Universal Workspace Broker for Virtualized Computing Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing virtual machine environments face challenges such as bulky designs, time-consuming methods, inability to address client-specific needs, and lack of secure access, particularly in deploying multiple virtual machine hosts for efficient workspace environments.

Innovation Solution

A system and method for scheduling and provisioning end-to-end computing environments, providing secure access, personalized workspaces, and resource management across virtualized or non-virtualized systems, utilizing a universal workspace broker that integrates various software products and communication interfaces for efficient deployment and management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of manufacture

If a virtual machine environment is created with predefined configuration options, then deployment is simplified, but the system cannot address client-specific needs

Engineering Contradiction:
Improvedeployment simplicityVSAvoidclient-specific customization
Core Design Contradiction:
Ease of manufactureVSAdaptability or versatility

Solution Approach 1:

The virtual machine configuration is divided into discrete, selectable components (CPU cores, memory, storage, applications) that can be independently chosen and combined. This segmentation allows the system to maintain simple predefined templates while enabling custom assembly of VM specifications to meet diverse client requirements.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The VM creation system is designed to serve multiple functions: it provides predefined templates for quick deployment, allows custom configuration assembly, supports multiple operating systems and applications, and adapts to different client needs. This multi-functionality resolves the contradiction by making a single system capable of both simplification and customization.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Productivity

If multiple virtual machine hosts are deployed for efficient workspace environments, then scalability is improved, but secure access management becomes more complex

Engineering Contradiction:
ImprovescalabilityVSAvoidaccess management complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

A centralized web-based portal serves as an intermediary between users and multiple VM hosts. This portal provides unified authentication, user management, and VM allocation across all hosts, thereby enabling scalability while maintaining simple and consistent access management. The portal abstracts the complexity of multiple hosts from end users.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If secure authentication and authorization are implemented across virtualized environments, then system security is improved, but user access speed is reduced

Engineering Contradiction:
Improvesystem securityVSAvoiduser access speed
Core Design Contradiction:
ReliabilityVSSpeed

Solution Approach 1:

User authentication and authorization are performed in advance when users register and log in through the web portal, before they access virtual machines. Authentication tokens or session information is cached, allowing subsequent VM accesses to be faster. This preliminary security check maintains high security while reducing access time for subsequent operations.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS7984483B2System and method for working in a virtualized computing environment through secure access
Publication Date: 2011.07.19 ACXESS
  • US7984483B2 patent drawing
  • US7984483B2 patent drawing
  • US7984483B2 patent drawing

AI summary

A personalized virtual computing system includes a plurality of client personal computers (PCs), each comprising at least a web browser and a communications client, a plurality of virtual machine hosts each comprising a communications server for communicating with the client PCs via said communications client, a web server comprising a client-customized web site, a directory database including identification information of authorized users and a database including a reservation table.