IP Library Granted Patent US 12,177,227
Granted Patent B2
US 12,177,227 · App. 17/494,618 · Granted Dec 24, 2024

Methods and apparatus to expose cloud infrastructure resources to tenants in a multi-tenant software system

Inventors: Stoyan Genchev (Sofia, BG); Ilia Pantchev (Sofia, BG); Marin Dzhigarov (Sofia, BG); Dimitar Ivanov (Sofia, BG); Daniel Pavlov (Sofia, BG); Zhan Ivanov (Sofia, BG); Valentina Reutova (London, GB); Grigor Ganekov (Sofia, BG); Ina Uzunova (Sofia, BG); Albena Kertova (Sofia, BG)
Assignee: VMware LLC
H04L63/107G06F9/5077H04L47/82H04L63/102
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,177,227
App. No.
17/494,618
Granted
Dec 24, 2024
Kind
B2
Abstract

Methods, apparatus, systems, and articles of manufacture are disclosed for provisioning cloud infrastructure resources, the apparatus comprising: resource bundling circuitry to select cloud infrastructure resources to bundle as a virtual private zone; provisioning circuitry to provision the cloud infrastructure resources; and allocation circuitry to allocate the virtual private zone to a first tenant, the first tenant authorized to access the cloud infrastructure resources bundled in the virtual private zone.

Claims (63)

1. An apparatus for provisioning cloud infrastructure resources, the apparatus comprising:

resource bundling circuitry to select cloud infrastructure resources to bundle as a virtual private zone;

provisioning circuitry to provision the cloud infrastructure resources; and

allocation circuitry to allocate the virtual private zone to a first tenant, the first tenant authorized to access the cloud infrastructure resources bundled in the virtual private zone;

wherein the virtual private zone includes a pointer to an organization of the first tenant.

2. The apparatus of claim 1 , wherein the cloud infrastructure resources include at least one of a compute resource, a storage resource, a network resource, an image mapping, or an instance type mapping.

3. The apparatus of claim 1 , further including cloud account determination circuitry to:

determine if a user has a cloud account; and

in response to the user having the cloud account, allow provisioning of the cloud infrastructure resources based on the cloud account as the virtual private zone.

4. The apparatus of claim 3 , wherein the cloud infrastructure resources are first cloud infrastructure resources, the cloud account determination circuitry to determine second cloud infrastructure resources offered by a provider of the cloud account, the resource bundling circuitry to select the first cloud infrastructure resources from the second cloud infrastructure resources.

5. The apparatus of claim 1 , wherein the allocation circuitry is to determine to switch the allocation of the virtual private zone by:

removing access to the virtual private zone by the first tenant; and

allocating the virtual private zone to a second tenant.

6. The apparatus of claim 1 , further including policy circuitry to:

prevent the first tenant from accessing version information of one of the cloud 2 infrastructure resources; and

allow the first tenant to access a name of the one of the cloud infrastructure resources.

7. The apparatus of claim 1 , wherein the cloud infrastructure resources are linked to the virtual private zone based on a virtual private zone identifier, the virtual private zone identifier corresponding to the virtual private zone.

8. The apparatus of claim 1 , wherein the provisioning circuitry is to create a project including the virtual private zone and the first tenant.

9. The apparatus of claim 1 , wherein the virtual private zone is a cloud zone object, the cloud zone object to include at least one of an instance type mapping, an image type mapping, a storage profile, or a network profile.

10. An apparatus comprising:

at least one memory;

instructions in the apparatus; and

processor circuitry to execute the instructions to:

select cloud infrastructure resources to bundle as a virtual private zone;

provision the cloud infrastructure resources; and

allocate the virtual private zone to a first tenant, the first tenant authorized to access the cloud infrastructure resources bundled in the virtual private zone;

wherein the virtual private zone is a cloud zone object, the cloud zone object to include at least one of an instance type mapping, an image type mapping, a storage profile, or a network profile.

11. The apparatus of claim 10 , wherein the cloud infrastructure resources include at least one of a compute resource, a storage resource, a network resource, an image mapping, or an instance type mapping.

