Security Protocol Option Detection via Model Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Modern security protocols like SAML SSO have numerous configuration options that can impact security, and vendors may overlook security implications, especially in complex heterogeneous landscapes with third-party implementations, making it difficult to ensure security properties are met.

Innovation Solution

An apparatus and method that includes an option detector to analyze the configuration of security protocol entities by generating test cases based on a basic model and set of options, detecting configured options, and updating the model to check if expected security properties are satisfied, allowing for deeper security analysis and risk estimation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If security protocols implement numerous configuration options to meet diverse application requirements, then adaptability and versatility are improved, but device complexity and difficulty of detecting security properties increase

Engineering Contradiction:
Improveconfiguration optionsVSAvoidprotocol complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the security protocol analysis by separating the basic model from configuration options. The model checker is divided into components that independently verify the basic model structure and then evaluate each configuration option separately, reducing the complexity of analyzing the entire protocol at once.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies preliminary action by first establishing a verified basic model of the security protocol before introducing configuration options. This preliminary verification ensures that the core protocol structure meets security properties before additional configurations are analyzed, simplifying the overall verification process.

Inventive Principle:
Principle #10Preliminary action

2Adaptability or versatility

If vendors configure security options to meet application scenario requirements, then adaptability is improved, but security reliability may deteriorate due to overlooked security implications

Engineering Contradiction:
Improveapplication scenario adaptationVSAvoidsecurity properties
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements feedback by using the model checker to automatically verify security properties after configuration options are applied. The system provides feedback on whether security properties are maintained or violated, allowing vendors to identify and correct security issues in their configurations.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The patent applies preliminary anti-action by proactively checking for security property violations before deployment. The model checker anticipates potential security issues by verifying properties against the configured protocol, preventing security problems rather than detecting them after the fact.

Inventive Principle:
Principle #9Preliminary anti-action

3Ease of operation

If third-party implementations are used in heterogeneous landscapes, then ease of operation and adaptability are improved, but measurement precision of security properties deteriorates due to difficult access to implementation details

Engineering Contradiction:
Improvethird-party integrationVSAvoidsecurity analysis accuracy
Core Design Contradiction:
Ease of operationVSMeasurement precision

Solution Approach 1:

The patent introduces an intermediary approach by using a standardized basic model that represents the essential security protocol structure. This basic model serves as an intermediary between the vendor's implementation details and the security analysis, allowing verification without requiring access to proprietary implementation specifics.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent applies copying by creating an abstract basic model that copies the essential structure and security properties of the actual protocol implementation. This simplified model can be analyzed for security properties without needing to examine the complex third-party implementation details, maintaining measurement precision while preserving ease of operation.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS9098693B2Options detection in security protocols
Publication Date: 2015.08.04 SAP SE
  • US9098693B2 patent drawing
  • US9098693B2 patent drawing
  • US9098693B2 patent drawing

AI summary

The embodiments provide an apparatus for detecting configuration options including an option detector configured to receive a basic model of a security protocol and a set of options, where each option is a variation of the basic model. The option detector is configured to detect which options are configured in an implementation of at least one at least one security protocol entity based on the basic model and the set of options.