Anonymizing Gateway Traffic Regulation via Centralized Abuse Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems fail to effectively prevent abusive behavior originating from anonymizing gateways without blocking all traffic, as they cannot identify and isolate the responsible devices or users effectively.

Innovation Solution

A centralized abuse prevention node aggregates notifications of undesired communications from anonymizing gateways, identifies the responsible nodes or users, and sends instructions to prevent further abusive behavior without blocking all traffic, allowing for targeted measures to be taken.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Object-affected harmful factors

If all traffic through an anonymizing gateway is blocked to prevent abusive behavior, then abusive communications are prevented, but legitimate traffic is also blocked causing loss of network access for users

Engineering Contradiction:
Improveabusive communicationsVSAvoidnetwork access
Core Design Contradiction:
Object-affected harmful factorsVSProductivity

Solution Approach 1:

The system segments traffic management by collecting and analyzing individual notification data to distinguish between abusive and legitimate traffic patterns. Instead of blocking all traffic from a gateway, the system identifies specific abusive communications and targets only those, allowing legitimate traffic to continue uninterrupted.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system applies different handling qualities to different traffic types. By analyzing notification data characteristics, the system identifies abusive communications and applies blocking only to those specific instances, while maintaining normal service quality for legitimate traffic from the same gateway.

Inventive Principle:
Principle #3Local quality

2Reliability

If anonymizing gateways are used to protect user identities, then user privacy is improved, but the ability to identify and prevent abusive behavior deteriorates

Engineering Contradiction:
Improveuser privacyVSAvoidabusive behavior identification
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The notification collection node acts as an intermediary between the anonymizing gateway and the content provider. It receives notifications that include identifying information, aggregates this data, and facilitates targeted prevention measures without compromising the anonymity provided by the gateway for legitimate traffic.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements feedback loops where content providers send notifications about abusive behavior to the notification collection node. This feedback mechanism enables continuous monitoring and learning, allowing the system to identify patterns and improve its ability to detect abusive behavior while maintaining user privacy.

Inventive Principle:
Principle #23Feedback

3Adaptability or versatility

If notifications of abusive behavior are aggregated and analyzed to identify responsible nodes, then targeted prevention is enabled, but system complexity increases

Engineering Contradiction:
Improvetargeted prevention capabilityVSAvoidnotification aggregation system
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The notification collection node is designed as a multi-functional component that performs aggregation, analysis, and coordination of prevention measures. This universal node handles various tasks including collecting notifications from multiple content providers, analyzing patterns across different notifications, and coordinating with both gateways and content providers, thereby reducing overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8683063B1Regulating internet traffic that is communicated through anonymizing gateways
Publication Date: 2014.03.25 T MOBILE INNOVATIONS LLC
  • US8683063B1 patent drawing
  • US8683063B1 patent drawing
  • US8683063B1 patent drawing

AI summary

A medium and method are provided for preventing undesired data from being communicated through a network. In one aspect, the method comprises the method comprises receiving from an anonymizing device an indication of an undesired data communication and an identification of one or more of a computing device responsible for said communication and a user responsible for said communication; on the basis of specified criteria, determining whether said indication is valid; when said indication is valid, incrementing a cumulative instance count that sums a number of instances associated with one or more of the computing device and the user; and, when said cumulative count exceeds a predetermined threshold number of instances, implementing a measure to prevent a further undesired data communication from said computing device.