Remote Virtual Machine Isolation for Secure Web Browsing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Internet software configured for remote access is notoriously insecure, and existing solutions fail to maximize user satisfaction while centralizing damage on a server, often limiting software configurations and user customization.

Innovation Solution

The method involves opening a virtual machine on a remote computer from a user computer, sending user preferences to the virtual machine, and managing requests for Internet access, allowing user preferences to be received upon shutdown, thereby isolating potential threats and maintaining user customization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If internet software is run remotely on a server to centralize damage and improve security, then browsing security is improved, but user customization capability deteriorates

Engineering Contradiction:
Improvebrowsing securityVSAvoiduser customization capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The system segments the browsing environment into a virtual machine instance that can be independently configured and isolated. Each user session can have its own virtual machine with customized settings, while the underlying infrastructure remains centralized on the server. This allows security to be maintained through centralization while customization is enabled through virtualization segmentation.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The virtual machine acts as an intermediary layer between the user and the remote server. It provides a customizable interface and environment for the user while the actual internet software runs on the secured remote server. This intermediary enables both security (through remote execution) and customization (through virtual machine configuration).

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If partitions are created on a user workstation to isolate software, then security is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidworkstation partitioning complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

Instead of partitioning the user's local workstation, the system introduces a virtual machine as an intermediary that runs on the remote server. This virtual machine provides the isolated environment needed for security without requiring any physical or logical partitions on the user's local machine, thereby avoiding increased device complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system creates a virtual copy of a computing environment (the virtual machine) on the remote server rather than modifying the user's local workstation. This copy provides the necessary isolation and security features without adding complexity to the user's existing hardware or software architecture.

Inventive Principle:
Principle #26Copying

3Stability of the object's composition

If multiple software configurations are limited on a server, then system stability is improved, but adaptability deteriorates

Engineering Contradiction:
Improvesystem stabilityVSAvoidsoftware configuration variety
Core Design Contradiction:
Stability of the object's compositionVSAdaptability or versatility

Solution Approach 1:

The server segments multiple software configurations into separate virtual machine instances. Each virtual machine can run different software configurations independently, allowing the server to maintain stability by isolating each configuration while simultaneously providing adaptability by supporting multiple configurations across different instances.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system dynamically creates and manages virtual machine instances on the server. Rather than having static, limited software configurations, the server can dynamically instantiate new virtual machines with different configurations as needed, maintaining system stability through controlled isolation while providing high adaptability through dynamic configuration creation.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS8112748B2Method for operating software configured for internet access on a remote computer
Publication Date: 2012.02.07 DAEDALUS BLUE LLC
  • US8112748B2 patent drawing
  • US8112748B2 patent drawing
  • US8112748B2 patent drawing

AI summary

A method of operating software configured for Internet access on a remote computer includes opening a virtual machine on a remote computer from a user computer and sending user preferences from the user computer to the virtual machine. The method includes sending a request to operate the software configured for Internet access, and receiving user preferences from the virtual machine upon shutdown. A method of operating software configured for Internet access remote from a user computer includes opening a virtual machine on a remote computer and receiving user preferences at the virtual machine from the user computer. The method further includes receiving a request from the user computer at the remote computer and requesting at least one web page from the virtual machine and receiving a close command at the virtual machine from the user computer and sending the user preferences to the user computer in response to the shutdown.