Directory Server Tag Enforcement P2P Network Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The Internet's universal reachability has led to severe security threats, allowing malicious devices to target and compromise any IP device, resulting in significant financial losses and data privacy issues, despite extensive network security measures.

Innovation Solution

A secure peer-to-peer data network is established based on two-way trusted relationships, using a directory server that manages and enforces tag objects to classify and protect network entities, eliminating the need for conventional search operations and preventing unauthorized data mining by implementing a novel ontological system for information management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If universal IP reachability is implemented to enable worldwide communications, then network connectivity and accessibility are improved, but security vulnerabilities and exposure to malicious attacks increase

Engineering Contradiction:
Improvenetwork connectivityVSAvoidsecurity threats
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent segments the network into isolated peer-to-peer connections rather than universal IP reachability. Each connection is established through direct peer discovery and validation, creating segmented communication paths that prevent broad attack surfaces while maintaining connectivity between authorized devices.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces peer validation mechanisms as intermediaries that authenticate and verify devices before establishing connections. This intermediary layer prevents direct exposure to malicious devices by requiring mutual validation and trust establishment between communicating peers.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If user identities and metadata are exposed for web crawling and analytics, then service discovery and user targeting capabilities are improved, but unauthorized data mining and privacy violations increase

Engineering Contradiction:
Improveservice discoveryVSAvoiduser data privacy
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The patent extracts and removes user identities and metadata from public exposure. Instead of making user data available for web crawling and analytics, the system keeps identity information private and only reveals necessary service discovery information through direct peer-to-peer interaction protocols.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent inverts the traditional model where services actively discover users through web crawling. Instead, services must be discovered through direct peer initiation and validation, reversing the direction of information flow to protect user privacy while enabling service discovery.

Inventive Principle:
Principle #13The other way round (Inversion)

3Ease of operation

If conventional search operations are used for information retrieval, then accessibility to network entities is improved, but vulnerability to unauthorized access and data mining increases

Engineering Contradiction:
Improveinformation retrievalVSAvoidunauthorized access
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent replaces conventional search operations with direct peer-to-peer discovery mechanisms. Instead of querying centralized search indices that expose network entities to unauthorized access, the system uses distributed peer discovery where information retrieval is initiated and validated through direct peer interactions.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS20240414146A1Directory server providing tag enforcement and network entity attraction in a secure peer-to-peer data network
Publication Date: 2024.12.12 WHITESTAR COMMUNICATIONS INC
  • US20240414146A1 patent drawing
  • US20240414146A1 patent drawing
  • US20240414146A1 patent drawing

AI summary

In one embodiment, a method comprises: establishing, by a first executable resource in a network device having joined a secure peer-to-peer data network, a registry providing a mapping between one or more network entities associated with a tag object by an identified user entity, each network entity represented by a federation identifier of a user entity or a corresponding data object; receiving a search request for one or more identified network entities having been tagged with the tag object, and in response generating a search result based on identifying the network entities having been mapped relative to tag object, the search result identifying one or more of an identified federation identifier or an identified unique identifier for the identified network entities; and providing the search result by the first executable resource, the search result causing an endpoint device to attract the identified network entities for presentation by the endpoint device.