Multi-Cloud Resource Validation for Secure Cross-Cloud Service Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing cloud environments provided by different cloud service providers operate as closed ecosystems, preventing customers from easily accessing services offered by other cloud environments, limiting interoperability and flexibility.

Innovation Solution

A multi-cloud control plane (MCCP) framework enables users to access services from one cloud environment on another cloud environment, providing a user experience similar to the native environment, with capabilities to provision pre-requisite resources and create link resource objects for seamless service utilization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If cloud environments operate as closed ecosystems, then service security and management control are improved, but interoperability and flexibility between different cloud providers deteriorate

Engineering Contradiction:
Improveservice securityVSAvoidinteroperability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces a multi-cloud control plane (MCCP) as an intermediary layer between different cloud environments. The MCCP framework includes identity systems, provisioning modules, and link resource objects that mediate authentication, authorization, and resource provisioning across cloud boundaries, enabling secure interoperability without compromising individual cloud security models

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If cloud environments maintain closed ecosystems, then native service management is simplified, but customer ability to access external cloud services deteriorates

Engineering Contradiction:
Improveservice managementVSAvoidservice access capability
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent creates a universal multi-cloud control plane framework that can manage multiple cloud environments through a single interface. The MCCP provides multi-functional capabilities including identity federation, resource provisioning, and service access management that work across different cloud providers, allowing customers to access external services as easily as native services

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If pre-requisite resources are not pre-configured in external cloud environments, then resource provisioning flexibility is improved, but service activation time increases

Engineering Contradiction:
Improveresource provisioning flexibilityVSAvoidservice activation time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent implements a provisioning module within the MCCP framework that performs preliminary actions by automatically detecting required pre-requisite resources and provisioning them in advance. The system validates resource configurations and creates necessary infrastructure components before service activation, reducing service activation time while maintaining flexible resource provisioning

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12381867B2Resource validation in a multi-cloud infrastructure
Publication Date: 2025.08.05 ORACLE INT CORP
  • US12381867B2 patent drawing
  • US12381867B2 patent drawing
  • US12381867B2 patent drawing

AI summary

Techniques are described for providing a multi-cloud control plane (MCCP) in a first cloud infrastructure (included in a first cloud environment provided by a first cloud services provider) that enables services and/or resources provided in the first cloud infrastructure to be utilized by users of a second cloud environment, where the second cloud environment is different than the first cloud environment. The multi-cloud infrastructure enables a user associated with an account with a second cloud services provider to use, from the second cloud infrastructure, a first service from the set of one or more cloud services. The multi-cloud infrastructure creates a link between the account with the second cloud service provider and a tenancy created in the first cloud infrastructure for enabling using the first service by the user.