Server-Based Restricted Access Storage for Cloud SaaS Cost Reduction

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional cloud computing models face challenges in efficiently managing and costing SaaS deployments, particularly due to high hosting expenses and the need for extensive management of thousands of nodes, which can be costly and complex.

Innovation Solution

A cloud environment is configured to allow a SaaS provider to access and operate a SaaS deployment separately from other software, with partial isolation, enabling the SaaS to monitor other software within the cloud environment, while the client retains control and pays for the cloud infrastructure, reducing costs and enhancing customization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a SaaS provider hosts and manages their own cloud infrastructure, then they have full control over their deployment, but hosting costs and management complexity increase significantly

Engineering Contradiction:
Improvedeployment controlVSAvoidinfrastructure management
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent merges the SaaS provider's deployment environment with the client's existing cloud infrastructure. The SaaS deployment runs within the client's cloud environment, combining both the provider's software needs and the client's infrastructure resources into a single integrated system, thereby reducing the provider's infrastructure management burden while maintaining deployment control

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent introduces a cloud environment as an intermediary between the SaaS provider and the underlying infrastructure. This intermediary layer allows the provider to access and manage their deployment without directly managing the physical infrastructure, as the cloud environment abstracts and mediates the interaction between the software and hardware layers

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a SaaS provider hosts their own infrastructure, then they have full security control, but hosting costs increase

Engineering Contradiction:
Improvesecurity controlVSAvoidhosting costs
Core Design Contradiction:
ReliabilityVSLoss of energy

Solution Approach 1:

The patent combines the security requirements of the SaaS provider with the cost-effective infrastructure of the client's cloud environment. By running the deployment within the client's cloud, the system leverages existing security measures and infrastructure costs, reducing duplicate spending while maintaining security control through configured access permissions

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If multiple software applications run in the same cloud environment, then resource utilization improves, but isolation and security between applications decrease

Engineering Contradiction:
Improveresource utilizationVSAvoidsoftware isolation
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies local quality by configuring specific access permissions and isolation levels for different software applications within the cloud environment. Rather than uniform isolation or access, the system tailors the level of isolation and access control to each specific software deployment's requirements, allowing high resource utilization while maintaining appropriate security boundaries

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11689536B1Server-based restricted access storage
Publication Date: 2023.06.27 CISCO TECHNOLOGY INC
  • US11689536B1 patent drawing
  • US11689536B1 patent drawing
  • US11689536B1 patent drawing

AI summary

According to embodiments, a method for distributing a service through server-based restricted access storage includes executing, by a service provider, a service deployment of the service to a client in a cloud environment that operates client software in addition to the service deployment, the cloud environment provided by the client, the service deployment provided by the service provider and separate from the client software executing in the cloud environment. The method also includes receiving, by the service provider, privileges from the client to allow the service provider to access and operate the service in the cloud environment, the privileges providing access to the cloud environment separate from the client software executing in the cloud environment. The method also includes configuring the service deployment to monitor the client software, wherein the service deployment is partially isolated from other portions of the cloud environment.