Secure KVM Switch for Remote Console Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Workers handling classified data faced challenges in securely accessing and managing multiple hosts remotely due to security restrictions, particularly during the shift to remote work prompted by the COVID-19 pandemic.

Innovation Solution

A secure computing system and method that utilizes a secure peripheral sharing device, such as a secure KVM switch, to connect a console and multiple hosts, enabling remote console operation through a remote console subsystem. This system ensures secure switching between hosts and transfers video, keyboard, and mouse data over encrypted communication protocols.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If workers use remote terminal software to access company resources from home, then ease of operation is improved, but data security deteriorates due to inability to securely access classified hosts

Engineering Contradiction:
Improveremote work capabilityVSAvoiddata security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a secure peripheral sharing device (KVM switch) as an intermediary between the remote console and the hosts. This intermediary device establishes a secure connection that allows remote access while maintaining security controls, solving the contradiction by enabling remote work without compromising data security through improper access mechanisms

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system segments the console functionality into a local console and a remote console subsystem. The remote console subsystem can be activated independently to provide secure remote access to classified hosts, allowing workers to access resources from home while maintaining security through segmented access controls

Inventive Principle:
Principle #1Segmentation

2Productivity

If workers have access to multiple hosts in a secure environment, then productivity is improved, but device complexity increases due to need for secure peripheral sharing

Engineering Contradiction:
Improvehost management efficiencyVSAvoidsecure peripheral sharing device
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The secure peripheral sharing device is designed as a universal solution that can connect multiple hosts to both local and remote consoles. This multi-functional device enables workers to efficiently manage multiple hosts from a single interface, improving productivity while the device itself handles the complexity of secure connections and host switching

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent merges the functionality of multiple secure connections and host switching operations into a single integrated peripheral sharing device. By combining these functions in one device, the system simplifies the overall architecture and improves productivity by providing unified access to multiple hosts without requiring separate secure access mechanisms for each host

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If a secure KVM switch is used to connect console to multiple hosts, then data security is improved, but ease of operation deteriorates due to manual switching requirements

Engineering Contradiction:
Improvedata securityVSAvoidhost switching operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system implements automatic feedback mechanisms where the secure peripheral sharing device automatically switches between hosts based on connection status and user input. This feedback-driven automation maintains security by ensuring only authenticated users can access hosts while eliminating manual switching complexity, allowing workers to seamlessly switch between multiple hosts

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS20250045210A1Method and system for a remote console for secure KVM switch
Publication Date: 2025.02.06 HIGH SEC LABS LTD
  • US20250045210A1 patent drawing
  • US20250045210A1 patent drawing
  • US20250045210A1 patent drawing

AI summary

A computing system, a secure peripheral sharing device, a remote console subsystem and a method for operating a remote console over a secure peripheral sharing device is disclosed. The computing system comprising a plurality of hosts; a console comprising at least a keyboard, a mouse and a display; a secure peripheral sharing device; and a remote console subsystem comprising at least another keyboard, another mouse and another display. The secure peripheral sharing device is configured to be connected to the console and the plurality of hosts, the peripheral sharing device is configured to be coupled to the remote console subsystem that is located away from the peripheral sharing device, and the secure peripheral sharing device is configured to connect or couple between either the console or the remote console subsystem and an active host of the plurality of hosts. The peripheral sharing device is configured to switch any one of the plurality of hosts to become the active host. The method receiving requests for open new remote console sessions and upon such request open a remote console session in both the side of the secure peripheral sharing device and the remote console subsystem, and as long as the remote session is active the method performs continuously: receiving video stream from the active host and transferring the video stream to the second display; receiving a keyboard and mouse data from the second keyboard and the second mouse and transferring the keyboard and mouse data to the active host; and upon receiving active host switching commands from a user, switching the active host. The method is receiving requests for close remote console sessions and upon such request close the remote console session and resume working of active host with the console.