Identity Synchronization via Normalization Layer and Event Bus
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing identity management systems face challenges in consistency, efficiency, and usability due to the need for manual management of user identities across multiple systems with different protocols, leading to time-consuming synchronization and custom coding requirements.
Innovation Solution
A method and system for identity synchronization across multiple domains, utilizing a normalization layer to decouple identity data from source channel protocols, creating normalized event objects, and coupling them with target channel protocols for seamless data transmission, implemented on a distributed system for high throughput and scalability.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If identity data is manually managed across multiple systems with different protocols, then each system can be configured independently, but synchronization time increases and consistency deteriorates
Solution Approach 1:
The patent introduces an identity management system as an intermediary component that mediates between multiple enterprise systems. This intermediary handles protocol translation and identity data synchronization automatically, eliminating the need for manual management while maintaining system independence. The identity management system acts as a broker that receives identity data from one system and distributes it to other systems through appropriate protocol conversions.
2Adaptability or versatility
If protocol-specific code is written for each system integration, then custom requirements can be met, but device complexity and development effort increase
Solution Approach 1:
The identity management system implements a universal interface that can handle multiple protocols and system types through a single integrated platform. Rather than requiring separate protocol-specific code for each integration, the system provides a multi-functional architecture that automatically adapts to different protocols (such as LDAP, X.500, SQL) through configurable connection parameters and protocol handlers.
3Loss of information
If identity data is accessed directly from multiple systems, then data availability is maintained, but reliability decreases due to synchronization errors
Solution Approach 1:
The identity management system serves as a centralized intermediary that maintains the authoritative copy of identity data and distributes it to all connected systems. This mediator architecture ensures that all systems receive consistent, synchronized data from a single source of truth, eliminating synchronization errors that occur when systems access or modify data independently. The intermediary handles all data access requests and ensures atomic transactions across the distributed system.
Data Source
AI summary
A method for identity synchronization across multiple domains includes obtaining identity data from a source channel, wherein the identity data is associated with a source channel protocol, decoupling the identity data from the source channel protocol to obtain decoupled identity data, creating a normalized event object using the decoupled identity data, placing the normalized event object into an event bus, coupling the normalized event object with a target channel protocol to create a target-specific change object for a target channel, and forwarding the target-specific change object to the target channel.


