Identity Migration Apparatus Centralizing Network Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Managing multiple network identities across different departments within an organization is complex and difficult, requiring users to remember and maintain separate user identification information for each network, making consolidation into a single management system beneficial.

Innovation Solution

A method and apparatus for centralizing identity management, providing interface controls to create migration projects, specify identities and rules, schedule migrations, and manage errors, including modules for project management, identity selection, migration rules, communication, group management, and process control to migrate locally-managed identities to centrally-managed identities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple separate network identities are maintained for different departments, then each network can operate independently with its own management, but the complexity of managing multiple identities increases and users must remember multiple user identification information

Engineering Contradiction:
Improveindependent network managementVSAvoididentity management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges multiple separate network identities into a single centralized identity management system. The identity migration apparatus consolidates identities from multiple source networks (e.g., departmental networks) into one target network, allowing users to access all networks with a single identity. This combining approach maintains the independence of individual networks while eliminating the need for users to manage multiple identities separately.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent creates a universal identity that can function across multiple networks. The migrated identity serves multiple purposes: it provides access to the target network and maintains connectivity to source networks. This multi-functional identity replaces the need for separate departmental credentials, simplifying user authentication while preserving network-specific functionalities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Ease of operation

If identities are consolidated into a single management system, then identity management complexity is reduced and users have simpler access, but the migration process requires careful planning and error resolution capabilities

Engineering Contradiction:
Improveidentity management easeVSAvoidmigration process efficiency
Core Design Contradiction:
Ease of operationVSProductivity

Solution Approach 1:

The patent performs preliminary actions before completing the identity migration. The system allows users to review the migration map, identify potential errors, and correct mapping issues before finalizing the migration. This preliminary review and correction phase ensures that the consolidation process is smooth and error-free, preventing complications that would arise after migration completion.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements feedback mechanisms during the migration process. The system provides users with a migration map showing how identities will be mapped, allows review of this mapping, and enables correction of errors. This feedback loop ensures that the consolidation process maintains high efficiency by allowing real-time adjustments and verification before final execution.

Inventive Principle:
Principle #23Feedback

3Productivity

If automated migration rules are applied, then the migration process is faster and more efficient, but errors may occur that require manual intervention and error resolution

Engineering Contradiction:
Improvemigration speedVSAvoidmigration accuracy
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent introduces an intermediary review process between automated migration rule application and final identity consolidation. The migration map serves as an intermediary representation that allows users to verify automated mappings before they are finalized. This intermediary step catches errors that automated rules might generate while preserving the efficiency benefits of automation, as most mappings can still be processed automatically with minimal manual intervention.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8966045B1Identity migration apparatus and method
Publication Date: 2015.02.24 ONE IDENTITY LLC
  • US8966045B1 patent drawing
  • US8966045B1 patent drawing
  • US8966045B1 patent drawing

AI summary

An identity migration program provides interfaces for a user to manage operations for migrating locally-managed identities to centrally-managed identities. The provided interfaces include a project management interface, an identity selection interface, a migration rule editor interface, and a project scheduling interface. In certain embodiments, the identity migration program includes a communication module that provides interfaces for managing communication between the identity migration program and locally-managed and centrally-managed servers. Interfaces may also be provided to manage identity group migration and migration error resolution. A migration process management interface enables the user to halt, roll back, or resume a migration project.