IP Library Granted Patent US 11,570,183
Granted Patent B2
US 11,570,183 · App. 16/895,988 · Granted Jan 31, 2023

Tenant grouping for secure transport of content

Inventors: Harikrishnan Mangayil (Bangalore, IN); Abhishek Nagendra (Bangalore, IN); Yash Bagadia (Bangalore, IN); Subhadeep Khan (Anandaur, IN); Jayant Sable (Bangalore, IN); Srinivas Vinnakota (Bangalore, IN); Sukesh Kaul (Ghaziabad, IN)
Assignee: SAP SE
H04L63/105G06F16/245
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,570,183
App. No.
16/895,988
Granted
Jan 31, 2023
Kind
B2
Abstract

A distribution network communicates content to tenant groups in a secure manner. An engine of the distribution network receives content created utilizing an application having different customers and partners. The engine also receives: a first identifier indicating a customer of the application with which a tenant is associated, and a second identifier indicating a partner of the application with which the tenant is associated. The engine references a stored database table to correlate the first identifier and the second identifier. Based upon the first identifier and the second identifier, the engine evaluates whether the tenant is to be provided access to the content. The engine may provide the tenant with the content according to an access right determined from the first identifier and the second identifier. Certain embodiments may find particular use disseminating content to new tenants of a customer, based upon prior distribution to other tenants of that customer.

Claims (57)

1. A method comprising:

receiving content created utilizing an application;

receiving a first identifier indicating a customer of the application with which a tenant is associated;

receiving a second identifier indicating a partner of the application with which the tenant is associated;

receiving a third identifier indicating a landscape with which the tenant is associated;

referencing a database table stored in a database to correlate the first identifier, the second identifier, and the third identifier with a tenant user having a fourth identifier; and

evaluating whether the tenant is to be provided access to the content based upon the tenant user.

2. A method as in claim 1 further comprising providing the tenant with the content according to an access right of a level determined from the tenant user.

3. A method as in claim 2 wherein the level of the access right is selected from one of view, import, edit, and delete.

4. A method as in claim 2 wherein:

the tenant is newly associated with the customer; and

the tenant is automatically provided with the content based upon prior distribution of the content to another tenant sharing the first identifier.

5. A method as in claim 4 wherein:

the tenant is located in a first datacenter; and

the other tenant is located in a second datacenter geographically remote from the first data center.

6. A method as in claim 1 further comprising running a regularly scheduled job in the database to provide the first identifier and the second identifier.

7. A method as in claim 6 wherein the regularly scheduled job is further configured to remove stale content from the database.

8. A method as in claim 1 wherein:

the database comprises an in-memory database; and

the evaluating is performed by an in-memory database engine of the in-memory database.

9. A non-transitory computer readable storage medium embodying a computer program for performing a method, said method comprising:

receiving content created utilizing an application;

receiving a first identifier indicating a customer of the application with which a tenant is associated;

receiving a second identifier indicating a partner of the application with which the tenant is associated;

receiving a third identifier indicating a landscape with which the tenant is associated;

referencing a database table stored in a database to correlate the first identifier, the second identifier, and the third identifier with a tenant user having a fourth identifier;

evaluating whether the tenant is to be provided access to the content based upon the tenant user; and

providing the tenant with the content according to an access right of a level determined from the tenant user.

10. A non-transitory computer readable storage medium as in claim 9 wherein the level of the access right is selected from one of view, import, edit, and delete.

11. A non-transitory computer readable storage medium as in claim 9 wherein:

the tenant is newly associated with the customer; and

the tenant is automatically provided with the content based upon prior distribution of the content to another tenant sharing the first identifier.

12. A non-transitory computer readable storage medium as in claim 11 wherein:

the tenant is located in a first datacenter; and

the other tenant is located in a second datacenter geographically remote from the first data center.

13. A non-transitory computer readable storage medium as in claim 11 further comprising running a regularly scheduled job in the database to provide the first identifier and the second identifier.

14. A non-transitory computer readable storage medium as in claim 13 wherein the regularly scheduled job is further configured to remove stale content from the database.

15. A computer system comprising:

one or more processors;

a software program, executable on said computer system, the software program configured to cause an in-memory database engine of an in-memory database to:

receive content created utilizing an application;

receive a first identifier indicating a customer of the application with which a tenant is associated;

receive a second identifier indicating a partner of the application with which the tenant is associated;

receiving a third identifier indicating a landscape with which the tenant is associated;

reference a database table stored in the in-memory database to correlate the first identifier, the second identifier, and the third identifier with a tenant user having a fourth identifier; and

evaluate whether the tenant is to be provided access to the content based upon the tenant user.

16. A computer system as in claim 15 wherein the in-memory database engine is further configured to provide the tenant with the content according to an access right of a level determined from the tenant user.

17. A computer system as in claim 16 wherein the level of the access right is selected from view, import, edit, and delete.

18. A computer system as in claim 16 wherein:

the tenant is newly associated with the customer; and

the tenant is automatically provided with the content based upon prior distribution of the content to another tenant sharing the first identifier.

19. A computer system as in claim 18 wherein:

the tenant is located in a first datacenter; and

the other tenant is located in a second datacenter geographically remote from the first data center.

20. A computer system as in claim 18 wherein the in-memory database engine is further configured to run a scheduled job on the in-memory database to:

store the first identifier and the second identifier; and

to remove stale content from the in-memory database.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 21, 2020
From: MANGAYIL, HARIKRISHNAN; NAGENDRA, ABHISHEK; BAGADIA, YASH; KHAN, SUBHADEEP; SABLE, JAYANT; VINNAKOTA, SRINIVAS; KAUL, SUKESH
To: SAP SE
Reel/Frame 052996/0088 →
Priority Claims (1)
IN 202011016335 · Apr 15, 2020 · national
Continuity (1)
Related Publication 20210328998A1 · Oct 21, 2021
Cited By (1)
US 12,675,274