Secure Private Network Navigation via Portal Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing secure private networks face challenges in efficiently and transparently authenticating users across multiple network sites while maintaining security and privacy.

Innovation Solution

A method and system for secure navigation between private sites on a secure network, involving the assignment of routing codes, use of a portal site for secure connection transfer, and validation of transfer tokens to ensure secure access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If each network site independently authenticates users before authorizing use, then security and privacy are maintained, but user navigation between sites becomes complex and non-transparent

Engineering Contradiction:
Improveauthentication securityVSAvoiduser navigation transparency
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a portal site as an intermediary component that mediates between individual network sites and the user. The portal handles authentication once and maintains session state, allowing users to navigate between multiple network sites without repeating the authentication process at each site. This resolves the contradiction by maintaining security through centralized authentication while enabling transparent navigation through the portal's session management.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If routing codes and transfer tokens are implemented for secure connection transfer, then authentication efficiency improves, but system complexity increases

Engineering Contradiction:
Improveauthentication efficiencyVSAvoidnavigation system complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The portal site serves multiple functions: it acts as a routing hub for connection transfers, maintains user session state across different network sites, validates transfer tokens, and manages authentication. By consolidating these multiple functions into a single universal component, the system achieves efficient authentication without proportionally increasing overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If unique URLs with encoded values and transfer tokens are used, then access security is enhanced, but the complexity of URL processing and validation increases

Engineering Contradiction:
Improveaccess securityVSAvoidURL processing complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The portal site serves as an intermediary that handles the complexity of URL encoding, decoding, and transfer token validation. Individual network sites do not need to implement complex URL processing logic; they simply need to generate routing codes and trust the portal's validation. This distributes complexity appropriately, maintaining security while reducing the processing burden on individual sites.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12309153B2Secure private network navigation
Publication Date: 2025.05.20 GOODWELL TECHNOLOGIES INC
  • US12309153B2 patent drawing
  • US12309153B2 patent drawing
  • US12309153B2 patent drawing

AI summary

A secure network navigation system includes a secure network portal and a site-to-site authenticator. The secure network portal includes a network authenticator to authenticate a user's browser connection to access content at a first site on the secure network. The site-to-site authenticator creates an object that authenticates the user's browser connection, creates a transfer URL by which the user is to access content on a second site of the plural network sites on the secure network. The transfer URL includes values exported from the created object and a unique transfer token. The site-to-site authenticator then transfers the user's browser connection to an address corresponding to the transfer URL. The secure navigation from the first site to the other site on the secure network is transparent to the user.