Single Login Authentication for Multi-IP Network Resources

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face reduced productivity due to the need for multiple login authentications when accessing various resources on a computer network, each requiring a separate authentication process, especially when using different internet protocol addresses.

Innovation Solution

A Single Login Authentication (SLA) method that allows a client device to access multiple resources using a single set of login information, where the system transmits a list of IP addresses to the client, processes authentication requests concurrently, and provides a login complete message to authorize access to the resources without requiring separate authentications for each IP address.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a client device uses multiple IP addresses to access different resources, then the client can communicate with diverse network resources, but the user must perform multiple separate authentication processes for each IP address

Engineering Contradiction:
Improveability to access multiple resourcesVSAvoidauthentication process
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent combines multiple authentication processes into a single unified authentication flow. The system merges authentication requests from multiple IP addresses into one concurrent authentication process, where a single set of credentials authenticates the user across all associated IP addresses simultaneously, eliminating the need for separate authentications for each resource.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The authentication system is designed to handle multiple IP addresses and resources universally through a single authentication mechanism. The gateway device recognizes that a single user may access multiple resources via different IP addresses and creates a unified authentication session that validates credentials once and grants access to all associated resources regardless of which IP address is used.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If a user accesses multiple resources requiring independent authentication, then security is maintained for each resource, but user productivity is significantly reduced

Engineering Contradiction:
Improvesecurity authenticationVSAvoiduser work efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system performs preliminary authentication by validating the user's credentials once at the beginning of the session. The gateway device pre-establishes an authenticated session that covers all IP addresses and resources the user may access, so that subsequent resource accesses do not require repeated authentication, thereby maintaining security while improving productivity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The authentication session maintains continuity across multiple resource accesses. Once authenticated, the user's session remains valid and continuous across different IP addresses and resources without interruption or re-authentication requirements, allowing the useful action of accessing resources to continue uninterrupted throughout the work session.

Inventive Principle:
Principle #20Continuity of useful action

3Reliability

If separate authentication is required for each IP address, then each resource is securely protected, but the user must stop working and engage in independent authentications

Engineering Contradiction:
Improveresource securityVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent merges multiple separate authentication transactions into a single combined authentication event. The gateway device consolidates authentication requests from multiple IP addresses and processes them concurrently using one set of credentials, eliminating the time loss associated with sequential authentications while maintaining security through unified validation.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The gateway device acts as an intermediary between the client device and multiple resources. It receives a single authentication request, validates the credentials once, and then mediates access to multiple resources across different IP addresses based on that single validation, thereby reducing authentication time while preserving security through centralized control.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9973490B2Single login authentication for users with multiple IPV4/IPV6 addresses
Publication Date: 2018.05.15 SONICWALL US HOLDINGS INC
  • US9973490B2 patent drawing
  • US9973490B2 patent drawing
  • US9973490B2 patent drawing

AI summary

Disclosed in the authentication and authorization of a client device to access a plurality of resources, requiring a user of a client device to enter only one set of login information. Authentication and authorization of a client device to access a plurality of resources after an initial set of login information is received by a networked computing environment. After the initial set of login information is received, a series of steps are performed that may be entirely transparent to the user of the client device.