Network Proxy System for Selective Corporate Data Deletion

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current data security solutions for corporate data on personal devices are inefficient and costly due to the need for software agents on diverse devices, and existing remote wiping methods risk erasing both corporate and personal data, leading to data loss and management challenges.

Innovation Solution

A network proxy system that remotely and selectively deletes corporate data from mobile devices without installing software agents, using a null account mechanism to synchronize and erase data while preserving personal information, and employing proxy routing, analytics, and encryption to secure data access and transmission.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If software agents are installed on each personal computing device to manage corporate data, then data security control is improved, but device complexity and management cost increase significantly

Engineering Contradiction:
Improvedata security controlVSAvoidmanagement complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a network proxy server as an intermediary between corporate data servers and personal computing devices. The proxy server handles authentication, data access control, and remote data deletion without requiring software agents on end-user devices. This intermediary approach maintains security control while eliminating the complexity of device-by-device agent management.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If remote wiping is performed to delete corporate data on lost or employee-leaving devices, then data security is improved, but personal data may be accidentally deleted causing data loss

Engineering Contradiction:
Improvedata securityVSAvoidpersonal data loss
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent segments corporate data and personal data by implementing separate authentication mechanisms. Corporate data access requires corporate credentials verified by the network proxy, while personal data remains inaccessible to the corporate system. This segmentation allows selective deletion of only corporate data during remote wiping operations, preserving personal information.

Inventive Principle:
Principle #1Segmentation

3Reliability

If software agents are deployed across diverse devices running different software systems, then data protection capability is improved, but installation and management difficulty increase

Engineering Contradiction:
Improvedata protection capabilityVSAvoidinstallation ease
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The network proxy server acts as a universal intermediary that communicates with personal computing devices through standard network protocols, eliminating the need for device-specific software agents. The proxy handles all data protection functions centrally, making the system easy to deploy across diverse devices without installation complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

4Reliability

If centralized control mechanisms are implemented to manage corporate data on personal devices, then data security management is improved, but system complexity and cost increase

Engineering Contradiction:
Improvedata security managementVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements centralized control through a network proxy server that mediates all interactions between corporate data servers and personal computing devices. The proxy consolidates authentication, authorization, and data deletion functions in a single centralized system, simplifying management while maintaining security control without requiring complex distributed agent infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11991162B2Secure application access system
Publication Date: 2024.05.21 BITGLASS LLC
  • US11991162B2 patent drawing
  • US11991162B2 patent drawing
  • US11991162B2 patent drawing

AI summary

A proxy server receives a synchronization request from an application program resident on a user device. The proxy server determines that the user device requires removal of application program data and synchronizes the application program resident on the user device with a null account that is associated with application program.