Cloud Intermediary for Mobile Enterprise Protocol Translation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Companies face challenges in enabling secure and efficient communication between mobile devices and enterprise computer systems due to differences in communication and security protocols, which complicates access and authentication processes.
Innovation Solution
A cloud computer system is implemented to facilitate communication by determining security authentication, generating security tokens, and translating protocols, allowing mobile devices to communicate with enterprise systems despite protocol differences.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If mobile devices connect directly to enterprise back-end systems using different communication protocols, then each device must be configured with multiple authentication systems and protocol translators, but this increases device complexity and difficulty of operation
Solution Approach 1:
The patent introduces a cloud-based intermediary system that sits between mobile devices and enterprise back-end systems. This intermediary handles protocol translation and authentication centrally, so mobile devices only need to implement a standard authentication mechanism. The cloud system translates requests to the appropriate enterprise protocols (SOAP, REST, custom protocols) and manages security tokens, eliminating the need for each device to support multiple authentication systems.
2Reliability
If companies implement proprietary security protocols for each enterprise system, then security is strengthened for that system, but it complicates access management for mobile devices
Solution Approach 1:
The patent implements a universal authentication mechanism at the cloud level that can authenticate mobile devices once and then translate that authentication to multiple different enterprise security protocols. The system generates security tokens in various formats (OAuth, SAML, custom tokens) based on the target enterprise system's requirements, but the mobile device only interacts with a single standardized authentication interface. This multi-functional approach maintains security for each enterprise system while simplifying access management for devices.
3Productivity
If mobile devices are configured with applications to connect to enterprise networks through special portals, then communication is enabled, but the configuration process becomes complex and time-consuming
Solution Approach 1:
The patent implements preliminary authentication and protocol configuration at the cloud level before mobile devices need to access enterprise systems. The cloud system pre-configures protocol translators and authentication mechanisms for multiple enterprise back-ends, so when a mobile device needs to access an enterprise system, the configuration is already in place. The device simply needs to authenticate once through the cloud portal, and the cloud system handles all the complex protocol translation and security token generation in advance.
4Adaptability or versatility
If each mobile device supports multiple communication protocols natively, then direct communication with any enterprise system is possible, but device resource consumption increases
Solution Approach 1:
The patent uses a cloud-based intermediary to handle all protocol translation and communication complexity, so mobile devices only need to implement a single standard protocol for communicating with the cloud. The cloud system maintains the protocol translators and authentication mechanisms for multiple enterprise back-ends, eliminating the need for devices to support multiple protocols natively. This significantly reduces device energy consumption while maintaining full protocol compatibility through the cloud intermediary.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Techniques are described for implementing a cloud computer system to facilitate communication between a computing device (e.g., a mobile computing device) and enterprise computer systems. In certain embodiments, the cloud computer system may receive, from a computing device, a request for a service provided by an enterprise computer system. The cloud computer system may determine security authentication of a user for the requested service. A security protocol may be determined for a requested enterprise computer system and a security token may be generated for the request according to the determined security protocol. The request may be sent to the requested enterprise computer system. In some embodiments, security authentication for a request to an enterprise computer system may be determined based on previous authentication. The cloud computer system may be configured to communicate with several different enterprise computer systems according to their supported protocols (e.g., communication protocol and/or security protocol).