Intermediary SoC for Secure Network Application Delivery
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems for delivering network applications face challenges in providing consistent user experiences across different client devices due to varying processing capabilities, leading to inconsistent performance and security issues with unencrypted content access.
Innovation Solution
An intermediary device with a System on Chip (SoC) processes remote session traffic and content, such as bitmap data and CSS files, before transmitting them to the client device for rendering, ensuring minimal processing is required on the client device and providing a secure browser service for web and SaaS applications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If content is delivered unprocessed to client devices, then client devices can access content directly, but user experience becomes inconsistent across different client devices due to varying processing capabilities
Solution Approach 1:
The patent introduces an intermediary device (Citrix ADC appliance) that acts as a mediator between content sources and client devices. This intermediary device processes content (HTML, CSS, JavaScript, graphics, audio) before delivery, ensuring consistent user experience across different client devices with varying capabilities. The intermediary device includes a content processing engine that performs tasks such as CSS filtering, JavaScript optimization, and graphics rendering without requiring complex processing at the client device level.
2Reliability
If client devices perform all processing locally, then processing is distributed, but security issues arise with unencrypted content access
Solution Approach 1:
The patent implements preliminary action by processing and securing content before delivery to client devices. The intermediary device performs content processing, encryption, and optimization in advance, so that client devices receive pre-processed, secure content that requires minimal local processing. This includes pre-rendering graphics, pre-compiling CSS, and establishing secure encrypted connections before content transfer, thereby ensuring both security and reduced client device processing load.
3Manufacturing precision
If content is processed at the intermediary device, then rendering consistency is improved, but network bandwidth consumption increases
Solution Approach 1:
The patent applies parameter changes by optimizing content delivery formats and compression levels based on client device capabilities and network conditions. The intermediary device dynamically adjusts content parameters such as image resolution, compression ratios, and protocol selection to balance rendering consistency with network bandwidth efficiency. This includes delivering appropriately sized and formatted content that maintains quality while minimizing bandwidth consumption.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Embodiments described include systems and methods for delivering a network application. An intermediary device between a client device and a server hosting a network application establishes a connection with the network application. The intermediary device receives encoded application data and decodes the encoded application data. The application data is encoded graphics data or audio data. The decoded application data is renderable at the client device. The intermediary device transmits the decoded application graphics and/or audio data to a client application of the client application for rendering to provide user access to the network application.