Edge Proxy Flow Token Content Distribution
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The end-to-end principle in content distribution networks leads to issues such as unsolicited traffic and lack of control over network routes, resulting in problems like spam and DDoS attacks, as senders cannot ensure that only subscribed recipients receive content.
Innovation Solution
Implementing a publish/subscribe paradigm with flow tokens that contain state information, allowing content publishers to deliver subscribed content only to subscribed users through stateless edge proxies and a lookup service that manages these tokens.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Speed
If end-to-end content distribution is used, then network flexibility and information transfer speed are improved, but unsolicited traffic and lack of route control increase
Solution Approach 1:
The patent introduces edge proxies as intermediary components between content publishers and subscriber apparatuses. These edge proxies act as mediators that verify flow tokens and control content distribution routes, preventing unsolicited traffic while maintaining the speed benefits of direct peer-to-peer delivery. The intermediary validates whether the sender has legitimate distribution rights before allowing content transfer.
Solution Approach 2:
The system performs preliminary actions by requiring content publishers to obtain flow tokens with embedded state information before distributing content. The flow tokens are pre-configured with subscriber identification and authorization data, enabling rapid validation at the edge proxy without real-time complex authentication, thus maintaining high transfer speeds while ensuring controlled distribution.
2Device complexity
If end-to-end content distribution is used, then network simplicity is maintained, but control over content delivery routes is lost
Solution Approach 1:
The patent segments the content distribution function into distinct components: content publishers, edge proxies with flow token validation, and subscriber apparatuses. This segmentation allows route control to be implemented at specific points (edge proxies) without complicating the entire network architecture. Each segment maintains relative simplicity while collectively providing controlled delivery routes.
3Ease of operation
If flow tokens with state information are implemented, then content delivery control is improved, but system complexity increases
Solution Approach 1:
The patent extracts the complex state management requirements into a separate component - the flow token - which is then stored and managed by edge proxies. This extraction allows the core content distribution system to remain relatively simple while the edge proxies handle the complexity of state information validation. The flow token serves as a self-contained carrier of authorization state.
Solution Approach 2:
The system uses flow tokens as copyable authorization carriers that embed state information. Instead of maintaining complex centralized state management, the system creates and distributes copies of authorization state (flow tokens) to edge proxies and content publishers. This copying approach simplifies the overall system architecture by distributing state management responsibility rather than concentrating it.
4Adaptability or versatility
If traditional end-to-end distribution is used, then sender freedom is maintained, but spam and DDoS attacks increase
Solution Approach 1:
The patent implements preliminary anti-action by requiring flow token validation at edge proxies before content distribution is allowed. This pre-verification mechanism prevents unauthorized or malicious distribution attempts before they can execute, countering spam and DDoS attacks. Senders must have legitimate flow tokens proving authorization, which prevents malicious actors from freely distributing content.
Data Source
AI summary
A method and apparatus are provided for facilitating content distribution. A method may include receiving, at an edge proxy apparatus, a subscription request indicating content to which a subscriber is to be subscribed. The method may further include creating a flow token including content relation information referencing the indicated content and state information enabling delivery of subscribed content to a subscriber apparatus associated with the subscriber. The method may additionally include causing the flow token to be provided to a lookup service apparatus configured to provide access to flow tokens to one or more content publishers. A corresponding apparatus is also provided.


