Policy Proxy for Indirect Device Configuration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

IT administrators face challenges in configuring IT policies for electronic devices that cannot connect to a policy server, particularly those without a suitable user interface or physical access, leading to time-consuming manual configurations and potential errors.

Innovation Solution

A system where a device can act as a proxy to receive IT policies from a policy server and relay them to other devices, including peripherals and external devices, using communication links like wireless local area networks or cellular standards, enabling policy distribution without direct server access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual configuration is used for devices unable to connect to the policy server, then policy configuration can be achieved, but it is time-consuming and error-prone

Engineering Contradiction:
Improveconfiguration accuracyVSAvoidconfiguration time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

A proxy device is introduced as an intermediary between the policy server and devices that cannot connect directly. The proxy receives policies from the policy server and relays them to the target devices, eliminating the need for manual configuration while ensuring accurate policy deployment even to devices without direct server access or suitable user interfaces.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If devices without direct server access are manually configured, then policy application is achieved, but physical access is required which is not always available

Engineering Contradiction:
Improvepolicy coverageVSAvoidconfiguration accessibility
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The proxy device serves as a mediator that extends policy server reachability to devices that would otherwise be inaccessible. By positioning the proxy within network range of both the policy server and target devices, it enables remote policy configuration without requiring physical access to devices lacking suitable user interfaces or direct server connectivity.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Extent of automation

If direct connection to policy server is required, then automated policy distribution is achieved, but devices unable to connect cannot receive policies

Engineering Contradiction:
Improvepolicy distribution automationVSAvoiddevice compatibility
Core Design Contradiction:
Extent of automationVSAdaptability or versatility

Solution Approach 1:

The system is segmented into three functional components: the policy server that creates and stores policies, the proxy device that receives and relays policies, and the target devices that apply policies. This segmentation allows devices with limited connectivity capabilities to still receive policies through the proxy intermediary, maintaining automation while expanding device compatibility.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The proxy device acts as an intermediary that bridges the gap between the policy server and devices unable to connect directly. It receives automated policy pushes from the server and forwards them to target devices through alternative communication channels, maintaining automated distribution while accommodating diverse device capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8261338B2Policy proxy
Publication Date: 2012.09.04 MALIKIE INNOVATIONS LTD
  • US8261338B2 patent drawing
  • US8261338B2 patent drawing
  • US8261338B2 patent drawing

AI summary

In a system with a policy server, a first device able to communicate with the policy server and a second device able to communicate with the first device and unable to communicate with the policy server, the first device is to act as a policy proxy. The policy server may push to the first device a policy for the second device, and the first device may push the policy to the second device.