Security Synchronization Services Centralized Role Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in setting up and managing security across multiple applications with disparate security infrastructures, requiring a unified administration experience that is currently unfeasible due to the need for manual setup and modification in each application.

Innovation Solution

A method and apparatus that synchronizes role membership across multiple applications, allowing administrators to manage security from a single interface, with the ability to add or remove users from multiple roles simultaneously, and supports new applications through plug-and-play integration via standardized interfaces.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If administrators manually set up and modify security in every application for every user, then each application's security infrastructure can be individually configured, but the administrative burden and time consumption increase significantly

Engineering Contradiction:
Improvesecurity configuration accuracyVSAvoidadministrative time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent merges multiple application security configurations into a single centralized security infrastructure. The security system combines user authentication and authorization across disparate applications through a unified framework, allowing administrators to manage security settings in one location rather than manually configuring each application separately.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The security infrastructure is designed as a universal system that can interface with multiple different applications through standardized protocols. The system performs multiple functions including authentication, authorization, and security policy enforcement across diverse application types, eliminating the need for application-specific security administration.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Ease of operation

If all applications are forced to adopt a common security infrastructure, then security management becomes centralized and efficient, but existing mature applications with established security infrastructures cannot be integrated

Engineering Contradiction:
Improvesecurity administration easeVSAvoidapplication compatibility
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent introduces an intermediary security framework that acts as a bridge between existing mature applications and the centralized security infrastructure. This intermediary layer translates between application-specific security protocols and the universal security framework, allowing legacy applications to integrate without modification while still benefiting from centralized security management.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The security infrastructure is designed to be dynamic and adaptable, automatically detecting and interfacing with different application security models. The system can dynamically adjust its behavior based on the specific application being accessed, maintaining compatibility with established applications while enforcing centralized security policies.

Inventive Principle:
Principle #15Dynamics

3Adaptability or versatility

If each application maintains its own security infrastructure, then application independence is preserved, but users must set up security credentials in multiple applications separately

Engineering Contradiction:
Improveapplication independenceVSAvoiduser setup ease
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent merges user credential management across multiple independent applications into a unified authentication system. Users establish security credentials once in the centralized infrastructure, and the system automatically propagates and manages these credentials across all connected applications, preserving application independence while simplifying user setup.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS8032935B2Security synchronization services
Publication Date: 2011.10.04 MICROSOFT TECHNOLOGY LICENSING LLC
  • US8032935B2 patent drawing
  • US8032935B2 patent drawing
  • US8032935B2 patent drawing

AI summary

As a result of the inability to assign security in multiple applications at one time, there is an opportunity to tie the disparate security systems together. Security synchronization services is a method and apparatus that uses roles to provide a common administration experience for all applications that use it and fits better for new applications.