Remote Checksum Processing for Network Content Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing content detection systems in computer networks are vulnerable to virus attacks and inappropriate content due to the need for constant updates of virus signatures, blocked URL lists, and spammer lists, which consume significant resources and degrade system performance.

Innovation Solution

A content detection system that offloads the processing of checksum values from a receiving station to a separate processing station, allowing for real-time updates and reduced resource consumption on the receiving station, enabling efficient detection of malicious content without the need for local content detection data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If content detection software is installed on local computers to detect viruses and inappropriate content, then detection capability is improved, but system resources are consumed and performance is degraded

Engineering Contradiction:
Improvedetection capabilityVSAvoidsystem performance
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent extracts the content detection function from the local receiving station and relocates it to a remote processing station. The receiving station only needs to send electronic data to the processing station, which performs the actual detection using virus signatures, blocked URL lists, and spammer lists. This extraction eliminates the resource consumption and performance degradation on local computers while maintaining detection capability through the remote station.

Inventive Principle:
Principle #2Taking out (Extraction)

2Measurement precision

If virus signatures, blocked URL lists, and spammer lists are constantly updated on local computers, then detection accuracy is improved, but resource consumption and update time are increased

Engineering Contradiction:
Improvedetection accuracyVSAvoidupdate time
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The patent introduces a processing station as an intermediary between the content sources and the receiving stations. This processing station maintains the virus signatures, blocked URL lists, and spammer lists, and distributes updates to multiple receiving stations simultaneously. The intermediary approach allows detection accuracy to be maintained across all stations while significantly reducing the update time and resource consumption for each individual station.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Speed

If content detection data is stored locally on receiving stations, then detection speed is improved, but device complexity and storage requirements are increased

Engineering Contradiction:
Improvedetection speedVSAvoidstorage requirements
Core Design Contradiction:
SpeedVSDevice complexity

Solution Approach 1:

The processing station serves multiple receiving stations simultaneously, providing a universal detection service. Instead of each receiving station maintaining its own complete set of detection data, the single processing station stores and provides virus signatures, blocked URL lists, and spammer lists to all connected receiving stations. This multi-functional approach reduces overall storage requirements and device complexity while maintaining detection speed through efficient data distribution.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8769663B2Systems and methods for detecting undesirable network traffic content
Publication Date: 2014.07.01 SAMSUNG ELECTRONICS CO LTD
  • US8769663B2 patent drawing
  • US8769663B2 patent drawing
  • US8769663B2 patent drawing

AI summary

A method of detecting a content desired to be detected includes receiving electronic data at a first host, determining a checksum value using the received electronic data, sending the checksum value to a processing station, the processing station being a second host that is different from the first host, and receiving a result from the processing station, the result indicating whether the electronic data is associated with a content desired to be detected. A method of detecting a content desired to be detected includes receiving electronic data at a receiving station, and determining whether the received electronic data is associated with a content desired to be detected, wherein the receiving station does not include content detection data for identifying the content desired to be detected.