Policy Server Third-Party Rule Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic activity monitoring and control systems are device-based, requiring multiple tailored solutions for various devices and data types, and often lack comprehensive security plans that consider diverse user interactions across platforms, making it difficult to manage and monitor electronic activities effectively.

Innovation Solution

A policy service using a policy server that collects rules from managers and allows third-party rule submissions for modifying policies, validating these rules to ensure legitimacy, and applying them to managed devices to control and monitor electronic activity, allowing or blocking activities based on compliance with defined policies.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If device-based control mechanisms are used to monitor and control electronic activity, then security control is achieved at individual devices, but the system complexity increases when managing multiple devices and platforms

Engineering Contradiction:
Improvesecurity controlVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a universal policy management system that can control and monitor electronic activity across multiple device types (smartphones, PCs, tablets, set-top boxes) and platforms through a single centralized policy server. The policy engine evaluates rules against electronic activity regardless of the source device, providing multi-functional security control that reduces the need for device-specific solutions and lowers overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If multiple tailored solutions are created for each data type and device, then specific security needs are addressed, but the time and resources required to manage these solutions increase

Engineering Contradiction:
Improvesecurity coverageVSAvoidmanagement time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent merges multiple tailored security solutions into a single unified policy management system. The policy server consolidates rule management for various data types (video, chat, instant messages, news feeds, music) and device types into one centralized location. Managers can create, modify, and enforce policies across all devices through a single interface, significantly reducing the time and resources needed to manage security compared to maintaining separate solutions for each device and data type.

Inventive Principle:
Principle #5Merging (Combining)

3Adaptability or versatility

If third party rule submissions are allowed to modify policies, then the flexibility and adaptability of security policies improve, but the risk of illegitimate or malicious rules increases

Engineering Contradiction:
Improvepolicy flexibilityVSAvoidmalicious rules
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a validation service as an intermediary between third-party rule submissions and policy enforcement. When a third party submits a rule, the validation service evaluates it to ensure legitimacy before the rule can modify policies. This mediator layer maintains policy flexibility by allowing third-party contributions while protecting the system from malicious or illegitimate rules through automated validation checks.

Inventive Principle:
Principle #24Intermediary (Mediator)

4Reliability

If comprehensive validation of third party rules is performed, then the security against malicious rules is enhanced, but the processing time and system resources increase

Engineering Contradiction:
Improverule legitimacyVSAvoidvalidation time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The validation service performs partial validation of third-party rules by checking for obvious legitimacy criteria without requiring exhaustive analysis of every rule. The validation focuses on essential security checks (such as verifying the submitting entity's authorization and basic rule structure) rather than comprehensive analysis, achieving sufficient rule legitimacy verification while minimizing validation time and resource consumption.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS10158673B2Monitoring and controlling electronic activity using third party rule submission and validation
Publication Date: 2018.12.18 AT&T INTELLECTUAL PROPERTY I L P
  • US10158673B2 patent drawing
  • US10158673B2 patent drawing
  • US10158673B2 patent drawing

AI summary

Concepts and technologies are disclosed herein for monitoring and controlling electronic activity. A policy service can be called for policies for controlling electronic activity occurring at one or more managed devices. The policies can include a number of rules, each of which can include a number of variables. The rules can be defined by a manager device and/or received from third parties. Third party rule submissions can be validated. If electronic activity at the managed device deviates from a rule, the manager device can be notified and the electronic activity can be blocked. The manager device can update the policy and/or issue exceptions, if desired.