Server Dynamic Virtual Machine Resource Allocation and Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current cloud-based virtual machine systems face challenges in dynamic resource allocation, leading to inefficient usage and high costs, as well as security concerns when accessing corporate networks from personal devices, particularly in public cloud environments.

Innovation Solution

A server system that allows users to dynamically allocate and deallocate virtual machine resources based on demand, while ensuring security by verifying network connections and using security containers to separate work and personal use, thereby reducing unnecessary resource usage and enhancing security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If virtual machine resources are statically allocated according to predefined criteria, then resource allocation is simple and predictable, but resource efficiency decreases and costs increase when usage varies

Engineering Contradiction:
Improveresource efficiencyVSAvoidresource allocation complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent implements dynamic virtual machine resource allocation by allowing users to directly control allocation and deallocation of VM resources based on real-time work demands. The system transitions from static predefined allocation to dynamic user-controlled allocation, where resources are allocated when needed and released when not needed, optimizing resource efficiency while maintaining simple user interaction through automated processes.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent enables users to autonomously allocate and manage virtual machine resources without requiring administrator intervention. Users can directly request VM resource allocation, monitor usage, and deallocate resources based on their own work requirements, transforming the system from administrator-managed static allocation to user-self-service dynamic allocation.

Inventive Principle:
Principle #25Self-service

2Ease of operation

If virtual machine resources are allocated to terminal devices, then users can access virtual machines, but billing continues regardless of actual usage and resource waste occurs

Engineering Contradiction:
Improvevirtual machine accessibilityVSAvoidunnecessary resource consumption
Core Design Contradiction:
Ease of operationVSLoss of energy

Solution Approach 1:

The patent implements periodic allocation and deallocation of virtual machine resources based on user work cycles. Resources are allocated when users need to perform tasks and automatically deallocated when tasks are completed or during periods of non-usage, creating a rhythm of resource usage that matches actual work patterns and eliminates continuous billing for idle resources.

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The patent enables automatic release and recovery of virtual machine resources when they are no longer needed. The system monitors VM usage and automatically deallocates resources back to the pool when users finish their work, allowing these resources to be recovered and reused by other users, thereby eliminating waste and reducing unnecessary consumption.

Inventive Principle:
Principle #34Discarding and recovering

3Adaptability or versatility

If personal terminal devices are used to access corporate networks, then remote work flexibility increases, but security risks increase due to potential unauthorized access

Engineering Contradiction:
Improveremote work flexibilityVSAvoidnetwork security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the terminal device into secure and non-secure areas, creating isolated environments for different types of access. Personal terminal devices are divided into secure zones for corporate network access and non-secure zones for personal use, allowing flexible remote work while maintaining security through spatial separation and controlled access paths between segments.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a secure access server as an intermediary between personal terminal devices and corporate networks. This intermediary verifies device security status, manages authentication, and controls access permissions, enabling flexible remote work access while maintaining network security through centralized mediation and monitoring.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11886565B2Server that supports security access of terminal device of the user and controlling method thereof
Publication Date: 2024.01.30 NATIONAL AGRICULTURAL COOPERATIVE FEDERATION
  • US11886565B2 patent drawing
  • US11886565B2 patent drawing
  • US11886565B2 patent drawing

AI summary

A method for controlling an operation of a virtual machine on a cloud by a server is provided. The method includes: (a) receiving, from a terminal device of a user having only a usage authority for a specific virtual machine resource among a plurality of virtual machine resources, a request for allocating or deallocating at least some of the plurality of virtual machine resources to the terminal device; and (b) based on a control condition of the user for the at least some of the plurality of virtual machine resources being recognized, supporting to perform allocation or deallocation of the virtual machine resource by generating a process corresponding to the at least some of the plurality of virtual machine resources and loading the process on a memory or deleting the process from the memory according to the request.