Securing Non-IP Device Connections to IP Cloud Servers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current communication security measures are inadequate for securing connections between non-IP devices and IP-connected clouds, as they lack integration of security protocols for both non-IP and IP connections, leaving gaps in safety when devices with security issues connect to networks.

Innovation Solution

A communication processing apparatus with a first connection unit for devices, a second connection unit for servers, a switching unit, a determiner to assess connection permissions, and a connection controller to manage switching based on determinations, ensuring secure connections by controlling and disconnecting unauthorized devices from IP-connected servers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If security measures are provided between USB device and host apparatus, then connection security is improved, but there is no security measure from USB device to cloud server

Engineering Contradiction:
Improveconnection securityVSAvoidsecurity coverage scope
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent combines USB connection security control and network connection security control into a unified system. The connection control unit integrates both USB connection permission determination and network connection permission determination, allowing coordinated security management across both connection types to ensure comprehensive security from device to cloud server.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The connection control unit is designed to perform multiple security control functions: it determines USB connection permissions, determines network connection permissions, and coordinates both types of connections. This multi-functional approach ensures that security measures apply universally across different connection pathways from USB devices to cloud servers.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If USB connection permission is determined separately from network connection permission, then USB security is improved, but integrated security from device to cloud is insufficient

Engineering Contradiction:
ImproveUSB connection securityVSAvoidsecurity control structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges separate USB connection permission determination and network connection permission determination into a single integrated connection control unit. This unified structure maintains the ability to control each connection type while ensuring they work together to provide comprehensive end-to-end security from USB device through network to cloud server.

Inventive Principle:
Principle #5Merging (Combining)

3Device complexity

If non-IP connection device security is not integrated with IP connection security, then existing security systems remain simple, but safe connection from non-IP device to IP cloud is impossible

Engineering Contradiction:
Improvesecurity system structureVSAvoidend-to-end connection safety
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent combines non-IP connection security control (USB/Bluetooth devices) and IP connection security control (network communications) into a unified connection control system. This integration enables comprehensive security verification for devices regardless of connection type, ensuring safe connections from non-IP devices through the network infrastructure to IP-based cloud servers.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The connection control unit acts as an intermediary between USB/Bluetooth devices and the network infrastructure. It mediates the connection process by determining permissions for both USB connections and subsequent network connections, bridging the security gap between non-IP and IP connection domains to enable secure end-to-end communication.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11563604B2Securing a connection from a device to a server
Publication Date: 2023.01.24 NEC CORP
  • US11563604B2 patent drawing
  • US11563604B2 patent drawing
  • US11563604B2 patent drawing

AI summary

This invention is directed to a communication processing apparatus that secures a safe connection from a non-IP-connection device to an IP-connection cloud (server). This communication processing apparatus includes a first connection unit that connects devices, a second connection unit that connects to servers, a switching unit that switches connections of the devices and the servers between the first connection unit and the second connection unit, a determiner that determines whether connection of a device to the first connection unit is permitted or unpermitted, and a connection controller that controls the switching unit in accordance with a determination result from the determiner.