Centralized User Identification for Secured Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current computer reservation systems (CRS) face challenges in providing secured access to applications due to the proliferation of proprietary identification modules, inconsistent authentication message structures, and the rapid growth of the generic access control (GAC) file size, leading to increased network traffic and resource usage.

Innovation Solution

A centralized user identification component and a generic access control file size reducing component are introduced, which provide a unified security framework by eliminating redundant data, using a central login panel, and splitting the GAC file into application-specific files, reducing network traffic and optimizing resource usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If proprietary identification modules are implemented in each application, then access control functionality is provided, but system complexity increases and authentication compatibility decreases

Engineering Contradiction:
Improveaccess control functionalityVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges multiple proprietary identification modules into a single centralized user identification component. This component consolidates authentication functionality that was previously distributed across multiple application-specific modules, thereby reducing system complexity while maintaining access control reliability. The centralized component interfaces with both application servers and the login security server, eliminating the need for each application to implement its own identification module.

Inventive Principle:
Principle #5Merging (Combining)

2Adaptability or versatility

If the GAC file grows to store data for increasing numbers of users, then user coverage increases, but network traffic and storage requirements increase

Engineering Contradiction:
Improveuser coverageVSAvoidGAC file size
Core Design Contradiction:
Adaptability or versatilityVSQuantity of substance

Solution Approach 1:

The patent segments the large GAC file into multiple smaller GAC files, each associated with specific applications. Instead of maintaining one monolithic GAC file that grows with user numbers, the system creates application-specific GAC files that contain only the access control data relevant to each application. This segmentation reduces the size of individual GAC files, decreases network traffic during authentication, and optimizes storage requirements while maintaining the ability to serve a large total user base across multiple applications.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP3832981B1Computer network for a secured access to online applications
Publication Date: 2025.01.15 AMADEUS SAS
  • EP3832981B1 patent drawingFigure 1
  • EP3832981B1 patent drawingFigure 2
  • EP3832981B1 patent drawingFigure 3

AI summary

A computer network (1) adapted to provide secured access to online applications hosted on application servers (10) to a requesting user (U). The network (1) comprises a login security server (20) configured for deciding access for the user based on data contained in a central generic access control file (32) and in the access request. The network (1) further comprises a centralized user identification component (40) configured for receiving identification data from user through a central login panel (42) and for sending an access grant or denial command to the application servers (10).