Space Inheritance Logical Partitioning Cloud Resource Overhead
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Cloud computing systems face inefficiencies and high overhead costs due to maintaining multiple copies of common data for users, as existing methods of partitioning data do not effectively manage resource sharing among multiple tenants while maintaining privacy and security.
Innovation Solution
The implementation of a 'space' system for logical partitioning of resources, allowing for controlled sharing and precedence organization, which reduces overhead costs by enabling tenants to access specific resources based on authentication and policies, while using physical mapping policies to allocate resources efficiently.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the cloud service provider maintains several copies of common data for different users, then user data privacy and security are improved, but resource efficiency and storage costs deteriorate
Solution Approach 1:
The system segments user access rights through a hierarchical space structure where users are assigned to specific spaces (tenant spaces, project spaces, etc.) rather than providing universal access. This segmentation allows the provider to maintain centralized data copies while ensuring each user can only access their authorized segments, thus maintaining security without requiring multiple physical copies of all data.
2Reliability
If the cloud service provider partitions user data into separate copies for each user, then user data privacy is improved, but overhead costs and system complexity deteriorate
Solution Approach 1:
The patent introduces an intermediary authentication and authorization system that sits between users and the centralized data storage. This intermediary layer (comprising authentication servers, policy enforcement points, and space hierarchy management) mediates access requests, allowing the system to maintain simplified centralized data storage while providing the privacy benefits of partitioning through logical rather than physical separation.
3Reliability
If the cloud service provider uses traditional data partitioning methods, then user data security is maintained, but resource sharing efficiency and productivity deteriorate
Solution Approach 1:
The space hierarchy structure serves multiple functions simultaneously: it organizes data by tenant and project, enforces security policies, manages authentication, and enables efficient resource sharing. This universal structure allows the same hierarchical framework to handle both security partitioning and resource allocation, improving productivity without compromising security.
Data Source
AI summary
A method, article of manufacture, and apparatus for managing a cloud computing environment. In some embodiments, this includes partitioning resources to create a space, determining a parent space, inheriting properties of the parent space, and storing the space in a storage device. In some embodiments, a precedence may be designated to resources of the created space, and may override properties of the parent.


