Embedded VPN Browser Automates Secure DNS Tunneling

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing online security measures, such as VPNs, are often complex to set up and use, and users face risks of data interception and unauthorized access due to insecure network connections, particularly over cellular or Wi-Fi networks, which can lead to privacy concerns and potential fraud.

Innovation Solution

An embedded VPN capability within an application layer automates the connection process using DNS functionality to establish a secure and private network connection, analyzing privacy policies and providing recommendations to protect users' accounts and financial information, while ensuring all sensitive traffic is transmitted through a secure VPN tunnel.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional VPN applications are used to secure network connections, then security and privacy protection is improved, but device complexity and ease of operation deteriorates due to difficult setup and activation requirements

Engineering Contradiction:
ImprovesecurityVSAvoidease of setup
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent merges the VPN functionality with the web browser by embedding the VPN client within the browser application. This integration allows the browser to automatically establish and manage secure VPN connections without requiring separate VPN client installation or manual configuration, thereby improving ease of operation while maintaining security benefits

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The embedded VPN system performs automatic connection establishment and management without requiring user intervention. The system self-configures VPN parameters, automatically connects to secure servers, and manages connection states, eliminating the need for users to manually set up or activate VPN applications

Inventive Principle:
Principle #25Self-service

2Reliability

If manual VPN configuration is required to ensure secure connections, then security protection is improved, but loss of time increases due to complex setup and activation processes

Engineering Contradiction:
ImprovesecurityVSAvoidsetup time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The VPN configuration parameters and connection settings are pre-configured within the embedded VPN system during development. When a user accesses a website through the browser, the system already has the necessary VPN credentials and routing information ready, allowing immediate automatic connection without requiring users to perform time-consuming setup procedures

Inventive Principle:
Principle #10Preliminary action

3Reliability

If all network traffic is routed through VPN to protect sensitive data, then security and privacy is improved, but use of energy increases due to encryption and tunneling processing requirements

Engineering Contradiction:
ImproveprivacyVSAvoidenergy consumption
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The system applies VPN encryption and tunneling selectively based on the nature of the traffic. Rather than encrypting all network traffic uniformly, the embedded VPN analyzes packets and applies security measures only to sensitive data streams that require protection, such as financial transactions or personal information, while allowing less sensitive traffic to pass through with minimal processing overhead

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS12052221B2Embedded virtual private network
Publication Date: 2024.07.30 ALLSTATE INSURANCE COMPANY
  • US12052221B2 patent drawing
  • US12052221B2 patent drawing
  • US12052221B2 patent drawing

AI summary

Connecting to an unsecured wired or wireless network poses severe security and privacy risks. An individual application such as a mobile online banking application address this by using point to point private network connections. Browsers, however, generally do not use point to point private network connections and depend on the target website to establish a secure connection. Providing a secure connection that is the default for all network access and that encrypts all over the air or over the wire traffic mitigates these risks. However, virtual client networks (VPNs) client applications can be difficult to set up and need to be always on to ensure that all network activity is secure. By embedding a VPN capability and automating the connection process, a safe and secure network connection can be made available to users of computing devices. An embedded private connect VPN system may use Domain Name Server (DNS) functionality to determine which data or content streams are to be transmitted through a generated private connect VPN tunnel.