Automated Security Parameter Renewal System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional approaches fail to efficiently manage and renew security parameters, leading to system downtime and financial losses due to expired or compromised security settings, particularly in integrated solutions like cloud services, where manual intervention is time-consuming and inefficient.

Innovation Solution

An automated system for security parameter renewal that includes a method and computer program product for determining if security parameters satisfy renewal conditions, automatically updating them, and employing a policy-based mechanism to reduce downtime and enhance system resiliency by generating and updating security parameters across multiple components without human intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual security parameter management is used, then system security can be maintained, but system downtime increases and productivity decreases

Engineering Contradiction:
Improvesystem securityVSAvoidsystem uptime
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system implements automatic security parameter management where the security manager autonomously monitors, evaluates, and renews security parameters without human intervention. The system self-services by automatically detecting expiration dates, evaluating renewal conditions based on policies, and executing renewals when conditions are met, thereby eliminating manual intervention and preventing system downtime.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system performs preliminary actions by continuously monitoring security parameters and proactively renewing them before expiration based on predetermined policies. The automatic renewal process is triggered in advance when renewal conditions are satisfied, preventing security parameter expiration and ensuring continuous system operation without waiting for manual intervention after expiration occurs.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If frequent security parameter updates are performed, then system security is improved, but system complexity increases

Engineering Contradiction:
Improvesystem securityVSAvoidmanagement complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The security manager acts as an intermediary between security parameters and the system, centralizing the management of all security parameters. It automatically monitors expiration dates, evaluates renewal conditions based on policies, and coordinates renewals across multiple subcomponents. This intermediary approach simplifies management complexity by consolidating what would otherwise be分散 manual tasks into a single automated system.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system automatically changes security parameter values (such as passwords, certificates, or keys) based on predetermined policies and renewal conditions. The security manager evaluates whether renewal conditions are satisfied and executes parameter changes when appropriate, enabling frequent security updates without requiring manual intervention for each change, thus managing complexity through automated parameter transformation.

Inventive Principle:
Principle #35Parameter changes

3Productivity

If automatic renewal is implemented, then productivity is improved, but system complexity increases

Engineering Contradiction:
Improverenewal efficiencyVSAvoidautomation complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The security manager implements self-service automation by autonomously monitoring security parameter expiration dates, evaluating renewal conditions based on policies, and executing renewals without human intervention. The system services itself by automatically managing the entire renewal process, which improves productivity by eliminating manual tasks while managing automation complexity through a centralized management approach.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements feedback mechanisms where the security manager continuously monitors security parameter status, evaluates renewal conditions based on policies, and adjusts renewal execution accordingly. The automatic renewal process incorporates feedback loops that track whether renewal conditions are satisfied and whether renewals were successful, enabling intelligent automation that adapts to system state while maintaining productivity improvements.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10243936B2Automatic security parameter management and renewal
Publication Date: 2019.03.26 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US10243936B2 patent drawing
  • US10243936B2 patent drawing
  • US10243936B2 patent drawing

AI summary

A method of automatic security parameter renewal includes determining if the security parameter satisfies a renewal condition, the determining including automatically detecting a time when a security parameter is going to expire, and automatically updating the security parameter when the renewal condition is satisfied. The automatically updating the security parameter includes modifying a certificate upon receipt of a new certificate.