Login-Initiated Remote Scanning for Device Coverage
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current computing device scanning methods, whether client-based or client-less, face limitations such as devices going undetected due to lack of installation or user intervention, limited network discovery, and inefficiencies in scanning during 'black-out' periods, necessitating a solution that combines benefits while addressing disadvantages.
Innovation Solution
A login-initiated remote scanning system that detects login events via access management systems, performs scans without software installation on target devices, uses multiple retrieval methods, and prioritizes scanning based on previous scan dates and results, enabling near-real-time risk assessments and alerts.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If client-based scanning is used, then scanning reliability is improved because the scan operation runs when the target device is running, but device coverage deteriorates because devices without the client installed go undetected
Solution Approach 1:
The patent merges client-based scanning (for reliability) and client-less scanning (for coverage) into a unified system. The scanning system can operate in both modes and automatically select the appropriate mode based on whether a client is detected on the target device, thereby achieving both high reliability and comprehensive device coverage.
Solution Approach 2:
The scanning system dynamically adapts its operation mode based on the target device's state. It detects whether a scanning client is installed and running, and if not, automatically switches to client-less scanning mode using network discovery and authentication mechanisms, allowing the system to be flexible across different device states.
2Productivity
If client-based scanning is used, then processing load is distributed across target devices, but system complexity increases because clients require periodic update/revision
Solution Approach 1:
The patent extracts the scanning functionality from the target device (client-based) and places it in the scanning system (server-based). By using client-less scanning with network discovery and authentication, the system eliminates the need for clients on target devices, thereby removing the complexity of client updates and revisions while maintaining processing load distribution through centralized scanning.
3Adaptability or versatility
If client-less scanning is used, then device coverage is improved because no installation is required, but scanning reliability deteriorates because target devices must be connected to the network
Solution Approach 1:
The patent merges client-based scanning (for reliability) and client-less scanning (for coverage) into a unified system. The scanning system can operate in both modes and automatically select the appropriate mode based on whether a client is detected on the target device, thereby achieving both high reliability and comprehensive device coverage.
4Stability of the object's composition
If enterprise scanning is suspended during black-out periods, then network stability is improved, but device detection capability deteriorates because devices connecting during suspension go undetected
Solution Approach 1:
The patent implements preliminary action by having the scanning system continuously monitor network login events and maintain readiness to scan devices. Even during black-out periods, the system prepares detection mechanisms and can immediately initiate scans when devices connect, ensuring no devices are missed while maintaining network stability during suspension.
Data Source
AI summary
Embodiments of the invention relate to systems, methods, and computer program products for login initiated remote scanning of computer devices. The present invention detects login to the network via access management systems. The login data provides information that identifies the device so that the device can be checked against a scan database to determine if and when a previous scan occurred. Based on the findings in the scan database determinations are made as to whether to perform a scan. Additionally, the level of scanning can be determined based on previous scan dates and previous scan results, which may dictate customized scanning. In addition, the priority of the impending scan may be dictated by previous scan dates and results. Further embodiments provide for assessing risk, such as risk scoring or the like, concurrently or in near-real-time with the completion of the scan so that alerts may be communicated.


