Secure Forum Key Management via Trusted Administrator

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Public Key Infrastructure (PKI) systems are complex and difficult to manage, making secure communication challenging for individuals and small businesses lacking technical sophistication or resources, as they require intricate configurations and hierarchies of trust.

Innovation Solution

A web service that simplifies PKI by automating key management, enabling host users to create, validate, and manage user keys for secure document and data exchange within an online forum, using public-private key pairs and certificate management to facilitate secure communication without the need for password sharing.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional PKI systems are used to enable secure communication, then security and confidentiality are improved, but system complexity and difficulty of management increase significantly

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a forum administrator as an intermediary who acts as a trusted third party within the forum community. This administrator issues certificates and manages key pairs for forum users, replacing the need for complex external PKI infrastructure. The administrator serves as a local authority that simplifies the trust model by eliminating the need for users to manage complex certificate chains and external CA hierarchies.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent extracts the essential PKI functionality (certificate issuance and validation) from the complex traditional PKI system and concentrates it in the forum administrator role. By taking out only the necessary functions and removing the cumbersome hierarchy of multiple CAs and complex certificate validation chains, the system achieves security with simplified management.

Inventive Principle:
Principle #2Taking out (Extraction)

2Reliability

If traditional PKI systems are used to enable secure communication, then confidentiality is improved, but ease of operation deteriorates for individuals and small businesses

Engineering Contradiction:
ImproveconfidentialityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables self-service by allowing forum users to automatically receive certificates and key pairs issued by the forum administrator. Users simply need to register with the forum, and the administrator automatically provisions their cryptographic credentials. This eliminates the need for users to manually configure complex PKI settings, import certificates, or manage key pairs, making secure communication as easy as forum registration.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The forum administrator performs preliminary actions by pre-generating and distributing certificates and key pairs to users before they need to exchange confidential information. This preliminary provisioning of cryptographic credentials eliminates the need for users to perform complex setup procedures at the time of first use, making the system immediately operational upon forum registration.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If comprehensive PKI management is implemented to ensure secure document exchange, then security is improved, but resource requirements and technical sophistication needed increase

Engineering Contradiction:
ImprovesecurityVSAvoidtechnical resources
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent merges multiple PKI management functions (certificate issuance, key pair generation, user validation, and security management) into a single forum administrator role. This consolidation eliminates the need for separate external CA infrastructure, certificate management systems, and key management services that would otherwise be required, significantly reducing the technical resources and expertise needed to implement secure document exchange.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS9100171B1Computer-implemented forum for enabling secure exchange of information
Publication Date: 2015.08.04 SECURE FORWARD LLC
  • US9100171B1 patent drawing
  • US9100171B1 patent drawing
  • US9100171B1 patent drawing

AI summary

A secure communication forum is established through use of a network resource that is available to a host user and one or more forum users. The host user is validated and assigned a master key for his or her forum. Individual users who are to participate in the forum are assigned users keys that are validated with the master key. The forum is maintained for ongoing use for the users.