ERP Interface Profiling for Data Classification and Security Rules

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Business applications, such as ERP landscapes, face increased security risks due to interconnected interfaces that can lead to data leaks and compliance breaches, exacerbated by growing external vulnerabilities and user access, necessitating improved interface security analysis.

Innovation Solution

An interface profiler analyzes data flows, performs automatic data classification, and generates rules to manage communication paths, supported by a visualization tool to ensure secure data exchange within business applications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If businesses connect to external computer systems and increase user access to improve business functionality and accessibility, then business applications become more vulnerable to security risks and external threats

Engineering Contradiction:
Improvebusiness accessibilityVSAvoidsecurity vulnerabilities
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an interface profiler as an intermediary system that sits between external systems and the core business application. This profiler monitors, analyzes, and controls all interface communications, acting as a security mediator that allows business accessibility while filtering out security threats before they reach vulnerable interfaces

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The interface profiler performs preliminary security analysis of all interfaces before they are exploited. By proactively scanning, profiling, and identifying vulnerabilities in advance, the system prepares security measures beforehand rather than reacting to attacks, thus enabling safe expansion of business accessibility

Inventive Principle:
Principle #10Preliminary action

2Reliability

If businesses implement comprehensive interface security analysis to improve security protection, then the complexity of system analysis and monitoring increases

Engineering Contradiction:
Improveinterface securityVSAvoidsystem analysis complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The interface profiler is designed to autonomously profile interfaces, automatically generate security rules, and self-adjust monitoring parameters without requiring complex manual configuration. The system performs self-service security analysis, reducing the operational complexity despite comprehensive security coverage

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The interface profiler serves multiple functions simultaneously: it profiles interfaces, monitors data flows, generates security rules, and provides visualization. This multi-functional design consolidates what would otherwise require multiple separate complex systems into a single unified tool

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If automated data classification and rule generation are implemented to improve security efficiency, then the precision of data flow monitoring and vulnerability detection must be maintained

Engineering Contradiction:
Improvesecurity analysis efficiencyVSAvoiddata flow monitoring accuracy
Core Design Contradiction:
ProductivityVSMeasurement precision

Solution Approach 1:

The interface profiler implements continuous feedback loops where monitored data flows are analyzed, rules are generated and applied, and the results feed back into refining the profiling accuracy. This iterative feedback mechanism maintains high measurement precision while automating the security analysis process

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system replaces manual security analysis mechanics with automated computational processes. Machine learning and algorithmic rule generation substitute human analysts, maintaining precision through consistent automated application of security criteria while dramatically improving productivity

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS12393901B2Interface security in business applications
Publication Date: 2025.08.19 ONAPSIS INC
  • US12393901B2 patent drawing
  • US12393901B2 patent drawing
  • US12393901B2 patent drawing

AI summary

Security can be improved in a business application landscape, such as an enterprise resource planning (“ERP”) system, by analyzing interfaces between systems of the application. The interface profiler may automatically analyze data flows in the system landscape with automatic data classification of communications between systems. A rule generation engine provides functionality for comparing reference data flows with the actual data flows in the landscape and report violations. There may be visualization of the business application landscape, such as through a system landscape map.