IP Library Granted Patent US 10,509,668
Granted Patent B2
US 10,509,668 · App. 15/958,918 · Granted Dec 17, 2019

Methods and systems for provisioning a virtual resource in a mixed-use server

Inventors: Charles F. Buck (Kempton, PA); Jason A. Shivok (Easton, PA)
Assignee: CloudJumper Corporation
G06F9/45558G06F9/45533G06F9/5072G06F9/5077G06F9/52H04L63/0263H04L63/08G06F2009/4557G06F2009/45562G06F2009/45595H04L63/083H04L63/0861
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,509,668
App. No.
15/958,918
Granted
Dec 17, 2019
Kind
B2
Abstract

A method for provisioning a virtualized resource includes directing, by a provisioning machine, a server-executed hypervisor to provision a virtual machine. The provisioning machine directs generation of an organizational unit within a first organizational unit within a multi-tenant directory service separated from a second organizational unit in the multi-tenant directory service by a firewall. The provisioning machine associates the virtual machine with the first organizational unit. The provisioning machine establishes a firewall policy on the virtual machine restricting communications to the virtual machine and excluding a user associated with the second organizational unit. The provisioning machine receives a request to provision a virtualized resource for at least one user. The server establishes a connection between a client machine of the at least one user and the at least one virtual machine providing the at least one virtual resource.

Claims (16)

1. A method for provisioning a virtualized resource in a mixed-use virtualization environment, the method comprising:

directing, by a provisioning machine, a hypervisor executing on a server, to provision a virtual machine on the server;

directing, by the provisioning machine, a directory service management component executing on a directory server to generate a first organizational unit within a multi-tenant directory service associated with a first entity and separated from a second organizational unity in the multi-tenant directory service by a firewall;

associating, by the provisioning machine, the virtual machine with the first organizational unit;

directing, by the provisioning machine, the directory service management component to establish a firewall policy preventing a user authorized to access the second organizational unit in the multi-tenant directory service from accessing the first organizational unit, the second organizational unit associated with a second entity, wherein establishing the firewall policy further comprises:

modifying, by the directory service management component, a policy object defining at least one attribute of the first organizational unity to include the firewall policy;

receiving, by the provisioning machine, from a management component, a request to provision a virtualized resource for at least one user within an organization, the request received after the provisioning of the virtual machine and generation of the first organizational unit; and

establishing, by the server, a connection between a client machine of the at least one user and the at least one virtual machine providing the at least one virtual resource.

2. The method of claim 1 , wherein directing generation of the first organizational unit further comprises directing the directory service management component to instruct the directory server to generate the first organizational unit.

3. The method of claim 2 further comprising transmitting, by the directory service management component, an instruction to generate the first organizational unit via an application programming interface (API) to the directory server.

4. The method of claim 1 , wherein associating further comprises directing the directory service to modify data associated with the first organizational unit to include an identification of the virtual machine.

5. The method of claim 1 further comprising marking the virtual machine as available for hosting a virtualized resource.

6. The method of claim 1 , wherein receiving further comprises receiving an indication that the virtualized resource is to execute on a virtual machine dedicated to a single user.

7. The method of claim 1 , wherein receiving further comprises receiving an indication of a type of the virtualized resource.

8. The method of claim 1 , wherein receiving further comprises receiving a username associated with the at least one user.

9. The method of claim 1 further comprising generating a resource username associated with the username for use when accessing the virtualized resource.

Assignments (6)
NUNC PRO TUNC ASSIGNMENT Recorded Jan 15, 2024
From: NETAPP, INC.
To: HEWLETT-PACKARD DEVELOPMENT COMPANY, L.P.
Reel/Frame 066122/0352 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 24, 2020
From: CLOUD JUMPER LLC
To: NETAPP, INC.
Reel/Frame 053028/0013 →
CHANGE OF NAME Recorded Jun 22, 2020
From: CLOUD JUMPER CORPORATION
To: CLOUD JUMPER LLC
Reel/Frame 053121/0586 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 25, 2018
From: INDEPENDENCEIT, INC.
To: CJ ACQUISITION CORPORATION
Reel/Frame 045631/0305 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 25, 2018
From: CJ ACQUISITION CORPORATION
To: CLOUDJUMPER CORPORATION
Reel/Frame 045631/0319 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 25, 2018
From: BUCK, CHARLES; SHIVOK, JASON
To: INDEPENDENCEIT, INC.
Reel/Frame 046010/0969 →
Continuity (5)
Continuation 15416024 · Jan 26, 2017
Continuation 14990246 · Jan 7, 2016
Continuation 14721154 · May 26, 2015
Provisional Application 62016728 · Jun 25, 2014
Related Publication 20180239630A1 · Aug 23, 2018