Multi-tenant Registry for Secure Data Sharing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional multi-tenant systems enforce isolation among tenants, preventing data sharing or access to data from other tenants, which limits collaboration and efficiency in product composition and decomposition across tenants in cloud-based multi-tenancy systems.

Innovation Solution

The system enables access to shared data by different tenants with a relationship by implementing a registry component that registers tenants, stores their product information, and allows access based on predefined rules, while a supervisory component enforces these rules to facilitate data sharing and supply chain management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If data isolation mechanisms are enforced among tenants, then data security and tenant independence are improved, but data sharing capability and collaboration efficiency deteriorate

Engineering Contradiction:
Improvedata securityVSAvoiddata sharing capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces a registry component as an intermediary between tenants. This registry stores product information and facilitates controlled data sharing while maintaining isolation. The registry acts as a mediator that allows tenants to access each other's data through predefined rules without compromising security or independence.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If strict tenant isolation is implemented, then system security and tenant privacy are improved, but supply chain collaboration and product composition efficiency deteriorate

Engineering Contradiction:
Improvetenant privacy protectionVSAvoidsupply chain collaboration efficiency
Core Design Contradiction:
Object-affected harmful factorsVSProductivity

Solution Approach 1:

The patent implements dynamic access control where tenants can define rules for data sharing. The system adapts to different collaboration scenarios by allowing tenants to dynamically control what data is shared, with whom, and under what conditions. This enables supply chain collaboration while maintaining privacy through flexible, rule-based access control.

Inventive Principle:
Principle #15Dynamics

3Device complexity

If centralized data storage is used, then system scalability and cost efficiency are improved, but data access control and tenant autonomy deteriorate

Engineering Contradiction:
Improvesystem architecture simplicityVSAvoiddata access control
Core Design Contradiction:
Device complexityVSEase of operation

Solution Approach 1:

The patent segments the centralized registry data by associating each product with a specific tenant ID. This segmentation allows the system to maintain a centralized storage structure while implementing fine-grained access control. Each tenant's data is logically separated and can be accessed only by authorized tenants according to predefined rules, thus maintaining both simplicity and control.

Inventive Principle:
Principle #1Segmentation

4Reliability

If tenants cannot access each other's data, then system security is improved, but product decomposition and composition capability deteriorate

Engineering Contradiction:
Improvesystem securityVSAvoidproduct composition capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The registry component serves as an intermediary that enables secure product composition and decomposition. It stores product information from multiple tenants and allows authorized tenants to access and combine products from different sources. The registry mediates these operations while maintaining security through rule-based access control, enabling product composition without compromising system security.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12217300B2Systems and methods for product composition and decomposition across tenants in cloud-based multi-tenancy system
Publication Date: 2025.02.04 OPEN TEXT SA ULC
  • US12217300B2 patent drawing
  • US12217300B2 patent drawing
  • US12217300B2 patent drawing

AI summary

A provisioning system for a multi-tenant platform including a presentation component operably coupled to a supervisory component and a registry database and configured to present registry information in accordance with criteria defined in one or more rules and receive requests to access the registry information. The one or more rules define a supply chain including multiple of a plurality of tenants in the multi-tenancy system, the supervisory component configured to automatically implement the supply chain in response to the request.