Client-Only VPN Merging Server and Client on Single Device

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional VPN systems face challenges in providing comprehensive security and privacy on devices with closed operating systems, as they often sandbox applications, limiting the ability of security software to perform advanced security functions and requiring external servers for VPN setup, which can be slow and unreliable.

Innovation Solution

Implementing a client-only virtual private network (VPN) on a device, where the VPN client and server are combined, allowing for proxied IP communication services without the need for an external server, enabling monitoring and manipulation of IP communications locally and providing dynamic DNS filtering based on device-side information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a traditional VPN system with external server is used, then comprehensive security and privacy can be provided, but the setup is slow and unreliable due to external server dependencies

Engineering Contradiction:
ImproveVPN connection reliabilityVSAvoidVPN setup time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent combines the VPN client and server functions into a single integrated system on the local device. This eliminates the need for external server communication during VPN setup and operation, thereby removing delays and reliability issues associated with external server dependencies while maintaining comprehensive security and privacy protections.

Inventive Principle:
Principle #5Merging (Combining)

2Reliability

If traditional VPN systems are used on devices with closed operating systems, then security functions can be provided, but application sandboxing limits the ability of security software to perform advanced security functions

Engineering Contradiction:
Improvesecurity function capabilityVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

By merging the VPN server functionality into the client device, the system creates a self-contained VPN solution that operates entirely within the device's operating system. This integration allows security software to access and manipulate IP communications directly without being restricted by application sandboxing, enabling advanced security functions while maintaining a manageable system architecture.

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If external servers are used for VPN services, then centralized management is possible, but server costs increase and single points of failure are created

Engineering Contradiction:
ImproveVPN service availabilityVSAvoidserver infrastructure requirements
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent implements a self-service VPN solution where each device runs its own integrated VPN client and server. This eliminates the need for external server infrastructure, removing single points of failure and reducing server costs while maintaining VPN service availability. Each device independently manages its own VPN connections without requiring centralized server management.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11362999B2Client-only virtual private network
Publication Date: 2022.06.14 MCAFEE LLC
  • US11362999B2 patent drawing
  • US11362999B2 patent drawing
  • US11362999B2 patent drawing

AI summary

There is disclosed in one example a computing apparatus, including: a hardware platform, including a processor and a memory; and executable instructions encoded in the memory to provide a client-only virtual private network (VPN) including a VPN client and a VPN server on a single physical device, wherein the VPN client is configured to communicatively couple to the VPN server and to provide proxied Internet protocol (IP) communication services via the VPN server.