Unified Multi-Tenant Transaction Services With Hierarchical Resource Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Multi-tenant software architectures face challenges in managing complex configurations, secure data access, and interoperability among multiple clients, particularly when different businesses host and manage software applications.

Innovation Solution

A multi-tenant platform that provides unified identity services, transaction services, and hierarchical data structures to facilitate access and manage services across tenants, enabling secure and efficient transaction processing between different entities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of energy

If multi-tenant architecture is used to share applications and resources among multiple entities, then resource utilization is optimized and costs are reduced, but complexity of managing configurations and securing data access increases

Engineering Contradiction:
Improveresource utilizationVSAvoidconfiguration management complexity
Core Design Contradiction:
Loss of energyVSDevice complexity

Solution Approach 1:

The patent segments the multi-tenant system into distinct hierarchical levels (global tenant level, application level, data level) with dedicated configuration management at each level. This segmentation allows independent management of configurations for different tenants and applications, reducing the overall complexity while maintaining resource sharing benefits.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces intermediary components including configuration management services and identity services that act as mediators between tenants and shared resources. These intermediaries handle the complexity of configuration management and security policies, allowing tenants to access shared resources without directly managing the underlying complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of energy

If multi-tenant architecture is used to share data and infrastructure, then expenses for hosting and maintenance are reduced, but design of secure and reliable access to data and transaction services becomes problematic

Engineering Contradiction:
Improvemaintenance expenseVSAvoidsecure access reliability
Core Design Contradiction:
Loss of energyVSReliability

Solution Approach 1:

The patent implements local quality by providing customized security policies and access controls at each tenant level and application level. Each tenant can have its own security requirements and data access policies enforced locally, while still sharing the underlying infrastructure. This ensures reliable secure access without compromising the shared resource model.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

Identity services act as intermediaries that manage authentication, authorization, and secure access control between tenants and shared data/resources. These intermediary services ensure reliable and secure access by mediating all access requests and enforcing security policies without requiring direct tenant management of security infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If software applications are initially managed by different businesses in a multi-tenant system, then interoperability difficulties arise, but integration of multiple service providers is necessary for comprehensive transaction services

Engineering Contradiction:
Improvemulti-provider integrationVSAvoidinteroperability
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent implements universality through a standardized configuration management framework and common data models that work across different service providers and tenants. This universal framework enables multiple businesses to integrate their applications in the multi-tenant system with consistent interfaces and protocols, improving interoperability while maintaining the ability to support diverse providers.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent uses parameter changes by allowing configuration parameters to be dynamically adjusted at different hierarchical levels to accommodate different service providers' requirements. The system can modify configuration parameters to enable or disable specific features, adjust security policies, and adapt to different business rules without affecting the overall system architecture, thus facilitating interoperability among diverse providers.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS12400194B2Unified transaction services for multi-tenant architectures
Publication Date: 2025.08.26 PAYPAL INC
  • US12400194B2 patent drawing
  • US12400194B2 patent drawing
  • US12400194B2 patent drawing

AI summary

A method for using unified transaction services in a multi-tenant architecture system is discussed. The method includes receiving a request, at a first service provider, to provide a first transaction service for a user. The method includes accessing a first representation of the first service provider in a first hierarchical data structure, the first hierarchical data structure being managed by a second service provider, the second service provider managing user identity of the user. The method includes determining, based on the first representation, that transaction resources required for completion of the first transaction service are provided at the second service provider using a resource representation. The method also includes, responsive to determining that the transaction resources are accessible at the first service provider, accessing, at the first service provider, the transaction resources via the resource representation.