Terminal Server Script Control for Secure Remote GUI

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current solutions for monitoring and controlling computers in business environments require a physical user to be present, leading to security issues and accessibility limitations, as screen locking prevents GUI actions and data exposure risks when connected devices are monitored.

Innovation Solution

A method utilizing a terminal server and remote desktop protocol (RDP) to establish a script-controlled execution of applications via a software robot, allowing hidden GUI operations without visible user sessions, enabling secure and remote access to monitored computers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a physical user is logged in to control the graphical user interface, then GUI actions can be executed, but security risks increase due to data exposure and unauthorized access

Engineering Contradiction:
ImproveGUI control capabilityVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a terminal server as an intermediary between the software robot and the graphical user interface. The terminal server runs a terminal service that allows remote desktop connections, enabling the software robot to control the GUI through a remote session without requiring a physical user to be logged in. This mediator layer allows automated GUI manipulation while maintaining security by keeping the actual user session hidden and inaccessible to unauthorized users.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If the computer is made accessible for remote control, then accessibility improves, but control security deteriorates

Engineering Contradiction:
Improveremote accessibilityVSAvoidcontrol takeover risk
Core Design Contradiction:
Ease of operationVSObject-generated harmful factors

Solution Approach 1:

The terminal server acts as a secure intermediary that manages remote access connections. It creates isolated terminal sessions that can be controlled by software robots without exposing the underlying system to unauthorized control. The terminal server architecture allows multiple concurrent remote sessions while maintaining security boundaries, preventing any single remote connection from taking over full system control.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system segments the control architecture into distinct layers: the terminal server layer that manages connections, the terminal service layer that handles remote desktop protocols, and the application layer where software robots execute workflows. This segmentation isolates control functions and prevents unauthorized access from propagating through the entire system.

Inventive Principle:
Principle #1Segmentation

3Object-affected harmful factors

If virtual machines are used to isolate access, then physical security improves, but administrative complexity increases

Engineering Contradiction:
Improvephysical access securityVSAvoidvirtualization management
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The terminal server provides a universal access mechanism that works across different operating systems and hardware configurations without requiring virtualization. It implements a standardized remote desktop protocol that enables software robots to control graphical interfaces uniformly, eliminating the need for complex virtual machine setups while maintaining security and accessibility.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP2642395B1Method and apparatus for executing work flow scripts
Publication Date: 2018.12.19 SERVICETRACE GMBH
  • EP2642395B1 patent drawingFigure 1
  • EP2642395B1 patent drawingFigure 2

AI summary

The method involves installing a terminal serve on a computer, where a terminal client is started on the computer essentially by a program component. The terminal client sets up a remote connection to the terminal server by a remote control protocol, and provides a graphical user interface (28) for a software robot. Another program component is started, within a session (24) associated to the terminal client, and calls up the software robot to execute a script (26) for executing an application. An independent claim is included for a computer system for script-controlled execution of application on computer with help of software robot.