Centralized User Identification for Secured Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current computer reservation systems (CRS) face challenges in providing secured access to applications due to the proliferation of proprietary identification modules, inconsistent authentication message structures, and the rapid growth of the generic access control (GAC) file size, leading to increased network traffic and resource usage.
Innovation Solution
A centralized user identification component and a generic access control file size reducing component are introduced, which provide a unified security framework by eliminating redundant data, using a central login panel, and splitting the GAC file into application-specific files, reducing network traffic and optimizing resource usage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If proprietary identification modules are implemented in each application, then access control functionality is provided, but system complexity increases and authentication compatibility decreases
Solution Approach 1:
The patent merges multiple proprietary identification modules into a single centralized user identification component. This component consolidates authentication functionality that was previously distributed across multiple application-specific modules, thereby reducing system complexity while maintaining access control reliability. The centralized component interfaces with both application servers and the login security server, eliminating the need for each application to implement its own identification module.
2Adaptability or versatility
If the GAC file grows to store data for increasing numbers of users, then user coverage increases, but network traffic and storage requirements increase
Solution Approach 1:
The patent segments the large GAC file into multiple smaller GAC files, each associated with specific applications. Instead of maintaining one monolithic GAC file that grows with user numbers, the system creates application-specific GAC files that contain only the access control data relevant to each application. This segmentation reduces the size of individual GAC files, decreases network traffic during authentication, and optimizes storage requirements while maintaining the ability to serve a large total user base across multiple applications.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A computer network (1) adapted to provide secured access to online applications hosted on application servers (10) to a requesting user (U). The network (1) comprises a login security server (20) configured for deciding access for the user based on data contained in a central generic access control file (32) and in the access request. The network (1) further comprises a centralized user identification component (40) configured for receiving identification data from user through a central login panel (42) and for sending an access grant or denial command to the application servers (10).