Cloud Intermediary for Mobile Enterprise Protocol Translation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Companies face challenges in enabling secure and efficient communication between mobile devices and enterprise computer systems due to differences in communication and security protocols, which complicates access and authentication processes.

Innovation Solution

A cloud computer system is implemented to facilitate communication by determining security authentication, generating security tokens, and translating protocols, allowing mobile devices to communicate with enterprise systems despite protocol differences.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If mobile devices connect directly to enterprise back-end systems using different communication protocols, then each device must be configured with multiple authentication systems and protocol translators, but this increases device complexity and difficulty of operation

Engineering Contradiction:
Improveprotocol compatibilityVSAvoidauthentication system complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent introduces a cloud-based intermediary system that sits between mobile devices and enterprise back-end systems. This intermediary handles protocol translation and authentication centrally, so mobile devices only need to implement a standard authentication mechanism. The cloud system translates requests to the appropriate enterprise protocols (SOAP, REST, custom protocols) and manages security tokens, eliminating the need for each device to support multiple authentication systems.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If companies implement proprietary security protocols for each enterprise system, then security is strengthened for that system, but it complicates access management for mobile devices

Engineering Contradiction:
ImprovesecurityVSAvoidaccess management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a universal authentication mechanism at the cloud level that can authenticate mobile devices once and then translate that authentication to multiple different enterprise security protocols. The system generates security tokens in various formats (OAuth, SAML, custom tokens) based on the target enterprise system's requirements, but the mobile device only interacts with a single standardized authentication interface. This multi-functional approach maintains security for each enterprise system while simplifying access management for devices.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If mobile devices are configured with applications to connect to enterprise networks through special portals, then communication is enabled, but the configuration process becomes complex and time-consuming

Engineering Contradiction:
Improvecommunication enablementVSAvoidconfiguration time
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The patent implements preliminary authentication and protocol configuration at the cloud level before mobile devices need to access enterprise systems. The cloud system pre-configures protocol translators and authentication mechanisms for multiple enterprise back-ends, so when a mobile device needs to access an enterprise system, the configuration is already in place. The device simply needs to authenticate once through the cloud portal, and the cloud system handles all the complex protocol translation and security token generation in advance.

Inventive Principle:
Principle #10Preliminary action

4Adaptability or versatility

If each mobile device supports multiple communication protocols natively, then direct communication with any enterprise system is possible, but device resource consumption increases

Engineering Contradiction:
Improveprotocol supportVSAvoiddevice energy consumption
Core Design Contradiction:
Adaptability or versatilityVSUse of energy by moving object

Solution Approach 1:

The patent uses a cloud-based intermediary to handle all protocol translation and communication complexity, so mobile devices only need to implement a single standard protocol for communicating with the cloud. The cloud system maintains the protocol translators and authentication mechanisms for multiple enterprise back-ends, eliminating the need for devices to support multiple protocols natively. This significantly reduces device energy consumption while maintaining full protocol compatibility through the cloud intermediary.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP3103238B1Mobile cloud service architecture
Publication Date: 2021.06.23 ORACLE INT CORP
  • EP3103238B1 patent drawingFigure 1
  • EP3103238B1 patent drawingFigure 2
  • EP3103238B1 patent drawingFigure 3

AI summary

Techniques are described for implementing a cloud computer system to facilitate communication between a computing device (e.g., a mobile computing device) and enterprise computer systems. In certain embodiments, the cloud computer system may receive, from a computing device, a request for a service provided by an enterprise computer system. The cloud computer system may determine security authentication of a user for the requested service. A security protocol may be determined for a requested enterprise computer system and a security token may be generated for the request according to the determined security protocol. The request may be sent to the requested enterprise computer system. In some embodiments, security authentication for a request to an enterprise computer system may be determined based on previous authentication. The cloud computer system may be configured to communicate with several different enterprise computer systems according to their supported protocols (e.g., communication protocol and/or security protocol).