Certificate Server Orchestrating Remote Events

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In large computing environments with multiple servers, ensuring the security of computing services and maintaining information security by preventing unauthorized access is challenging, particularly when dealing with cross-border transactions involving different financial institutions.

Innovation Solution

A computing platform uses a certificate server to verify entities and orchestrate events by generating and validating certificates, ensuring only authorized entities can execute specific actions, thereby securing cross-border payment transactions across different countries.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a computing environment implements a relatively large computing environment having many different servers and other computing resources, then the computing services and information can be made more accessible and versatile, but the security and information security become more difficult to maintain and prevent unauthorized access

Engineering Contradiction:
Improvecomputing service accessibilityVSAvoidinformation security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a certificate server as an intermediary component between remote servers and the computing environment. This certificate server issues and manages digital certificates that verify the identity and authorization of entities attempting to access computing services. The intermediary certificate server centralizes security management, allowing the system to maintain strong security controls even as the computing environment scales to include many different servers and resources.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If the computing platform validates certificates for each event request, then the security and authorization control are improved, but the processing time and system complexity increase

Engineering Contradiction:
Improveauthorization controlVSAvoidevent processing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by having the certificate server issue and cache certificates for entities before they need to access computing services. The certificates are generated in advance based on entity verification, and then stored for rapid validation during event processing. This preliminary certificate issuance eliminates the need for time-consuming identity verification at the moment of each event request, thus maintaining strong authorization control while reducing processing time.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If the computing platform implements comprehensive certificate validation and entity verification, then the unauthorized access prevention is improved, but the device complexity and operational complexity increase

Engineering Contradiction:
Improveunauthorized access preventionVSAvoidsecurity system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a certificate server as an intermediary component between remote servers and the computing environment. This certificate server issues and manages digital certificates that verify the identity and authorization of entities attempting to access computing services. The intermediary certificate server centralizes security management, allowing the system to maintain strong security controls even as the computing environment scales to include many different servers and resources.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent uses digital certificates as simplified copies or representations of entity identities and authorization credentials. Instead of implementing complex identity verification processes for each access request, the system uses certificate copies that encapsulate verified identity information. These certificate copies enable rapid validation while maintaining the security guarantees of comprehensive verification, thus reducing operational complexity without compromising unauthorized access prevention.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS10218694B2Securely orchestrating events initiated at remote servers using a certificate server
Publication Date: 2019.02.26 BANK OF AMERICA CORP
  • US10218694B2 patent drawing
  • US10218694B2 patent drawing
  • US10218694B2 patent drawing

AI summary

Aspects of the disclosure relate to securely orchestrating events initiated at remote servers using a certificate server. A computing platform may receive, from a first server computer system, a first event request comprising first entity information and first event details information, and the computing platform may identify a first entity associated with the first event request. The, the computing platform may generate and send a first entity verification request to a certificate server, and the computing platform may receive, from the certificate server, first certificate information associated with the first entity. Based on validating the first certificate information associated with the first entity, the computing platform may generate and send, to a second server computer system, one or more event orchestration commands directing the second server computer system to execute one or more actions associated with the first event request.