Protocol Setting System for Dynamic Security Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In communication networks where both secure and unsecured protocols coexist, existing systems face difficulties in ensuring secure communication due to the potential use of legacy protocols, which can compromise security even when secure protocols are enabled.

Innovation Solution

An information processing apparatus equipped with a storage device containing a security list and a protocol setting system that detects and invalidates unsecured communication protocols, ensuring secure communication by managing protocol validity and security levels.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple communication protocols are supported for versatility, then adaptability is improved, but security is worsened due to legacy protocols creating security holes

Engineering Contradiction:
Improveprotocol compatibilityVSAvoidcommunication security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system dynamically changes the validity parameter of communication protocols based on security levels. When a secure protocol is validated, the system automatically invalidates protocols with lower security levels, transforming the static protocol support into a dynamic security-aware configuration

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The protocol setting system continuously monitors the validity status of communication protocols and provides feedback to automatically adjust the validity of other protocols. When secure protocol validation status changes, the system responds by adjusting legacy protocol validity accordingly

Inventive Principle:
Principle #23Feedback

2Reliability

If secure communication protocols are enabled, then security is improved, but legacy protocols continue to operate and create security vulnerabilities

Engineering Contradiction:
Improvecommunication securityVSAvoidsecurity holes from legacy protocols
Core Design Contradiction:
ReliabilityVSObject-generated harmful factors

Solution Approach 1:

The system preemptively invalidates legacy protocols before they can be used to create security vulnerabilities. By automatically detecting when secure protocols are validated and proactively disabling incompatible legacy protocols, the system prevents potential security holes rather than reacting to them

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The system extracts and removes legacy protocols from the active communication protocol set when secure protocols are validated. This separation ensures that only protocols meeting the required security level remain operational, eliminating the coexistence of secure and insecure protocols

Inventive Principle:
Principle #2Taking out (Extraction)

3Extent of automation

If automatic protocol validation is implemented, then security management is improved, but system complexity increases

Engineering Contradiction:
Improveprotocol management automationVSAvoidprotocol setting system complexity
Core Design Contradiction:
Extent of automationVSDevice complexity

Solution Approach 1:

The system performs preliminary actions by pre-defining security levels for different communication protocols and establishing validation rules in advance. This preparation allows the automatic protocol setting to function with simpler runtime logic, as the decision-making framework is already established

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS7958551B2Information processing apparatus and a computer usable medium therefor
Publication Date: 2011.06.07 BROTHER KOGYO KK
  • US7958551B2 patent drawing
  • US7958551B2 patent drawing
  • US7958551B2 patent drawing

AI summary

An information processing apparatus, including a storage device a security list, wherein a security level of each of communication protocols installed in a network is listed, a status management list, which describes validity of each communication protocol, and a protocol setting system, which sets validity of each communication protocol, is provided. The protocol setting system includes a status detecting unit, which refers to the status management list and detects validity of each communication protocol, an unsecured protocol detecting unit, which refers to the security list when at least one of the communication protocols is validated and detects a communication protocol with a security level being lower than the validated communication protocol, and a status updating unit, which invalidates the communication protocol detected by the unsecured protocol detecting unit to have the lower security level and detected to be valid by the status detecting unit.