Mobile Agent Security Policy Evaluation in Distributed Systems

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems face challenges in efficiently managing inter-core communications and data aggregation across distributed applications, particularly in signaling applications between cores and handling partial service configuration changes, security policies, and situational information updates.

Innovation Solution

The method involves signaling applications between cores, aggregating data, and transmitting information while associating mobile agents with security policies and deploying them based on situational information, enabling partial service configuration changes and inter-core data management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If data is aggregated from multiple cores in distributed applications, then information completeness is improved, but communication overhead and processing time increase

Engineering Contradiction:
Improveinformation completenessVSAvoidprocessing time
Core Design Contradiction:
Loss of informationVSLoss of time

Solution Approach 1:

The patent implements preliminary action by pre-aggregating data at intermediate collection points within cores before inter-core transmission. This allows data to be partially processed and organized in advance, reducing the time required for final aggregation across cores while ensuring information completeness is maintained through systematic collection.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent applies segmentation by dividing the data aggregation process into multiple stages: local data collection within individual cores, intermediate aggregation at core boundaries, and final consolidation across the distributed system. This segmented approach reduces communication overhead by handling data in manageable portions rather than requiring simultaneous full-system aggregation.

Inventive Principle:
Principle #1Segmentation

2Reliability

If security policies are enforced for each mobile agent, then system security is improved, but evaluation complexity and processing overhead increase

Engineering Contradiction:
Improvesystem securityVSAvoidevaluation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges security policy evaluation by consolidating multiple security checks into a unified evaluation framework. Instead of independently evaluating each security policy for every mobile agent, the system combines related security requirements into integrated policy sets that can be evaluated more efficiently while maintaining comprehensive security coverage.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent implements universality by creating a universal security evaluation mechanism that handles multiple types of security policies through a single standardized process. This multi-functional evaluation system can assess different security requirements using common evaluation logic, reducing overall complexity while preserving security rigor.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If partial service configuration changes are signaled between cores, then system adaptability is improved, but communication overhead and synchronization complexity increase

Engineering Contradiction:
Improvesystem adaptabilityVSAvoidsynchronization complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent applies local quality by enabling each core to independently process and respond to configuration changes relevant to its local context. Instead of requiring centralized coordination for all configuration updates, the system allows cores to autonomously adapt their local configurations based on signaled changes, reducing synchronization complexity while maintaining system-wide adaptability.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS8984579B2Evaluation systems and methods for coordinating software agents
Publication Date: 2015.03.17 MEC MANAGEMENT LLC
  • US8984579B2 patent drawing
  • US8984579B2 patent drawing
  • US8984579B2 patent drawing

AI summary

A device, method, computer program product, and network subsystem are described for associating a first mobile agent with a first security policy and a second mobile agent with a second security policy or for providing a first agent with code for responding to situational information about the first agent and about a second agent and for evaluating a received message at least in response to an indication of the first security policy and to an indication of the second security policy or for deploying the first agent.