Client Small Window for Broadband Network Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing broadband data intelligent network clients face issues with small windows being shut down or covered by browsers, leading to inconvenience in logging off, security risks due to cookie vulnerabilities, and inability to support cluster services.

Innovation Solution

A method and device using two modules to generate a small window at the client, independent of the operating system and browser, which obtains the client's IP address, authenticates the user, and displays access information with operation buttons, ensuring secure and stable network management and supporting cluster services.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the small window is implemented using browser-based heart beating mechanism, then the portal server can monitor user on-line status, but the small window may be shut down or covered by browser operations making it invisible and unusable

Engineering Contradiction:
Improveuser on-line status monitoringVSAvoidsmall window accessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent separates the small window implementation from the browser environment by creating an independent window that operates outside the browser's control. This segmentation allows the window to maintain its visibility and accessibility independently of browser operations, while still enabling the portal server to monitor user on-line status through the handshaking mechanism.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary mechanism where the small window acts as a mediator between the user and the portal server. This independent window serves as a stable communication interface that facilitates handshaking messages while remaining accessible to the user, resolving the conflict between monitoring reliability and operational ease.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Quantity of substance

If cookies are used to save user information and interaction data, then data storage is achieved, but security risks arise as users can easily access and modify these cookie files

Engineering Contradiction:
Improvedata storage capacityVSAvoidsecurity vulnerability
Core Design Contradiction:
Quantity of substanceVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the data storage function from browser-based cookies and relocates it to a server-side database. By taking out the sensitive user information from the client environment where it is vulnerable to access and modification, the system maintains data storage capacity while eliminating the security risks associated with cookie files.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a server-side database as an intermediary between the user and the stored data. This intermediary securely stores user information and interaction data, providing the necessary data storage capacity while protecting against unauthorized access and modification that plagues cookie-based storage.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If browser intrinsic mechanisms are used to ensure one user per client, then authentication control is implemented, but the processing becomes complicated and unstable across different browser versions

Engineering Contradiction:
Improveauthentication controlVSAvoidprocessing stability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the authentication control mechanism from browser-specific implementations and relocates it to a browser-independent level. By separating the authentication logic from browser intrinsic mechanisms, the system achieves stable and consistent processing across different browser versions while maintaining effective authentication control.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a universal authentication mechanism that operates independently of specific browser implementations. This universal approach ensures consistent authentication control across different browser versions and platforms, eliminating the complications and instability associated with relying on browser-specific intrinsic mechanisms.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS7788320B2Method, device and system for producing small window at client in broadband data intelligent network
Publication Date: 2010.08.31 HUAWEI TECH CO LTD
  • US7788320B2 patent drawing
  • US7788320B2 patent drawing
  • US7788320B2 patent drawing

AI summary

The present invention discloses a method and a client for producing a small window at the client in a broadband data intelligent service, comprising: pre-setting a first module and a second module; while a user needs to use data service, obtaining, by the first module, the IP address of the client, and sending the IP address and authentication information input by the client to the portal server; upon receiving a past authentication message from the portal server, the first module making the second module to operate; and generating, by the second module, a small window to display the access information of the client and provide the user with operation buttons. Moreover, the present invention also discloses a method a device and a system for generating a user interface for a client terminal in a communication network.