Identity management for virtual private label clouds

US2024095739A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2024095739-A1
Application numberUS-202318368884-A
CountryUS
Kind codeA1
Filing dateSep 15, 2023
Priority dateSep 16, 2022
Publication dateMar 21, 2024
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Novel techniques are disclosed for enabling identity cloud service for virtual private label clouds (vPLCs). A vPLC is created for a reseller of a Cloud Services Provider (CSP) using CSP-provided infrastructure in a region such that the reseller can provide one or more reseller-offered cloud services to customers of the reseller. In some embodiments, the identity management may be configured with either a shared identity cloud service (IDCS) stack model or an independent IDCS stack model. In certain embodiments, two-tier vPLC-aware identity management functions are performed for resellers of the CSP and customers of the resellers.

First claim

Opening claim text (preview).

What is claimed is: 1 . A method, comprising: using a first portion of cloud service provider (CSP)-provided infrastructure in a first region to provide one or more CSP-offered cloud services to one or more customers of the CSP; creating a first virtual private label cloud (vPLC) for a first reseller based upon the CSP-provided infrastructure, wherein creating the first vPLC comprises allocating a second portion of the CSP-provided infrastructure to the first vPLC; using the first vPLC to provide one or more first reseller-offered cloud services to one or more customers of the first reseller; configuring an identity management for the CSP based on a CSP-provided infrastructure; configuring an identity management for the first reseller based on the CSP-provided infrastructure in a region; creating identity information associated with a customer of the CSP in a first namespace; creating identity information associated with the first reseller in a second namespace; performing identity management functions for the customer of the CSP using the identity information associated with the customer of the CSP; and performing identity management functions for a user of the first reseller using the identity information associated with the first reseller. 2 . The method of claim 1 , wherein the identity management functions for the customer of the CSP is performed by a first identity service stack comprising a first set of resources of the CSP-provided infrastructure. 3 . The method of claim 2 , wherein the identity management functions for the user of the first reseller is performed by the first identity service stack. 4 . The method of claim 2 , wherein the identity management functions for the user of the first reseller is performed by a second identity service stack comprising a second set of resources of the CSP-provided infrastructure. 5 . The method of claim 4 , wherein the second identity service stack is a clone of the first identity service stack. 6 . The method of claim 4 , wherein creating the identity information associated with the first reseller is performed by the first identity service stack. 7 . The method of claim 4 , wherein creating the identity information associated with the first reseller is performed by the second identity service stack. 8 . The method of claim 1 , further comprising configuring the identity management for a second reseller of the CSP based on the CSP-provided infrastructure; and creating identity information associated with the second reseller in a third namespace. 9 . The method of claim 1 , wherein the identity information associated with the first reseller comprises identity information for users of the first reseller, and users of customers of the first reseller. 10 . A non-transitory computer-readable medium storing computer-executable instructions that, when executed by one or more processors, cause the one or more processors to perform operations comprising: using a first portion of cloud service provider (CSP)-provided infrastructure in a first region to provide one or more CSP-offered cloud services to one or more customers of the CSP; creating a first virtual private label cloud (vPLC) for a first reseller based upon the CSP-provided infrastructure, wherein creating the first vPLC comprises allocating a second portion of the CSP-provided infrastructure to the first vPLC; using the first vPLC to provide one or more first reseller-offered cloud services to one or more customers of the first reseller; configuring an identity management for the CSP based on a CSP-provided infrastructure; configuring an identity management for the first reseller based on the CSP-provided infrastructure in a region; creating identity information associated with a customer of the CSP in a first namespace; creating identity information associated with the first reseller in a second namespace; performing identity management functions for the customer of the CSP using the identity information associated with the customer of the CSP; and performing identity management functions for a user of the first reseller using the identity information associated with the first reseller. 11 . The non-transitory computer-readable medium of claim 10 , wherein the identity management functions for the customer of the CSP is performed by a first identity service stack comprising a first set of resources of the CSP-provided infrastructure. 12 . The non-transitory computer-readable medium of claim 11 , wherein the identity management functions for the user of the first reseller is performed by the first identity service stack. 13 . The non-transitory computer-readable medium of claim 11 , wherein the identity management functions for the user of the first reseller is performed by a second identity service stack comprising a second set of resources of the CSP-provided infrastructure. 14 . The non-transitory computer-readable medium of claim 13 , wherein creating the identity information associated with the first reseller is performed by the first identity service stack. 15 . The non-transitory computer-readable medium of claim 13 , wherein creating the identity information associated with the first reseller is performed by the second identity service stack. 16 . The non-transitory computer-readable medium of claim 10 , wherein the identity information associated with the first reseller comprises identity information for users of the first reseller, and users of customers of the first reseller. 17 . A system, comprising: one or more processors; and one or more memories storing computer-executable instructions that, when executed by the one or more processors, cause the system to: use a first portion of cloud service provider (CSP)-provided infrastructure in a first region to provide one or more CSP-offered cloud services to one or more customers of the CSP; create a first virtual private label cloud (vPLC) for a first reseller based upon the CSP-provided infrastructure, wherein creating the first vPLC comprises allocating a second portion of the CSP-provided infrastructure to the first vPLC; use the first vPLC to provide one or more first reseller-offered cloud services to one or more customers of the first reseller; configure an identity management for the CSP based on a CSP-provided infrastructure; configure an identity management for the first reseller based on the CSP-provided infrastructure in a region; create identity information associated with a customer of the CSP in a first namespace; create identity information associated with the first reseller in a second namespace; perform identity management functions for the customer of the CSP using the identity information associated with the customer of the CSP; and perform identity management functions for a user of the first reseller using the identity information associated with the first reseller. 18 . The system of claim 17 , wherein the identity management functions for the customer of the CSP is performed by a first identity service stack comprising a first set of resources of the CSP-provided infrastructure. 19 . The system of claim 18 , wherein the identity management functions for the user of the first reseller is performed by the first identity service stack. 20 . The system of claim 18 , wherein the identity management functions for the user of the first reseller is performed by a second identity service stack comprising a second set of resources of the CSP-provided infrastructure.

Assignees

Inventors

Classifications

  • in which an application is distributed across nodes in the network (software deployment G06F8/60; multiprogramming arrangements G06F9/46) · CPC title

  • G06F9/5072Primary

    Grid computing · CPC title

  • Virtual private networks · CPC title

  • Virtual LANs, VLANs, e.g. virtual private networks [VPN] (LAN interconnection over a bridge based backbone H04L12/462; encapsulation techniques H04L12/4633; routing of packets H04L45/00; packet switches H04L49/00; virtual private networks for security H04L63/0272) · CPC title

  • Identity check for transactions · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2024095739A1 cover?
Novel techniques are disclosed for enabling identity cloud service for virtual private label clouds (vPLCs). A vPLC is created for a reseller of a Cloud Services Provider (CSP) using CSP-provided infrastructure in a region such that the reseller can provide one or more reseller-offered cloud services to customers of the reseller. In some embodiments, the identity management may be configured wi…
Who is the assignee on this patent?
Oracle Int Corp
What technology area does this patent fall under?
Primary CPC classification G06F9/5072. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu Mar 21 2024 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).