Cloud Browser Root Certificate Verification for Intranet Sites

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing technologies do not verify the reliability of intranet sites using cloud browsers operating on virtual machines outside the intranet, which lack dedicated root certificates for secure HTTPS connections.

Innovation Solution

An information processing apparatus on a virtual machine external to the intranet receives a root certificate from a communication terminal and verifies the reliability of intranet websites using this certificate during web page rendering.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If cloud browser on virtual machine outside intranet is used, then accessibility and calculation load reduction are improved, but reliability verification of intranet sites cannot be performed

Engineering Contradiction:
Improveaccessibility of intranet sitesVSAvoidreliability verification capability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a gateway device as an intermediary between the virtual machine (cloud browser) and the intranet. The gateway receives root certificates from the communication terminal and provides them to the virtual machine, enabling the virtual machine to verify the reliability of intranet sites without being directly connected to the intranet. This mediator resolves the contradiction by allowing external access while maintaining security verification capability.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If dedicated root certificates are registered in communication terminal, then reliability verification of intranet sites is improved, but complexity of certificate management increases

Engineering Contradiction:
Improvereliability verification capabilityVSAvoidcertificate management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the root certificate storage function from the communication terminal and relocates it to the gateway device. The communication terminal no longer needs to store and manage multiple root certificates locally. Instead, it simply transmits the necessary certificates to the gateway, which then provides them to the virtual machine. This extraction reduces the complexity of certificate management in the terminal while maintaining reliability verification capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS20250310314A1Method for processing reliability of site within intranet on virtual machine outside intranet
Publication Date: 2025.10.02 CANON KK
  • US20250310314A1 patent drawing
  • US20250310314A1 patent drawing
  • US20250310314A1 patent drawing

AI summary

An information processing apparatus that provides a rendering result of a web page based on a request from a communication terminal connected to an intranet includes receiving a root certificate for a website on the intranet from the communication terminal and a performing, when the web page of the website on the intranet is rendered, verification of reliability of the website on the intranet with the root certificate.