×

Cross-tenant data leakage isolation

  • US 10,305,861 B2
  • Filed: 08/29/2016
  • Issued: 05/28/2019
  • Est. Priority Date: 08/29/2016
  • Status: Active Grant
First Claim
Patent Images

1. A method for cross-tenant data leakage isolation in a multi-tenant database, comprising:

  • monitoring, by a proxy device, traffic flows between a server executing at least one cloud-based application and the multi-tenant database, wherein the proxy device is communicatively connected between the server and the multi-tenant database;

    capturing, by the proxy device, at least a request to access the multi-tenant database, wherein the request is communicated using a database-specific protocol;

    analyzing the request to determine if the request is illegitimate, wherein an illegitimate request is not addressed to a global-tenant table including records of individual database tables of tenants in the multi-tenant database;

    upon determining that the request is not legitimate, modifying the request to point to a global-tenant table and to designate a condition with a unique tenant identifier having permissions to access the table identified in the received query, wherein the unique tenant identifier corresponds to a tenant-specific table name designated in the global-tenant table, and wherein the global-tenant table is shared across multiple machines; and

    sending the modified request to the multi-tenant database using the database-specific protocol.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×