Gateway Platform Intercepting IP Frames for Restricted Device Internet Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Restricted smartphones and devices cannot implement or operate Internet gateways due to denied access to privileged portions of the operating system's API, preventing third-party applications from sending and receiving network frames directly, which limits their ability to provide Internet access to client devices.

Innovation Solution

A method and system that utilize a gateway device with a gateway platform to intercept and process outgoing IP frames, determine their type, and forward invocations to non-privileged portions of the network API, enabling Internet access for client devices by establishing TCP/UDP connections and monitoring network events, even on devices without root access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If third-party gateway applications are implemented on restricted smartphones, then Internet access functionality is improved, but the operating system denies access to privileged portions of the API which worsens the ability to send and receive network frames directly

Engineering Contradiction:
ImproveInternet access functionalityVSAvoidAPI access permission
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent implements a gateway application that acts as an intermediary between the restricted smartphone OS and client devices. This gateway application utilizes the limited non-privileged API portions available to the OS to establish TCP/UDP connections and forward network traffic, thereby enabling Internet access functionality despite the lack of direct privileged API access. The gateway application mediates all network frame transmission by converting restricted OS capabilities into functional network connectivity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If privileged portions of the API are accessed to enable direct network frame transmission, then network communication capability is improved, but restricted devices prohibit such access which worsens device security and stability

Engineering Contradiction:
Improvenetwork communication capabilityVSAvoidsystem security risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent employs partial action by utilizing only the non-privileged portions of the API that are accessible to third-party applications. Rather than attempting to access the full privileged API, the gateway application works within the limited permissions granted by the restricted OS, using sufficient subset of capabilities to establish TCP/UDP connections and forward network frames. This partial utilization of API functionality achieves reliable network communication without compromising system security.

Inventive Principle:
Principle #16Partial or excessive action

3Adaptability or versatility

If root access is obtained to bypass API restrictions, then gateway application functionality is improved, but device stability and security are worsened due to potential system compromise

Engineering Contradiction:
Improvegateway application functionalityVSAvoiddevice stability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The gateway application implements self-service by operating within the constraints of non-privileged API access. Rather than requiring root access or system compromise, the application autonomously utilizes the limited permissions provided by the restricted OS to create TCP/UDP connections, send and receive network frames, and provide Internet access functionality. This self-contained operation within granted permissions maintains device stability while achieving gateway functionality.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS8751670B2Methods and devices for providing internet access through a restricted device
Publication Date: 2014.06.10 XU CHUYUE
  • US8751670B2 patent drawing
  • US8751670B2 patent drawing
  • US8751670B2 patent drawing

AI summary

According to an aspect of the disclosure, novel solutions are disclosed for providing Internet access to a client device (e.g., desktop computer, laptop computer, tablet computer or portable electronic device) using non-privileged portions of an application programming interface (“API”) of a gateway device (e.g., smartphone or cellular phone). According to another aspect of the disclosure, novel solutions are provided for building a Wireless Internet gateway system through a Wi-Fi capable gateway device that also has Internet access provisioned by a cell phone carrier. A Wi-Fi Internet gateway system can be implemented on a device where it was originally impossible to do so, due to various access restrictions to core functionalities, such as root access restrictions.