Overlay Network Proxy for Secure Application Communication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In enterprise networks, it is challenging to provide secure communication between applications that are members of an application group, especially when scaling the number of applications, as existing solutions require modifying or 'retrofitting' each application for secure communication, and configuring overlay networks to optimize communication between virtual computer systems is complex.
Innovation Solution
An overlay network is established to facilitate secure communication between applications, using a logical structure that operates over existing network resources, with a proxy entity managing data routing and encryption, decoupling application development from data protection and allowing modifications to the network configuration without altering individual applications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional networking approaches are used for application communication, then applications can be deployed and communicate with each other, but securing communication requires retrofitting each application which increases complexity and reduces scalability
Solution Approach 1:
The patent introduces an overlay network as an intermediary layer between applications and the underlying physical network. This overlay network handles security, encryption, and communication protocols, allowing applications to communicate securely without being modified. The overlay network acts as a mediator that translates application communication requests into secure network transactions, eliminating the need to retrofit each application with security functionality.
Solution Approach 2:
The patent segments the networking functionality into two distinct layers: the underlying physical network infrastructure and the overlay network layer. By separating these functions, the patent allows security and communication management to be handled at the overlay layer while applications operate independently. This segmentation enables secure communication without requiring changes to individual applications, as security is implemented at the network layer rather than the application layer.
2Productivity
If overlay networks are configured to optimize communication between virtual computer systems, then communication efficiency improves, but network configuration complexity increases
Solution Approach 1:
The overlay network is designed as a universal infrastructure that can serve multiple applications and virtual computer systems simultaneously. Rather than configuring separate optimization mechanisms for each application pair, the overlay network provides universal routing and communication optimization that benefits all applications. This multi-functional approach improves communication efficiency across the system while avoiding the complexity of individualized configurations for each application.
3Adaptability or versatility
If the number of applications in the system grows, then system functionality increases, but the difficulty of securing and protecting data flow between applications increases
Solution Approach 1:
The overlay network serves as a scalable intermediary that automatically manages security for any number of applications. When new applications are added to the system, the overlay network automatically incorporates them into its security framework without requiring manual reconfiguration. This mediator approach allows the system to grow in functionality while the overlay network handles the complexity of securing data flow between all application pairs through its centralized management capability.
Data Source
AI summary
A communication to a network location is detected at a computing device. The communication is transmitted to the network location in a manner dependent at least in part on whether the network location is at the computing device or at a different computing device.


