Extranet Server Email Mediation for Intranet Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Corporations face challenges in allowing external users to access intranet services and databases securely without compromising internal network security, especially when employees outside the intranet cannot enter through a secure gateway.

Innovation Solution

A method where an external server generates an email request for intranet services, which is processed by an internal server, and the response is sent back via email, with embedded request specifics and results in a secure attachment, allowing external users to access results through a graphical user interface while maintaining security through predefined programs and authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If external users are allowed to access intranet services directly, then access availability is improved, but network security is compromised

Engineering Contradiction:
Improveaccess availabilityVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediary server positioned between the intranet and extranet that mediates all communications. This intermediary receives requests from external users, validates them against predefined criteria, and only permits access to approved services. The intermediary acts as a security gatekeeper that enables access availability while preventing unauthorized access to the intranet.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the intranet access by dividing services into two categories: those accessible from the extranet and those restricted to the intranet only. This segmentation is implemented through predefined programs that specify which services can be accessed externally and under what conditions, allowing selective access without compromising overall network security.

Inventive Principle:
Principle #1Segmentation

2Object-affected harmful factors

If a secure gateway is implemented for external access, then network security is improved, but access complexity increases

Engineering Contradiction:
Improvenetwork securityVSAvoidaccess complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The intermediary server implements self-service by automatically validating external user requests against predefined programs and criteria. The system autonomously determines whether to permit or deny access based on predefined rules, eliminating the need for manual security approvals or complex authentication procedures. This automation reduces access complexity while maintaining strong security controls.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent employs preliminary action by pre-defining access criteria and authorized services before external users attempt to access the intranet. The intermediary server checks requests against these pre-established rules, allowing rapid decision-making without real-time security analysis. This preliminary configuration simplifies the access process while ensuring security.

Inventive Principle:
Principle #10Preliminary action

3Object-affected harmful factors

If internal network is protected from external access, then network security is improved, but service availability to external users is reduced

Engineering Contradiction:
Improvenetwork securityVSAvoidservice availability
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent applies local quality by providing different access levels for different services. Instead of uniform access control, the system selectively enables access to specific intranet services from the extranet while maintaining restricted access to other services. This allows service availability to external users for approved functions while preserving network security for sensitive areas.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS8977691B2Implementation of an extranet server from within an intranet
Publication Date: 2015.03.10 TERADATA US INC
  • US8977691B2 patent drawing
  • US8977691B2 patent drawing
  • US8977691B2 patent drawing

AI summary

A request for information or services available on an intranet may be made by users on an extranet outside the intranet. An email is generated in an external server on the extranet in response to the request for information or services, and then sent from the external server to an internal server inside the intranet. The email comprises one or more approved forms based on the request, wherein specifics of the request are embedded into the body of the email. The email is processed at the internal server, in order to generate a response to the request, wherein the response is returned by the internal server to the external server in a reply email. The reply email includes an attachment containing the results of the processing performed by the internal server. The external server allows the user to access these results via an external graphical user interface.