IP Library Granted Patent US 12,632,239
Granted Patent B2
US 12,632,239 · App. 18/516,575 · Granted May 19, 2026

Approach to user provisioning when shifting a non-cloud platform to the cloud

Inventors: Ricky Chan (Woodside, NY); Vijaya Basker Balakrishnan (Coppell, TX); Kanishka Hettiarachchi (Chatham, NJ); Robert Kong (Flushing, NY); Ross Indyke (NY, NY); Jeremy Wellmeier (Hilliard, OH); Ramesh Krishnamurthy (Prosper, TX); Robert Spinelli (Hazlet, NJ); George Irizarry (Celina, TX)
Assignee: JPMorgan Chase Bank, N.A.
G06F8/63
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,632,239
App. No.
18/516,575
Granted
May 19, 2026
Kind
B2
Abstract

Per one example embodiment, a method is provided of shifting an OS (operating system) and associated native application platform from a private network to a cloud-based target environment, where the OS comprises an operating system not configured for web access. An image of the OS is provided that is suitable for installation on a target virtual machine in the cloud-based target platform. In lieu of moving user credentials of numerous current private network-based users of the OS—native application platform to the target environment, a passwordless credential-based OS command level communication brokering service is provided at the cloud-based target environment.

Claims (23)

1 . A method of user provisioning when shifting an OS (operating system)—native application platform from a private network to a cloud-based target environment, where the OS comprises an operating system not configured for web access, the method comprising:

providing an image of the OS suitable for installation on a target virtual machine in the cloud-based target platform; and

providing, specific to the shifted OS-application, a passwordless credential-based OS command level communication brokering service at the cloud-based target environment, in lieu of moving user credentials of current private network-based users of an OS-application platform to the target environment, wherein the providing of a passwordless credential based OS command level communication brokering service comprises providing one or more session configuration endpoints at the cloud-based target environment, and providing for a given session configuration endpoint parameters associated with the given session configuration endpoint, the parameters including users allowed to create a session based on the given session configuration endpoint, and commands permitted users can run on the created session.

2 . The method according to claim 1 , further comprising providing, in the image of the OS, structured data for configuring the passwordless role-based OS command level communication brokering service.

3 . The method according to claim 1 , further comprising installing the OS image on the target virtual machine.

4 . The method according to claim 3 , further comprising operably activating the command level communication brokering service at the target environment, such that numerous current users can access the shifted and installed OS-application platform using command scripts of the shifted and installed OS via the communication brokering service.

5 . The method according to claim 4 , wherein the command level communication brokering service is activated on a remote management process.

6 . The method according to claim 1 , wherein the target virtual machine comprises a virtual machine instance.

7 . The method according to claim 1 , wherein the target virtual machine comprises an Amazon EC2 virtual machine.

8 . The method according to claim 1 , wherein the target virtual machine comprises an Microsoft Azure virtual machine.

9 . The method according to claim 1 , wherein the providing of a passwordless credential-based OS command level communication brokering service comprises providing one or more role capabilities value sets for specifying roles and associated capabilities for those roles, the associated capabilities comprising allowed commands users with the specified roles can submit to the shifted target platform.

10 . Apparatus method of shifting an OS (operating system)-application platform from a private network to a cloud-based target environment, where the OS comprises an operating system not configured for web access, the method comprising: storage at the cloud-based target environment and operably coupled to a target virtual machine, the storage storing an image of the OS suitable for installation on a target virtual machine in the cloud-based target platform; and

a passwordless credential-based OS command level communication brokering processing circuit at the cloud-based target environment comprising one or more session configuration endpoints at the cloud-based target environment, and providing for a given session configuration endpoint parameters associated with the given session configuration endpoint, the parameters including users allowed to create a session based on the given session configuration endpoint, and commands permitted users can run on the created session.

11 . The apparatus according to claim 10 , the image of the OS comprises structured data for configuring the passwordless credential-based OS command level communication brokering service.

12 . The apparatus according to claim 10 , wherein the target virtual machine is configured to install the OS image on the target virtual machine.

13 . The apparatus according to claim 12 , further comprising the command level communication brokering service processing circuit operably activated at the target environment, such that numerous current users can access the shifted and installed OS-application platform using command scripts of the shifted and installed OS via the communication brokering service.

14 . The apparatus according to claim 10 , wherein the target virtual machine comprises a virtual machine instance.

15 . The apparatus according to claim 10 , wherein the passwordless credential-based OS command level communication brokering service processing circuit comprises one or more computer memory encoded with role capabilities value sets for specifying roles and associated capabilities for those roles, the associated capabilities comprising allowed commands users with the specified roles can submit to the shifted target platform.

16 . Non-transient computer readable media encoded to cause user provisioning when shifting an OS (operating system) and an associated native application platform from a private network to a cloud-based target environment, where the OS comprises an operating system not configured for web access, whereby the user provisioning comprises:

providing an image of the OS suitable for installation on a target virtual machine in the cloud-based target platform; and

in lieu of moving numerous user credentials of numerous current private network-based users of the OS-application platform to the target environment, providing, specific to the shifted OS-application, a passwordless credential-based OS command level communication brokering service at the cloud-based target environment, wherein the providing of a passwordless credential based OS command level communication brokering service comprises providing one or more session configuration endpoints at the cloud-based target environment, and providing for a given session configuration endpoint parameters associated with the given session configuration endpoint, the parameters including users allowed to create a session based on the given session configuration endpoint, and commands permitted users can run on the created session.

17 . The computer-readable media according to claim 16 , further encoded such that the image of the OS includes structured data for configuring the passwordless role-based OS command level communication brokering service.

18 . The computer-readable media according to claim 16 , further encoded to cause installing the OS image on the target virtual machine.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 16, 2024
From: WELLMEIER, JEREMY; INDYKE, ROSS; KONG, ROBERT; HETTIARACHCHI, KANISHKA; BALAKRISHNAN, VIJAYA BASKER; CHAN, RICKY; KRISHNAMURTHY, RAMESH; SPINELLI, ROBERT; IRIZARRY, GEORGE
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 067438/0521 →
Continuity (1)
Related Publication 20250165242A1 · May 22, 2025
References Cited (14)
US 9871851B2 · Todd · 2018 [cited by examiner]
US 10951624B2 · Kurup et al. · 2021 [cited by applicant]
US 11758393B1 · Stolbikov · 2023 [cited by examiner]
US 11928491B1 · Zhang · 2024 [cited by examiner]
US 20100318609A1 · Lahiri · 2010 [cited by examiner]
US 20120311106A1 · Morgan · 2012 [cited by examiner]
US 20210224099A1 · Luo · 2021 [cited by examiner]
US 20210329003A1 · Segal · 2021 [cited by examiner]
US 20220311626A1 · Gundavelli · 2022 [cited by examiner]
US 20220413903A1 · Kalley · 2022 [cited by examiner]
US 20230129824A1 · Hettiarachchi · 2023 [cited by examiner]
US 20230188613A1 · Velammal · 2023 [cited by examiner]
US 20240005023A1 · Devarakonda · 2024 [cited by examiner]
US 20250068707A1 · Ranjan · 2025 [cited by examiner]