User Tagging and Routing for Cross-Data Center Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Organizations with multiple data centers face challenges in providing a unified user experience and organizational presence across different data centers, leading to inconsistencies and requiring users to manually navigate to specific data centers for resource access.
Innovation Solution
Implementing a system that tags users with a data center identifier, automatically redirecting them to their associated data center for resource access and permissions management, using a user tagging system, provision routing system, and permission routing system to ensure seamless access and compliance with data restrictions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of time
If users manually navigate to specific data centers to access resources, then users can access their resources, but users must know which specific instance of a service to log into and the process is time-consuming
Solution Approach 1:
The system automatically tags users with their associated data center identifier and performs automatic navigation without requiring user intervention. The user tagging component assigns data center tags based on organizational presence, and the provision routing system automatically routes users to the correct data center, eliminating manual navigation efforts.
Solution Approach 2:
The patent introduces an intermediary routing system that acts as a mediator between users and data centers. The provision routing system receives user requests, determines the appropriate data center based on user tags, and automatically navigates users to the correct service instance, simplifying the access process.
2Adaptability or versatility
If separate organizational presences are set up in each data center, then data and services can be hosted in different geographical locations, but organizational presence and user experience differ across data centers
Solution Approach 1:
The patent implements a universal user tagging system that works across all data centers. The user tagging component assigns consistent organizational presence indicators and data center tags to users regardless of which data center hosts their resources, ensuring a unified user experience while allowing data to be distributed across multiple geographical locations.
Solution Approach 2:
The system maintains homogeneous organizational presence across different data centers by using consistent user tagging mechanisms. All users receive standardized tags that identify their organizational affiliation and associated data center, ensuring uniform access patterns and user experience regardless of geographical location.
3Adaptability or versatility
If users access resources across multiple data centers, then users can access their resources regardless of location, but security management and permission enforcement become complex
Solution Approach 1:
The permission routing system acts as an intermediary that simplifies security management. It receives resource access requests, determines the appropriate data center based on user tags, and routes requests to the correct permission processing system, thereby simplifying security management across multiple data centers.
Solution Approach 2:
The system automatically determines which data center should process permission requests based on user tags and resource locations. This self-service routing mechanism eliminates the need for manual security configuration and simplifies permission enforcement by automatically directing requests to the appropriate authority.
Data Source
AI summary
Users in a given organization are tagged with a data center identifier (or data location) that identifies a data center where the user's resources are located. A user request is detected, that indicates that the user wishes to access a resource that is tied to the user. The user is automatically navigated to the user's corresponding data center, where the user permissions are analyzed to selectively grant access to the requested resource.


