Multitenant Application Server Partition Isolation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing multitenant application server environments face challenges in efficiently managing and isolating partitions, resources, and applications across different tenants, leading to complexity and potential security issues.
Innovation Solution
The system and method for supporting partitions in a multitenant application server environment allow administrators to create, delete, and manage partitions, resource groups, and applications, with optional association with tenants. This includes defining resource groups at both the domain and partition levels, referencing resource group templates, and configuring partitions with tenant-specific resources.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If partitions are created to isolate tenant resources, then security and resource management are improved, but system complexity increases
Solution Approach 1:
The system divides the application server environment into separate partitions, each isolated for specific tenants. Each partition contains its own resource groups, applications, and configurations, enabling logical separation of tenant data and resources while maintaining overall system structure.
Solution Approach 2:
The patent implements nested resource groups where resource groups can be defined at multiple levels (domain level and partition level). Partition-level resource groups can reference domain-level resource group templates, creating a nested structure that reduces complexity by reusing common resources across partitions.
2Adaptability or versatility
If resource groups are defined at both domain and partition levels, then flexibility and adaptability are improved, but configuration complexity increases
Solution Approach 1:
Resource group templates are defined at the domain level and can be referenced by multiple partition-level resource groups. This universal approach allows a single template to serve multiple partitions, reducing the need for duplicate configurations while maintaining partition-specific customization capabilities.
Solution Approach 2:
The system allows different levels of resource group definition: domain-level resource groups for common resources shared across all partitions, and partition-level resource groups for tenant-specific resources. Each level can be configured according to local requirements while inheriting from higher levels when appropriate.
Data Source
AI summary
In accordance with an embodiment, described herein is a system and method for supporting partitions in a multitenant application server environment. In accordance with an embodiment, an application server administrator (e.g., a WLS administrator) can create or delete partitions; while a partition administrator can administer various aspects of a partition, for example create resource groups, deploy applications to a specific partition, and reference specific realms for a partition. Resource groups can be globally defined at the domain, or can be specific to a partition. Applications can be deployed to a resource group template at the domain level, or to a resource group scoped to a partition or scoped to the domain. The system can optionally associate one or more partitions with a tenant, for use by the tenant.


