Proactive VPN Switching Controller for Seamless Network Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Employees face cumbersome and time-consuming processes when switching between direct access and VPN connections to a secure network domain, particularly when transitioning from a wired to a wireless connection.

Innovation Solution

A system and method that monitors existing connections and automatically switches between direct access and VPN configurations to maintain uninterrupted access to the secure network domain, employing a controller to detect connection terminations and initiate appropriate network configurations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If manual switching between direct access and VPN connections is implemented, then network security is maintained, but user convenience and time efficiency deteriorate

Engineering Contradiction:
ImproveUser convenience in switching connectionsVSAvoidTime required for connection switching
Core Design Contradiction:
Ease of operationVSLoss of time

Solution Approach 1:

The system pre-configures both direct access and VPN connection parameters before switching is needed. When a connection termination is detected, the alternative connection is already prepared and can be activated immediately without requiring full re-establishment procedures, thus reducing switching time while maintaining security protocols

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system automatically monitors connection status and performs switching operations without user intervention. The controller detects when a connection terminates and autonomously initiates the alternative connection, eliminating manual login processes and providing seamless transition between direct access and VPN modes

Inventive Principle:
Principle #25Self-service

2Ease of operation

If automatic connection switching is implemented, then user convenience is improved, but system complexity increases

Engineering Contradiction:
ImproveAutomatic connection switching capabilityVSAvoidSystem complexity for monitoring and switching
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system combines connection monitoring, termination detection, and switching initiation functions into a single integrated controller. This consolidation manages to reduce overall system complexity compared to having separate independent systems for each function, while still providing automatic switching capability

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The controller is designed to handle multiple connection types (direct access and VPN) and perform multiple functions (monitoring, detection, switching) through a single multi-functional component. This universal approach reduces the need for separate specialized components for each connection type or function

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9769136B2System and method for providing proactive VPN establishment
Publication Date: 2017.09.19 F5 NETWORKS INC
  • US9769136B2 patent drawing
  • US9769136B2 patent drawing
  • US9769136B2 patent drawing

AI summary

A system and method which includes monitoring an existing first connection to a secured network domain. A first network configuration is employed to access the secured network domain via the first connection. An available second connection to the network domain is detected, whereby the system and method automatically switch to the second connection to access the secured network domain upon detecting a termination with the first connection. Access to the secured network domain, via the second connection, is established by employing a second network configuration. In an aspect, the first connection is by cable and the first network configuration is associated with direct access to the secured network domain. In an aspect, the second connection is a wired or wireless signal and the second network configuration is associated with a Virtual Private Network (VPN) connection.