Portal Security Information Propagation via XML Adapters

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The migration of portal applications is challenging due to difficulties in configuring and identifying data storage locations, making the propagation of changes to a production environment unreliable and time-consuming, especially when dealing with security information.

Innovation Solution

A method and system for propagating security information between environments using adapters that translate security parameters into a common language format (XML) and apply changes to the destination environment without requiring the production version of the application to be offline, utilizing a propagation tool that compares and synchronizes differences between source and destination applications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If portal applications are propagated manually between environments, then changes can be transferred, but the process is highly unreliable and time-consuming due to difficulty in configuring and identifying data storage locations

Engineering Contradiction:
Improvepropagation reliabilityVSAvoidpropagation time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces a propagation tool as an intermediary system that automatically manages the transfer of portal applications between environments. This tool includes components such as a configuration repository, propagation engine, and environment manager that work together to eliminate manual configuration efforts, thereby improving reliability and reducing time consumption in the propagation process

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent utilizes parameter-based configuration management where security parameters and application settings are stored in a standardized format in a configuration repository. The propagation engine retrieves and applies these parameters automatically during propagation, transforming the manual, error-prone process into an automated, parameter-driven operation that enhances both reliability and efficiency

Inventive Principle:
Principle #35Parameter changes

2Measurement precision

If security information is propagated without a standardized approach, then propagation can be performed, but security parameters and permissions may not be accurately transferred

Engineering Contradiction:
Improvesecurity information accuracyVSAvoidconfiguration complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent implements a universal configuration repository that stores security parameters, permissions, and application settings in a standardized, environment-agnostic format. This repository serves multiple functions including storing configuration data, validating security parameters, and providing a single source of truth for all propagation operations, thereby ensuring accurate security information transfer without increasing operational complexity

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The propagation engine creates accurate copies of security information by retrieving standardized configuration data from the repository and applying it to the target environment. This copying mechanism ensures that security parameters, permissions, and settings are precisely replicated across environments, maintaining measurement precision while the standardized format keeps configuration complexity manageable

Inventive Principle:
Principle #26Copying

Data Source

PatentUS7752651B2System and method for propagating security information in a web portal system
Publication Date: 2010.07.06 ORACLE INT CORP
  • US7752651B2 patent drawing
  • US7752651B2 patent drawing
  • US7752651B2 patent drawing

AI summary

In accordance with embodiments, there are provided mechanisms and methods for propagating security information for an application between a first environment and a second environment. These mechanisms and methods can enable embodiments to propagate changes to security information from a first application instance in a first environment to a second application instance in a second environment. For example, an embodiment can receive security information from an adapter associated with a test version of an application, and then propagate the security information to a production version of the application residing in a production environment. The ability of embodiments to propagate security information between adapters associated with application versions can enable propagation of changes to security information, i.e., information about changes to permissions, rules, policies and so forth relating to security, between a first environment and a second environment without necessitating taking the production version of the application off line.