Resource Silos for Network Service Isolation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In multi-tier e-commerce systems, network-accessible services face challenges in managing resources effectively, particularly in maintaining high levels of resource utilization while avoiding side effects like reduced service stability due to shared resource allocation among multiple clients, and ensuring fault containment and enhanced security during software upgrades.

Innovation Solution

Implementing configurable resource silos that group front-end and back-end resources, along with network links, to create logical and administrative units that can be managed independently, allowing for dedicated or shared resource allocation based on client needs and service requirements, thereby isolating potential errors and improving security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If resources of a given node are shared among multiple clients, then overall resource utilization is improved, but service stability and security may deteriorate

Engineering Contradiction:
Improveresource utilizationVSAvoidservice stability
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent divides the shared resource pool into separate resource silos, where each silo is dedicated to a specific client or client group. This segmentation allows the system to maintain high resource utilization by efficiently allocating resources within each silo while preventing instability and security issues from spreading across clients through the isolation boundaries of the silos.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces resource silos as intermediary structures between the resource allocation layer and the client access layer. These silos act as mediators that enable resource sharing while maintaining isolation, allowing the system to achieve both high utilization and stability by managing resources in controlled, segmented environments.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If resources are shared among multiple clients, then resource utilization is improved, but fault containment capability deteriorates

Engineering Contradiction:
Improveresource utilizationVSAvoidfault containment
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent segments the resource infrastructure into isolated silos, where each silo is encapsulated with its own resources and access controls. This segmentation ensures that faults, errors, or security breaches in one silo cannot propagate to other silos, maintaining fault containment while still allowing efficient resource utilization within each isolated environment.

Inventive Principle:
Principle #1Segmentation

3Adaptability or versatility

If software upgrades are performed on shared service nodes, then service evolution is improved, but service stability may deteriorate

Engineering Contradiction:
Improveservice evolutionVSAvoidservice stability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the service infrastructure into separate silos, enabling the system to perform software upgrades on a per-silo basis. This allows the service to evolve by updating individual silos independently, minimizing the impact on overall service stability. Other silos can continue operating normally while one silo undergoes upgrades or maintenance.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a dynamic upgrade mechanism where silos can be selectively updated based on priority, timing, and client requirements. This dynamic approach allows the system to evolve software components flexibly while maintaining service stability through controlled, incremental changes rather than monolithic reboots of shared services.

Inventive Principle:
Principle #15Dynamics

4Reliability

If resource silos are created to isolate clients, then service stability and security are improved, but device complexity increases

Engineering Contradiction:
Improveservice stabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent designs resource silos as universal, multi-functional units that can serve multiple purposes: client isolation, resource allocation, fault containment, and security boundaries. By making the silo structure multi-functional, the system achieves improved service stability and security without proportionally increasing complexity, as a single structural element performs multiple critical functions.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10158579B2Resource silos at network-accessible services
Publication Date: 2018.12.18 AMAZON TECH INC
  • US10158579B2 patent drawing
  • US10158579B2 patent drawing
  • US10158579B2 patent drawing

AI summary

Methods and apparatus for resource silos at network-accessible services are disclosed. A subset of resources used for a database service, including at least one resource from each of a plurality of data centers, is selected for membership in a resource silo based on grouping criteria. A silo routing layer node identifies the resource silo as the target silo to which a client work request is to be directed. The client work request is sent to a front-end resource of the target silo either by the client, or by the silo routing layer node on behalf of the client. The front-end resource of the target silo transmits a representation of the work request to a back-end resource of the target silo, where a work operation corresponding to request is performed.