Cloud Connector System for Secure CLMaaS Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing VPN implementations are limited in their usability and cannot provide a secure channel for network connectivity beyond basic functionalities, restricting access to cloud network resources for remote users without complex infrastructure configurations.

Innovation Solution

A cloud connector system that establishes a secure connection between on-premise devices and a cloud server hosting Certificate Lifecycle Management as a Service (CLMaaS) using multiple cloud connectors within a datacenter, enabling full-duplex communication, runtime analysis, and certificate validation and upgradation without requiring a VPN connection or infrastructure configuration.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If VPN connections are used to provide secure access to cloud network resources, then security is improved, but device complexity and infrastructure configuration requirements increase

Engineering Contradiction:
ImprovesecurityVSAvoidinfrastructure configuration
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces cloud connectors as intermediary components deployed on-premises that mediate between cloud services and local devices. These connectors handle authentication, certificate management, and secure communication protocols, eliminating the need for complex VPN infrastructure while maintaining security. The connector acts as a lightweight agent that simplifies the connection architecture.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces the mechanical VPN infrastructure (requiring network configuration, routing setup, and protocol management) with a software-based connector system that uses modern authentication mechanisms like certificates and tokens. This substitution eliminates complex network configuration in favor of application-layer security solutions.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Ease of operation

If web browsers are used for remote access, then ease of operation is improved, but functionality is limited to basic operations

Engineering Contradiction:
ImproveaccessibilityVSAvoidfunctionality
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent segments the access system into multiple layers: the web browser provides simple user access, while cloud connectors handle complex operations in the background. This segmentation allows the browser to remain simple while the backend connector provides advanced functionality for certificate management, device communication, and protocol handling.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The cloud connector serves as an intermediary between the simple web browser interface and the complex backend operations. It translates high-level user requests into detailed device communication commands, enabling rich functionality while maintaining browser-based simplicity for end users.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If cloud connectors are deployed to enable full-duplex communication, then adaptability is improved, but device complexity increases

Engineering Contradiction:
Improvecommunication capabilityVSAvoidconnector deployment
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The cloud connector is designed as a universal component that performs multiple functions: authentication, certificate validation, device communication, and protocol translation. This multi-functionality consolidates what would otherwise require multiple separate systems into a single deployable unit, reducing overall complexity while enabling full-duplex communication capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11838180B2Cloud connector system for establishing a secure connection between cloud server and a tenant
Publication Date: 2023.12.05 APPVIEWX INC
  • US11838180B2 patent drawing
  • US11838180B2 patent drawing
  • US11838180B2 patent drawing

AI summary

A computer-implemented method for enabling a cloud connector system (100) to establish a secure connection between on-premise devices and a cloud server (108) hosting a cloud Certificate Lifecycle Management as a Service (CLMaaS) for validating and upgrading a certificate on the on-premise devices is provided. The method includes implementing a plurality of cloud connectors (102A-N) in a tenant premise comprising a plurality of on-premise devices (104A-N) to establish a full-duplex connection between the plurality of on-premise devices and the CLMaaS, performing a runtime analysis of the connection between the cloud server and the plurality of cloud connectors, routing the requests from the cloud CLMaaS to the plurality of on-premise devices through the plurality of cloud connectors based on the run time analysis of the connection, and enabling the cloud connector system to execute the certificate validation and upgradation in the on-premise devices based on the request from the cloud CLMaaS.