API Management Device Policy Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face issues with improper, incomplete, or noncompliant implementations of application programming interfaces (APIs) due to changes in version, state, or stability, which can lead to application failures and security risks, especially when APIs are committed to repositories or deployed without proper verification.

Innovation Solution

An API management device receives requests from client devices to implement or update APIs, determining their operable status by verifying compliance with policies related to versioning, visibility, stability, and deprecation, allowing or denying implementation based on adherence to these rules.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If API implementation is allowed without policy verification, then development speed and ease of operation are improved, but reliability and security deteriorate due to improper, incomplete, or noncompliant implementations

Engineering Contradiction:
Improveease of API implementationVSAvoidreliability of API implementation
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary policy verification and operable status determination before allowing API implementation. The API management device evaluates specifications, checks compliance with policies (versioning, visibility, stability, deprecation), and determines operable status in advance, preventing improper implementations from being deployed without requiring manual review or intervention during the implementation process.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If policy verification is performed for every API implementation, then reliability and compliance are improved, but device complexity and processing time increase

Engineering Contradiction:
Improvecompliance of API implementationVSAvoidcomplexity of API management system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The API management device performs self-service policy verification by automatically evaluating API specifications against predefined policies. The system autonomously determines operable status based on compliance checks without requiring external manual verification, reducing the need for complex human-in-the-loop processes while maintaining high compliance standards.

Inventive Principle:
Principle #25Self-service

3Manufacturing precision

If comprehensive policy verification is implemented, then manufacturing precision of API implementation is improved, but loss of time in the implementation process increases

Engineering Contradiction:
Improveprecision of API implementationVSAvoidtime for API implementation
Core Design Contradiction:
Manufacturing precisionVSLoss of time

Solution Approach 1:

The system replaces manual verification processes with automated computational evaluation. The API management device uses algorithmic policy verification to assess compliance and determine operable status, substituting time-consuming manual review with efficient automated processing that maintains high precision in implementation verification while significantly reducing the time required.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS20220291972A1Methods And Systems For Application Program Interface Management
Publication Date: 2022.09.15 QLIK TECH INTERNATIONAL AB
  • US20220291972A1 patent drawing
  • US20220291972A1 patent drawing
  • US20220291972A1 patent drawing

AI summary

Provided are methods and systems for application program interface (API) management. An API management device may receive requests from client devices to submit an API and/or API update for implementation. The API management device may determine an operable status of the API and/or the API update by determining whether the API and/or the API update is configured and/or updated for implementation. The API and/or the API update may be determined to be configured and/or updated for implementation when the API and/or the API update does not violate one or more rules. The API management device, based on operable status, may allow or deny the request for implementation.