HTTP Module Intercepts SSL Requests for Identity Protection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current identity management systems lack comprehensive protection against identity theft, particularly in online hacking, mail fraud, credit card fraud, and public records, and often require access to credit information, limiting their effectiveness.
Innovation Solution
A computer-implemented method and system that employs an HTTP module for identity management, utilizing human knowledge and computer software to monitor and protect identity-related information across multiple fronts, including internet monitoring, credit monitoring, and public records, without needing access to credit information, and provides alerts and reporting services through a secure profile system.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If an identity management system uses an SSL accelerator to host multiple SSL certificates, then the system can support multiple secure web sites from a single web application, but the complexity of managing SSL certificates and request interception increases
Solution Approach 1:
The patent introduces an SSL accelerator as an intermediary component between the web application and multiple SSL certificates. The accelerator handles certificate binding and request interception, allowing the web application to serve multiple secure sites without directly managing the complexity of multiple SSL certificates. This mediator approach resolves the contradiction by centralizing SSL management functionality.
Solution Approach 2:
The web application is designed to serve multiple functions by supporting multiple SSL certificates through a single application instance. The HTTP module and SSL accelerator work together to provide universal SSL handling capabilities, allowing one application to securely serve multiple domains and sites, thereby improving versatility while managing complexity through standardized protocols.
2Reliability
If the HTTP module intercepts incoming requests relayed from the SSL accelerator, then the system can properly handle secure requests, but the processing time and system load increase
Solution Approach 1:
The SSL accelerator performs preliminary SSL termination and request relay before the HTTP module processes the request. By handling SSL operations in advance, the system reduces the processing burden on the HTTP module and web application, thereby decreasing overall request processing time while maintaining secure request handling through the intermediary SSL layer.
3Reliability
If the system monitors multiple types of identity-related activity across different data sources, then comprehensive identity theft protection is achieved, but the system complexity and data processing requirements increase
Solution Approach 1:
The monitoring system is segmented into distinct modules, each responsible for monitoring specific types of identity-related activity (e.g., credit monitoring, public records monitoring, internet monitoring). This segmentation allows comprehensive coverage of multiple data sources while managing complexity through modular architecture, where each module can be independently configured and maintained.
Solution Approach 2:
The identity management system employs a universal monitoring framework that can handle multiple data sources and monitoring types through a common architecture. The system uses standardized data processing protocols and a centralized management layer that coordinates across different monitoring functions, thereby achieving comprehensive protection without proportionally increasing overall system complexity.
4Adaptability or versatility
If the system provides real-time alerts and monitoring without accessing credit information, then customer privacy is protected and system accessibility improves, but the depth of credit-related monitoring is limited
Solution Approach 1:
The system uses an intermediary monitoring layer that collects and processes identity-related data from multiple sources without requiring direct access to credit information. This intermediary layer aggregates data from public records, internet activity, and other accessible sources, providing comprehensive monitoring while maintaining customer privacy and system accessibility without needing credit card or credit report access.
Data Source
AI summary
A computer implemented method, a computer system or a nontransitory computer readable storage medium having an HTTP module is provided. The method, system or medium may be configured for use with a device having one or more processors and a memory storing one or more programs for execution by the one or more processors, the one or more programs may include instructions for processing information from multiple web sites served up from a web application, binding multiple secure socket layer (SSL) certificates to a single site supported by the web application, hosting the SSL certificates using an SSL accelerator, and intercepting incoming requests relayed from the SSL accelerator to the web application with the HTTP module. The method, system or medium may be configured for use with an identity management system that uses human knowledge and experience and computer software programs and databases to anticipate forms of identity-related fraud.


