Private Network Tunnel Connection for Secure Low-Latency Routing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Communication between different private networks is challenging due to security concerns and increased latency when using public networks for IP address translation, making it difficult to maintain high-security inter-private network communication.

Innovation Solution

A communication system that directly connects multiple private networks via VPN tunnels, utilizing MAC and IP filtering to ensure only authorized IP packets are exchanged, thereby maintaining high security and reducing latency.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If communication between different private networks is performed via a public network, then connectivity between networks is achieved, but security strength deteriorates

Engineering Contradiction:
Improveconnectivity between private networksVSAvoidsecurity strength
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a tunnel endpoint device as an intermediary component that establishes encrypted tunnel connections between private networks. This mediator enables communication between different private networks while maintaining security by keeping traffic isolated within encrypted tunnels rather than exposing it to the public network, thus resolving the contradiction between achieving connectivity and maintaining security strength.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If IP address translation is performed via public network, then communication between private networks is enabled, but latency increases

Engineering Contradiction:
Improvecommunication capability between private networksVSAvoidcommunication latency
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent extracts the IP address translation function from the public network path and relocates it to the tunnel endpoint devices within the private networks. By taking out this translation operation from the public network route, the patent eliminates the additional latency that would be introduced by public network routing, thereby enabling communication between private networks while maintaining low latency through direct tunnel connections.

Inventive Principle:
Principle #2Taking out (Extraction)

3Adaptability or versatility

If public network is used for inter-private network communication, then network connectivity is achieved, but network complexity increases

Engineering Contradiction:
Improveinter-network communication capabilityVSAvoidnetwork complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the network communication path by creating separate encrypted tunnel connections between private networks rather than using a shared public network path. This segmentation isolates traffic flows and simplifies network management by allowing each tunnel to be configured and managed independently, thereby reducing overall network complexity while maintaining the ability to communicate between different private networks.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP4686308A1Terminal device, information processing device, and communication method
Publication Date: 2026.01.28 SONY GROUP CORP
  • EP4686308A1 patent drawingFigure 1
  • EP4686308A1 patent drawingFigure 2
  • EP4686308A1 patent drawingFigure 3

AI summary

A terminal device of the present disclosure is provided with a communication unit and a control unit. The communication unit communicates with a base station arranged in a first private network. The control unit acquires connection request information with another terminal device connected to a second private network different from the first private network. The control unit requires that an information processing device arranged in the first private network to perform connection processing for connecting to another terminal device on the basis of connection request information. The information processing device performs the connection processing for connecting to the second private network on the basis of the request.