Virtual Machine Interface for Secure Cloud Service Delivery

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In cloud-based services, users face challenges in preventing source code leakage when using software as a service (SaaS), as service providers can intercept and access user application sources, compromising security.

Innovation Solution

A method involving a license management server that receives a virtual machine interface from a cloud server, installs service provider software, and provides access authority to user terminals through the virtual machine interface, ensuring secure authentication and license management to prevent source code interception.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a service providing company installs software directly in user terminals or cloud infrastructure, then service delivery is simplified, but source code security is compromised as the provider can intercept user sources

Engineering Contradiction:
Improveservice delivery processVSAvoidsource code security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a virtual machine interface as an intermediary layer between the service providing company and the user terminal. The service provider installs software in the virtual machine rather than directly in user terminals, which prevents direct access to user source code while maintaining service delivery capability. The virtual machine acts as a mediator that isolates the service provider from user-sensitive data.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If users contract with both cloud providing company and service providing company, then service functionality is achieved, but process complexity increases due to multiple contracts

Engineering Contradiction:
Improveservice functionalityVSAvoidcontracting process
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges the cloud service infrastructure with the software service delivery by installing the service provider's software within the cloud provider's virtual machine interface. This combination allows users to access services through a single cloud contract while maintaining security isolation, effectively merging two separate service models (IaaS and SaaS) into one integrated solution.

Inventive Principle:
Principle #5Merging (Combining)

3Ease of operation

If service providing company has authority to operate cloud system, then service management is simplified, but user control over infrastructure is lost

Engineering Contradiction:
Improveservice managementVSAvoiduser infrastructure control
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent segments the cloud system authority into two distinct layers: the cloud provider maintains operational authority over the underlying infrastructure, while the service provider gains controlled access to install and manage software within the virtual machine interface. This segmentation allows both parties to have appropriate levels of control without conflict, with the service provider able to manage software deployment while the cloud provider retains infrastructure authority.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS11636184B2Method for providing cloud-based service
Publication Date: 2023.04.25 SPARROW CO LTD
  • US11636184B2 patent drawing
  • US11636184B2 patent drawing
  • US11636184B2 patent drawing

AI summary

A method for providing a software service of a license management server is disclosed. The method comprises the steps of: receiving a virtual machine interface from a cloud server; installing software of a service provider in the virtual machine interface; transmitting a license to the virtual machine interface; providing ID and password related authority to a user terminal; and providing a service of the software to the user terminal through the virtual machine interface when the user terminal accesses the software. Therefore, source code leakage due to static analysis can be fundamentally prevented.