Routing System Using Non-Standard Instruction Set for Network Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current network security methods, such as firewalls and proxy servers, are vulnerable to attacks via public networks due to their reliance on standardized communication protocols, particularly susceptible to SQL injection attacks, necessitating an additional layer of security to protect sensitive information in secure networks and databases.

Innovation Solution

A secure routing system is introduced that operates with a limited, non-standard instruction set not based on structured programming languages, using lookup tables or picklists, and is isolated from public networks through non-electrical coupling, with authentication processes involving multiple channels and advanced biometric methods to prevent unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If standardized networking protocols are used for communication, then ease of operation and compatibility are improved, but security and vulnerability to attacks deteriorate

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a routing system as an intermediary between the public network and secure network. This routing system uses a non-standard instruction set and lookup tables to translate and filter communications, acting as a security mediator that allows standard protocols to operate on the public network while blocking malicious commands from reaching the secure network. The routing system ignores unrecognized commands and only executes authorized operations, thus resolving the contradiction by maintaining ease of operation through standard protocols while ensuring security through the intermediary's filtering mechanism.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If firewalls and proxy servers are used for network security, then protection capability is improved, but vulnerability to SQL injection and network attacks remains due to reliance on standard protocols

Engineering Contradiction:
Improveprotection capabilityVSAvoidvulnerability to SQL injection
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent fundamentally changes the parameter of the instruction set from standard programming languages to a custom, limited set of commands stored in lookup tables. This parameter change ensures that only pre-approved, safe operations can be executed, completely eliminating the vulnerability to SQL injection attacks that plagues standard protocol-based firewalls and proxy servers. The routing system's instruction set is deliberately designed to be immune to injection attacks by not accepting arbitrary user input for command execution.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If an additional layer of security is introduced over standard protocols, then security is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the security function from the complex standard protocol stack and concentrates it into a single routing system component. By taking out the security layer as a separate, dedicated routing function with a simplified lookup table mechanism, the system achieves strong security without the complexity of modifying entire protocol stacks. The routing system is a discrete unit that handles security through a simple instruction-set-based approach rather than complex protocol processing.

Inventive Principle:
Principle #2Taking out (Extraction)

4Reliability

If non-electrical coupling and non-standard instruction sets are used, then security against network attacks is improved, but ease of operation and integration deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The routing system serves as an intermediary layer that translates standard network protocols into its own non-standard instruction set for internal processing. This mediator approach allows the secure network to use non-electrical coupling and custom instructions for security, while the public network continues to use standard protocols for ease of operation. The routing system handles the translation and integration between these different operational modes, resolving the contradiction by maintaining non-electrical coupling for security while preserving standard protocol compatibility at the interface level.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10524124B2Routing systems and methods
Publication Date: 2019.12.31 VM ROBOT
  • US10524124B2 patent drawing
  • US10524124B2 patent drawing
  • US10524124B2 patent drawing

AI summary

Example routing systems and methods are described. In one implementation, a first set of routing systems is interfaced with a network connection via a network interface. A second set of routing systems interfaced with a secure system is configured to receive information from the first set of routing systems via a first unidirectional data channel. In some embodiments, the first set of routing systems is configured to receive information from the second set of routing systems via a second unidirectional data channel. The secure system is not visible from the network interface.