Private Network Request Forwarding via Intermediary Filtering

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing public network infrastructure exposes content providers to vulnerabilities, such as denial of service attacks, as illegitimate requests can directly reach content providers without filtering, disrupting services and causing potential financial and physical damages.

Innovation Solution

Implementing a private network infrastructure that analyzes requests through access profiles to determine legitimacy, filtering out illegitimate requests and forwarding only legitimate ones to content providers, thereby limiting user access and protecting against threats.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If public network infrastructure is used to deliver requests to content providers, then service accessibility and ease of operation are improved, but security and reliability deteriorate due to exposure to illegitimate requests and denial of service attacks

Engineering Contradiction:
Improveservice accessibilityVSAvoidservice security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a content delivery entity as an intermediary between users and content providers. This entity receives requests from users over the public network, analyzes them for legitimacy, and forwards only legitimate requests to content providers through a private network. The intermediary thus enables public access while protecting against security threats by filtering malicious requests before they reach the content provider infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If direct access to content providers is allowed over public network, then ease of operation is improved, but harmful factors increase due to unfiltered illegitimate requests

Engineering Contradiction:
Improvedirect access convenienceVSAvoidillegitimate requests
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The content delivery entity performs preliminary analysis of requests before they are forwarded to content providers. By analyzing access profiles and determining legitimacy in advance, the system prevents illegitimate requests from reaching content providers. This preliminary filtering action eliminates harmful factors while maintaining convenient access for legitimate users.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If private network infrastructure with request analysis is implemented, then security and reliability are improved, but device complexity and infrastructure requirements worsen

Engineering Contradiction:
Improveservice securityVSAvoidnetwork infrastructure complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the network infrastructure into distinct functional components: a public network interface for receiving requests, a content delivery entity with analysis capabilities, and a private network for forwarding legitimate requests. This segmentation allows the complex security functions to be isolated in a dedicated entity, making the overall system more manageable and the complexity localized rather than distributed throughout the entire network.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS12074852B1Private network request forwarding
Publication Date: 2024.08.27 UNITED SERVICES AUTOMOBILE ASSOCIATION (USAA)
  • US12074852B1 patent drawing
  • US12074852B1 patent drawing
  • US12074852B1 patent drawing

AI summary

Private network request forwarding can include receiving a request from a user for Internet services over a public network. Private network request forwarding can include analyzing the request and determining whether the request is legitimate. Private network request forwarding can include forwarding the request to an entity through a private network when it is determined that the request is legitimate, wherein the user has access to the entity through a proxy.