Extranet Server Email Mediation for Intranet Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Corporations face challenges in allowing external users to access intranet services and databases securely without compromising internal network security, especially when employees outside the intranet cannot enter through a secure gateway.
Innovation Solution
A method where an external server generates an email request for intranet services, which is processed by an internal server, and the response is sent back via email, with embedded request specifics and results in a secure attachment, allowing external users to access results through a graphical user interface while maintaining security through predefined programs and authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If external users are allowed to access intranet services directly, then access availability is improved, but network security is compromised
Solution Approach 1:
The patent introduces an intermediary server positioned between the intranet and extranet that mediates all communications. This intermediary receives requests from external users, validates them against predefined criteria, and only permits access to approved services. The intermediary acts as a security gatekeeper that enables access availability while preventing unauthorized access to the intranet.
Solution Approach 2:
The patent segments the intranet access by dividing services into two categories: those accessible from the extranet and those restricted to the intranet only. This segmentation is implemented through predefined programs that specify which services can be accessed externally and under what conditions, allowing selective access without compromising overall network security.
2Object-affected harmful factors
If a secure gateway is implemented for external access, then network security is improved, but access complexity increases
Solution Approach 1:
The intermediary server implements self-service by automatically validating external user requests against predefined programs and criteria. The system autonomously determines whether to permit or deny access based on predefined rules, eliminating the need for manual security approvals or complex authentication procedures. This automation reduces access complexity while maintaining strong security controls.
Solution Approach 2:
The patent employs preliminary action by pre-defining access criteria and authorized services before external users attempt to access the intranet. The intermediary server checks requests against these pre-established rules, allowing rapid decision-making without real-time security analysis. This preliminary configuration simplifies the access process while ensuring security.
3Object-affected harmful factors
If internal network is protected from external access, then network security is improved, but service availability to external users is reduced
Solution Approach 1:
The patent applies local quality by providing different access levels for different services. Instead of uniform access control, the system selectively enables access to specific intranet services from the extranet while maintaining restricted access to other services. This allows service availability to external users for approved functions while preserving network security for sensitive areas.
Data Source
AI summary
A request for information or services available on an intranet may be made by users on an extranet outside the intranet. An email is generated in an external server on the extranet in response to the request for information or services, and then sent from the external server to an internal server inside the intranet. The email comprises one or more approved forms based on the request, wherein specifics of the request are embedded into the body of the email. The email is processed at the internal server, in order to generate a response to the request, wherein the response is returned by the internal server to the external server in a reply email. The reply email includes an attachment containing the results of the processing performed by the internal server. The external server allows the user to access these results via an external graphical user interface.


