Token-Based Packet Prioritization for High-Priority Users

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current security systems face inefficiencies in prioritizing user packets, leading to delayed access and resource allocation, especially for high-priority users, due to the complexity of processing individual attributes rather than tokens.

Innovation Solution

An apparatus that receives a hard token identifying a device and a subject token indicating a high-priority user, applies token-based rules to prioritize packet communications, and communicates a notification token to network components to facilitate faster provisioning of resources.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If individual attributes are processed for packet prioritization, then security control decisions can be made, but processing time increases and efficiency decreases

Engineering Contradiction:
Improvesecurity control accuracyVSAvoidpacket processing efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

Multiple individual attributes (user ID, device ID, packet characteristics) are merged into a single token representation. The security system processes this consolidated token instead of evaluating each attribute separately, reducing processing time while maintaining the same security decision accuracy. The token acts as a unified载体 that carries all necessary identification and priority information.

Inventive Principle:
Principle #5Merging (Combining)

2Productivity

If token-based rules are applied for packet prioritization, then processing speed improves, but system complexity increases

Engineering Contradiction:
Improvepacket processing speedVSAvoidtoken management complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

Tokens are generated and attributes are consolidated into token format in advance, before the actual packet processing occurs. This preliminary transformation of data into token form simplifies subsequent processing operations, as the system only needs to match tokens against pre-defined rules rather than analyzing multiple individual attributes in real-time.

Inventive Principle:
Principle #10Preliminary action

3Productivity

If high-priority user identification is implemented, then resource allocation efficiency improves, but credential verification complexity increases

Engineering Contradiction:
Improveresource allocation efficiencyVSAvoidcredential processing complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The priority level and user identification information are extracted from the complex credential set and embedded into the token. This extraction allows the system to quickly identify high-priority users through simple token matching without needing to re-evaluate the entire credential verification process, thereby improving resource allocation efficiency while managing complexity through tokenization.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS8732814B2Method and apparatus for token-based packet prioritization
Publication Date: 2014.05.20 BANK OF AMERICA CORP
  • US8732814B2 patent drawing
  • US8732814B2 patent drawing
  • US8732814B2 patent drawing

AI summary

According to one embodiment, an apparatus may receive a hard token that identifies a device and a subject token indicating that a user is a high priority user. The subject token may include a user identifier associated with the high priority user. The apparatus may apply a token-based rule that facilitates packet prioritization in response to receiving the subject token. In response to applying the token-based rule, the apparatus may communicate a notification token to at least one network component. The notification token may include the user identifier associated with the high priority user, the device identifier associated with the device, and instructions to prioritize any packet communications associated with the user identifier or the device identifier. The apparatus may then communicate at least one token to facilitate the provisioning of a container to the device associated with the high priority user.