ClairMail Proxy for Secure Mobile Enterprise Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current personal communication systems, particularly email, are inadequate for secure and efficient access to internal network resources and applications from mobile devices due to limitations in user interface, battery life, and form factor, as well as the lack of portability standards, making it difficult for mobile workers to access and manage internal network resources effectively.
Innovation Solution
The ClairMail architecture enables secure, text-based messaging access to applications and resources by using a proxy server to authenticate users and execute application functions on an application server, allowing for trusted and non-trusted requests, and providing a scalable infrastructure for managed enterprise access, thus enhancing productivity and reducing support costs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If conventional client/server applications and browsers are used for accessing internal network resources, then application functionality is available, but mobile device limitations (small screen, battery life, form factor) make the user interface poor and operation difficult
Solution Approach 1:
The patent introduces an email server as an intermediary between the mobile device and internal network resources. The email server receives simple text messages from mobile devices, authenticates users, and executes application functions on behalf of users by interacting with backend applications. This mediator approach allows mobile users to access complex enterprise applications through simple text messaging interfaces, resolving the contradiction between ease of operation and device limitations.
2Adaptability or versatility
If email is used for accessing internal network resources, then communication capability is available, but email's asynchronous and freeform nature makes it unsuitable for program-to-program communication and resource access
Solution Approach 1:
The patent transforms email from its traditional asynchronous, freeform communication mode into a synchronous, structured command interface. By defining specific email formats with standardized fields (command type, parameters, destination addresses), the system changes the operational parameters of email to enable program-to-program communication while maintaining compatibility with mobile text messaging capabilities.
3Weight of moving object
If mobile devices with small keyboards and screens are used, then portability is improved, but transmitting messages and using applications becomes awkward and restricted to short messages
Solution Approach 1:
The email server acts as a capability amplifier, allowing mobile devices with limited input interfaces to execute complex application functions. Users send simple text messages through their mobile keyboards, and the email server handles the complex interaction with enterprise applications, returning results via email. This intermediary approach enables full application functionality access without requiring enhanced mobile device input capabilities.
4Adaptability or versatility
If current enterprise software platforms are used for mobile access, then existing applications are available, but significant development, implementation and management expenditures are required
Solution Approach 1:
The patent creates a universal access platform using email servers that can interface with multiple different enterprise applications through standardized protocols. Rather than developing separate mobile access solutions for each application, the email-based system provides a single, multi-functional gateway that works with various backend systems, significantly reducing development and implementation costs while maintaining broad application access.
Data Source
AI summary
A method for effecting the execution of an application function on an application server from a client device includes receiving from the client device at a proxy server a first message that pertains to a request to execute an application function, and that conforms to a text-based user-to-user messaging protocol, and that includes a human-readable input parameter. The method also includes authenticating a user associated with the first message origination address by sending an authentication message to the user at a message confirmation address, and receiving confirmation from the user responsive to the authentication message. If the user is authenticated, the method further includes generating a second message using the human-readable input parameter and transmitting the second message to the application server.


