership and privacy requirements. The metadata acts as a mediator that allows controlled access and filtering.
2Object-affected harmful factors
If tenant data is securely separated on different partitions, then data privacy is maintained, but data analysis capability is reduced
Solution Approach 1:
The patent merges multiple tenant partitions into a unified data structure that retains tenant identifiers. Instead of keeping data completely separate, the system combines data from multiple tenants into a single accessible structure while tagging each record with its originating tenant's identifier. This merging enables efficient analysis across tenants while the identifiers maintain privacy boundaries.
Solution Approach 2:
The patent creates a universal data access interface that can operate in multiple modes: it can perform tenant-specific analyses by filtering on tenant identifiers, cross-tenant analyses by aggregating across identifiers, or mixed-mode analyses. This multi-functional interface allows the same data structure to serve both privacy protection and analytical capabilities.
3Adaptability or versatility
If all tenant data is made available for analysis, then comprehensive insights can be generated, but unauthorized access to sensitive data may occur
Solution Approach 1:
The patent implements dynamic filtering capabilities where the system can adjust the scope of data access based on analysis requirements and tenant permissions. The filtering logic can dynamically include or exclude specific tenants, data types, or time periods based on the analysis being performed and the authorized users' permissions, providing both flexibility and security control.
Solution Approach 2:
The patent changes the parameters of data access by introducing configurable filter criteria that can be adjusted based on security requirements and analysis needs. These parameters include tenant identifiers, data sensitivity levels, time ranges, and other attributes that can be modified to control what data is accessible for different types of analyses, balancing versatility with security.
Data Source
AI summary
A system for a metadata driven catalog definition includes an interface and a processor. The interface is configured to receive an indication to generate a catalog. The processor is configured to traverse a set of data to generate a set of metadata tags, determine a set of sub-categories, wherein a sub-category of the set of subcategories comprises a group of metadata tags associated with the sub-category, and determine a set of categories. A category of the set of categories comprises a group of sub-categories associated with the category. The processor is also configured to provide the catalog comprising a set of filters for filtering data according to the set of categories and the set of sub-categories.


