Firewall Data Collection via Intermediary Coordination

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In information processing systems, collecting data from multiple apparatuses across a firewall is inefficient due to the need for polling communication, which delays data collection and requires sequential transmission over extended periods, especially when network load and firewall limitations are considered.

Innovation Solution

An information processing system that includes an apparatus connected to multiple devices through a firewall, where instructions are sent to request data transmission from one device to another within the same firewall, allowing simultaneous or coordinated data collection based on predetermined plans and communication allowable ranges, reducing the delay and optimizing network load management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If polling communication is used to collect data from multiple apparatuses across a firewall, then data collection can be performed, but the data collection process is delayed and requires sequential transmission over extended periods

Engineering Contradiction:
Improvedata collection capabilityVSAvoiddata collection time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

Instead of the information processing apparatus sequentially polling each apparatus for data (traditional approach), the invention inverts the communication flow by having apparatuses within the same firewall group automatically share data with each other. The first apparatus receives a data collection request from the information processing apparatus, then automatically transmits the request to the second apparatus, and both apparatuses simultaneously transmit their data to the information processing apparatus, eliminating the need for sequential polling.

Inventive Principle:
Principle #13The other way round (Inversion)

Solution Approach 2:

The invention establishes predetermined data sharing plans between apparatuses before data collection is needed. Apparatuses pre-configure their data sharing relationships and communication paths within the firewall, so when a data collection request arrives, the coordinated transmission can occur immediately without delay for establishing connections or negotiating data sharing terms.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If sequential polling is used to collect data from multiple apparatuses, then firewall security is maintained, but network load increases and data collection efficiency decreases

Engineering Contradiction:
Improvefirewall securityVSAvoiddata collection efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The invention segments the data collection process into two independent parallel streams: one stream handles communication between the information processing apparatus and the first apparatus (through the firewall), while another stream handles communication between the first apparatus and the second apparatus (within the firewall). This segmentation allows simultaneous data retrieval from multiple apparatuses without overloading the firewall connection, maintaining security while improving efficiency.

Inventive Principle:
Principle #1Segmentation

3Speed

If multiple apparatuses transmit data simultaneously through the firewall, then data collection speed increases, but network load management becomes complex

Engineering Contradiction:
Improvedata collection speedVSAvoidnetwork load management
Core Design Contradiction:
SpeedVSDevice complexity

Solution Approach 1:

The first apparatus acts as an intermediary or mediator between the information processing apparatus and the second apparatus. It receives the data collection request from the information processing apparatus, forwards it to the second apparatus, and coordinates the simultaneous transmission of data from both apparatuses. This intermediary role simplifies network load management by centralizing the coordination logic in one apparatus rather than requiring complex multi-point synchronization.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9300631B2Information processing system, information processing apparatus, apparatus, and non-transitory computer readable medium storing information processing program
Publication Date: 2016.03.29 FUJIFILM BUSINESS INNOVATION CORP
  • US9300631B2 patent drawing
  • US9300631B2 patent drawing
  • US9300631B2 patent drawing

AI summary

An information processing system includes an information processing apparatus, a first apparatus connected to the information processing apparatus with a firewall interposed therebetween, and a second apparatus connected to the information processing apparatus with the firewall interposed therebetween and is connected to the first apparatus within the firewall. The information processing apparatus includes a first receiving unit receiving a communication from the first apparatus and a first transmitting unit that transmits an instruction to request the second apparatus to transmit information to the first apparatus. The first apparatus includes a second receiving unit receiving a communication from the first transmitting unit and a second transmitting unit that transmits an instruction to the second apparatus. The second apparatus includes a third receiving unit receiving a communication from the second transmitting unit and a third transmitting unit that transmits information to the information processing apparatus.