Multitenant Application Server Partition Isolation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing multitenant application server environments face challenges in efficiently managing and isolating partitions, resources, and applications across different tenants, leading to complexity and potential security issues.

Innovation Solution

The system and method for supporting partitions in a multitenant application server environment allow administrators to create, delete, and manage partitions, resource groups, and applications, with optional association with tenants. This includes defining resource groups at both the domain and partition levels, referencing resource group templates, and configuring partitions with tenant-specific resources.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If partitions are created to isolate tenant resources, then security and resource management are improved, but system complexity increases

Engineering Contradiction:
Improvetenant isolation securityVSAvoidpartition management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system divides the application server environment into separate partitions, each isolated for specific tenants. Each partition contains its own resource groups, applications, and configurations, enabling logical separation of tenant data and resources while maintaining overall system structure.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements nested resource groups where resource groups can be defined at multiple levels (domain level and partition level). Partition-level resource groups can reference domain-level resource group templates, creating a nested structure that reduces complexity by reusing common resources across partitions.

Inventive Principle:
Principle #7Nested doll (Nesting)

2Adaptability or versatility

If resource groups are defined at both domain and partition levels, then flexibility and adaptability are improved, but configuration complexity increases

Engineering Contradiction:
Improveresource configuration flexibilityVSAvoidconfiguration structure complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

Resource group templates are defined at the domain level and can be referenced by multiple partition-level resource groups. This universal approach allows a single template to serve multiple partitions, reducing the need for duplicate configurations while maintaining partition-specific customization capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system allows different levels of resource group definition: domain-level resource groups for common resources shared across all partitions, and partition-level resource groups for tenant-specific resources. Each level can be configured according to local requirements while inheriting from higher levels when appropriate.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS20250156239A1System and method for supporting partitions in a multitenant application server environment
Publication Date: 2025.05.15 ORACLE INT CORP
  • US20250156239A1 patent drawing
  • US20250156239A1 patent drawing
  • US20250156239A1 patent drawing

AI summary

In accordance with an embodiment, described herein is a system and method for supporting partitions in a multitenant application server environment. In accordance with an embodiment, an application server administrator (e.g., a WLS administrator) can create or delete partitions; while a partition administrator can administer various aspects of a partition, for example create resource groups, deploy applications to a specific partition, and reference specific realms for a partition. Resource groups can be globally defined at the domain, or can be specific to a partition. Applications can be deployed to a resource group template at the domain level, or to a resource group scoped to a partition or scoped to the domain. The system can optionally associate one or more partitions with a tenant, for use by the tenant.