Dynamic Security Settings for Network Interface Assignment

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Information processing apparatuses face challenges in managing settings for multiple communication interfaces when a new interface is assigned, particularly in ensuring security and compatibility with independent or shared networks, as existing settings may need to be adjusted to maintain security and functionality.

Innovation Solution

The apparatus includes a detection unit to identify newly assigned communication interfaces and networks, and a change unit that adjusts settings based on the relationship between networks, changing settings for security enhancement when networks are independent and synchronizing settings when they are shared.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If security settings are maintained for existing communication interfaces when new interfaces are assigned, then security is preserved, but compatibility with new independent networks may be compromised

Engineering Contradiction:
ImprovesecurityVSAvoidnetwork compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic security settings that automatically adjust based on network relationship detection. When a new communication interface is assigned, the system detects whether the new network is independent or shared with existing networks, and dynamically modifies security settings accordingly - maintaining strict security for independent networks while allowing broader compatibility for shared networks.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes security parameters (such as service usage limitations) based on detected network relationships. When independent networks are detected, security parameters are tightened; when shared networks are detected, parameters are adjusted to allow greater interoperability, thus adapting security levels to match network topology.

Inventive Principle:
Principle #35Parameter changes

2Adaptability or versatility

If settings are changed for newly assigned communication interfaces, then adaptability to new networks is improved, but security may be compromised

Engineering Contradiction:
Improvenetwork adaptabilityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs preliminary detection of network relationships before applying security settings. By detecting whether new networks are independent or shared in advance, the system can pre-configure appropriate security levels, ensuring both adaptability to new networks and maintenance of security protocols before actual network operations begin.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements a feedback mechanism where security settings are adjusted based on feedback from network relationship detection. The detection unit continuously monitors network connections and provides feedback to the setting unit, which then adjusts security parameters accordingly, creating a closed-loop system that balances adaptability and security.

Inventive Principle:
Principle #23Feedback

3Reliability

If security settings are dynamically adjusted based on network relationships, then both security and compatibility are optimized, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent divides the security management system into distinct functional units: a detection unit that identifies network relationships, a determination unit that classifies networks as independent or shared, and a setting unit that applies appropriate security settings. This segmentation allows each unit to perform its specific function independently, managing overall system complexity through modular design.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system implements self-service automation where the information processing apparatus automatically detects network relationships and adjusts its own security settings without requiring manual configuration. This self-service capability reduces operational complexity and eliminates the need for user intervention in security management.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11184405B2System for changing security settings based on network connections
Publication Date: 2021.11.23 FUJIFILM BUSINESS INNOVATION CORP
  • US11184405B2 patent drawing
  • US11184405B2 patent drawing
  • US11184405B2 patent drawing

AI summary

An information processing apparatus includes a processor configured to detect a new assignment of a first communication interface, and determines whether a network in which the first communication interface and a second communication interface are connected is a shared network. The determination by the processor is based on whether the first communication interface and the second communication interface communicate with each other when the first communication interface and the second communication interface are connected to an intranet. The processing device changes a security setting of the second communication interface based on a result of the determination.