Centralized Server Segregating Enterprise Data by Virtual Organization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional centralized servers manage entire internal networks as a single entity, failing to address the distinct needs of different departments within an enterprise and compromising data security by making all data accessible to all departments.

Innovation Solution

A centralized server that allows customers to create and manage multiple organizations independently, segregating data and restricting access to ensure each organization has its own set of resources and data, enhancing security and management efficiency.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Device complexity

If a centralized server manages the entire internal network as a single entity, then the server structure is simple and easy to manage, but it cannot address different needs of different departments and compromises data security

Engineering Contradiction:
Improveserver structureVSAvoidability to address different department needs
Core Design Contradiction:
Device complexityVSAdaptability or versatility

Solution Approach 1:

The patent divides the internal network into multiple virtual organizations, each representing a distinct department or entity. The centralized server maintains a single physical structure but logically segments data and access rights by organizing resources into separate virtual organizations, allowing each department to have its own data space while sharing the same infrastructure.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements organization-specific data policies and access controls that allow different departments to have customized security settings, data retention policies, and resource allocation rules. Each virtual organization can have its own administrative credentials and access permissions tailored to its specific needs.

Inventive Principle:
Principle #3Local quality

2Device complexity

If a centralized server manages the entire internal network as a single entity, then the server structure is simple and easy to manage, but data security is compromised because all data is accessible to all departments

Engineering Contradiction:
Improveserver structureVSAvoiddata security
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent segments data into organization-specific data spaces, where each virtual organization has its own isolated data container. The server enforces access controls that prevent users from one organization from accessing data belonging to another organization, while maintaining a unified server infrastructure.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces virtual organization identifiers and access control mechanisms as intermediaries between users and data. These intermediaries enforce security policies by checking organizational membership and permissions before allowing data access, preventing unauthorized cross-organization data access.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If the server treats the entire enterprise as a single entity, then management is simplified, but the server is unable to address different needs of different departments within the enterprise

Engineering Contradiction:
Improvemanagement simplicityVSAvoidability to address departmental needs
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent creates multiple virtual organizations within the single server environment, allowing administrators to manage each department as a separate entity with its own credentials and policies. This virtual segmentation enables differentiated management without requiring separate physical servers for each department.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent makes the single centralized server multi-functional by enabling it to simultaneously serve multiple virtual organizations with different requirements. The server can apply different data policies, access controls, and resource allocations to each organization while maintaining a unified management interface.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8468519B2Multiple organization support in a networked system
Publication Date: 2013.06.18 RED HAT INC
  • US8468519B2 patent drawing
  • US8468519B2 patent drawing
  • US8468519B2 patent drawing

AI summary

Some embodiments of multiple organization support in a networked system have been presented. In one embodiment, a centralized server manages a networked system, which includes the centralized server and a set of computing machines coupled to each other within an internal network of a customer. The centralized server segregates data within the networked system by grouping data into the concept of an organization created by the customer in order to isolate the organizations.