12. The apparatus of claim 10 , wherein the processor circuitry is to execute the instructions to:

determine if a user has a cloud account; and

in response to the user having the cloud account, allow provisioning of the cloud infrastructure resources based on the cloud account as the virtual private zone.

13. The apparatus of claim 12 , wherein the cloud infrastructure resources are first cloud infrastructure resources, the processor circuitry to execute the instructions to:

determine second cloud infrastructure resources offered by a provider of the cloud account; and

select the first cloud infrastructure resources from the second cloud infrastructure resources.

14. The apparatus of claim 10 , wherein the processor circuitry is to execute the instructions to determine to switch the allocation of the virtual private zone by:

removing access to the virtual private zone by the first tenant; and

allocating the virtual private zone to a second tenant.

15. The apparatus of claim 10 , wherein the processor circuitry is to execute the instructions to:

prevent the first tenant from accessing version information of one of the cloud infrastructure resources; and

allow the first tenant to access a name of the one of the cloud infrastructure resources.

16. The apparatus of claim 10 , wherein the cloud infrastructure resources are linked to the virtual private zone based on a virtual private zone identifier, the virtual private zone identifier corresponding to the virtual private zone.

17. The apparatus of claim 10 , wherein the virtual private zone includes a pointer to an organization of the first tenant.

18. The apparatus of claim 10 , wherein the processor circuitry is to execute the instructions to create a project including the virtual private zone and the first tenant.

19. A non-transitory computer-readable medium comprising instructions that, when executed, cause processor circuitry to at least:

select cloud infrastructure resources to bundle as a virtual private zone;

provision the cloud infrastructure resources;

allocate the virtual private zone to a first tenant, the first tenant authorized to access the cloud infrastructure resources bundled in the virtual private zone;

prevent the first tenant from accessing version information of one of the cloud infrastructure resources; and

allow the first tenant to access a name of the one of the cloud infrastructure resources.

20. The non-transitory computer-readable e medium of claim 19 , wherein the cloud infrastructure resources include at least one of a compute resource, a storage resource, a network resource, an image mapping, or an instance type mapping.

21. The non-transitory computer-readable medium of claim 19 , wherein the instructions are to cause the processor circuitry to:

determine if a user has a cloud account; and

in response to the user having the cloud account, allow provisioning of the cloud infrastructure resources based on the cloud account as the virtual private zone.

22. The non-transitory computer-readable medium of claim 21 , wherein the cloud infrastructure resources are first cloud infrastructure resources, the instructions to cause the processor circuitry to:

determine second cloud infrastructure resources offered by a provider of the cloud account; and

select the first cloud infrastructure resources from the second cloud infrastructure resources.

23. The non-transitory computer-readable medium of claim 19 , wherein the instructions are to cause the processor circuitry to determine to switch the allocation of the virtual private zone by:

removing access to the virtual private zone by the first tenant; and

allocating the virtual private zone to a second tenant.

24. The non-transitory computer-readable medium of claim 19 , wherein the cloud infrastructure resources are linked to the virtual private zone based on a virtual private zone identifier, the virtual private zone identifier corresponding to the virtual private zone.

25. The non-transitory computer-readable medium of claim 19 , wherein the virtual private zone includes a pointer to an organization of the first tenant.

26. The non-transitory computer-readable medium of claim 19 , wherein the instructions are to cause the processor circuitry to create a project including the virtual private zone and the first tenant.

27. The non-transitory computer-readable medium of claim 19 , wherein the virtual private zone is a cloud zone object, the cloud zone object to include at least one of an instance type mapping, an image type mapping, a storage profile, or a network profile.

Assignments (2)
CHANGE OF NAME Recorded Feb 27, 2024
From: VMWARE, INC.
To: VMWARE LLC
Reel/Frame 066692/0103 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 7, 2021
From: GENCHEV, STOYAN; PANTCHEV, ILIA; DZHIGAROV, MARIN; IVANOV, DIMITAR; PAVLOV, DANIEL; IVANOV, ZHAN; REUTOVA, VALENTINA; GANEKOV, GRIGOR; UZUNOVA, INA; KERTOVA, ALBENA
To: VMWARE, INC.
Reel/Frame 058315/0505 →