Centralized Server Segregating Enterprise Data by Virtual Organization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional centralized servers manage entire internal networks as a single entity, failing to address the distinct needs of different departments within an enterprise and compromising data security by making all data accessible to all departments.
Innovation Solution
A centralized server that allows customers to create and manage multiple organizations independently, segregating data and restricting access to ensure each organization has its own set of resources and data, enhancing security and management efficiency.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Device complexity
If a centralized server manages the entire internal network as a single entity, then the server structure is simple and easy to manage, but it cannot address different needs of different departments and compromises data security
Solution Approach 1:
The patent divides the internal network into multiple virtual organizations, each representing a distinct department or entity. The centralized server maintains a single physical structure but logically segments data and access rights by organizing resources into separate virtual organizations, allowing each department to have its own data space while sharing the same infrastructure.
Solution Approach 2:
The patent implements organization-specific data policies and access controls that allow different departments to have customized security settings, data retention policies, and resource allocation rules. Each virtual organization can have its own administrative credentials and access permissions tailored to its specific needs.
2Device complexity
If a centralized server manages the entire internal network as a single entity, then the server structure is simple and easy to manage, but data security is compromised because all data is accessible to all departments
Solution Approach 1:
The patent segments data into organization-specific data spaces, where each virtual organization has its own isolated data container. The server enforces access controls that prevent users from one organization from accessing data belonging to another organization, while maintaining a unified server infrastructure.
Solution Approach 2:
The patent introduces virtual organization identifiers and access control mechanisms as intermediaries between users and data. These intermediaries enforce security policies by checking organizational membership and permissions before allowing data access, preventing unauthorized cross-organization data access.
3Ease of operation
If the server treats the entire enterprise as a single entity, then management is simplified, but the server is unable to address different needs of different departments within the enterprise
Solution Approach 1:
The patent creates multiple virtual organizations within the single server environment, allowing administrators to manage each department as a separate entity with its own credentials and policies. This virtual segmentation enables differentiated management without requiring separate physical servers for each department.
Solution Approach 2:
The patent makes the single centralized server multi-functional by enabling it to simultaneously serve multiple virtual organizations with different requirements. The server can apply different data policies, access controls, and resource allocations to each organization while maintaining a unified management interface.
Data Source
AI summary
Some embodiments of multiple organization support in a networked system have been presented. In one embodiment, a centralized server manages a networked system, which includes the centralized server and a set of computing machines coupled to each other within an internal network of a customer. The centralized server segregates data within the networked system by grouping data into the concept of an organization created by the customer in order to isolate the organizations.


