Tunneling Remote LAN Connectivity via IP/UDP Encapsulation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional VPN solutions are complex to implement, limit wireless LAN coverage, and restrict bidirectional communication over packet-switched mobile networks, making it difficult for users to access legacy applications and manage multiple subscriptions across different locations.
Innovation Solution
The use of packet-switched mobile networks' address translation capabilities to create bidirectional LAN communications by encapsulating LAN frames in IP/UDP tunnels, allowing hosts on remote and home LAN segments to communicate as if they were on the same physical LAN, without requiring host reconfiguration or specialized software.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If IPSec tunnel is used to achieve VPN connectivity, then remote access to corporate intranet is enabled, but implementation complexity increases due to specialized software and firewall requirements
Solution Approach 1:
The patent introduces a gateway device as an intermediary between the mobile host and the intranet. This gateway handles the complexity of protocol translation and tunneling, while the mobile host only needs standard client software. The gateway mediates between the mobile network's private addressing and the intranet's requirements, eliminating the need for complex IPSec configuration on end devices.
Solution Approach 2:
The system enables self-service by allowing mobile hosts to automatically obtain network access through standard mobile network registration. The gateway automatically performs address translation and tunnel setup without requiring manual configuration on the mobile host. This eliminates the need for users to configure specialized software or understand complex networking parameters.
2Ease of operation
If SSL-based VPN is used for simplicity, then ease of use improves, but application compatibility is limited to web-based applications only
Solution Approach 1:
The patent changes the network layer parameters by implementing private-to-public address translation at the gateway. This allows legacy applications that rely on traditional TCP/IP networking to function over mobile networks. By translating addresses and maintaining session state at the gateway, the system preserves application-level compatibility while utilizing simplified mobile network infrastructure.
3Ease of operation
If WLAN hotspots are deployed to extend connectivity, then wireless access is improved, but coverage range remains limited and management complexity increases
Solution Approach 1:
The patent extends coverage by transitioning from local wireless access to cellular network dimension. Instead of relying on line-of-sight wireless connections limited to hotspot ranges, the system uses the cellular network's wide-area coverage. The mobile host connects through the cellular network's infrastructure, which provides coverage across entire cities and regions rather than local neighborhoods.
4Adaptability or versatility
If packet-switched mobile networks assign private IP addresses, then network address translation is enabled, but bidirectional communication is restricted
Solution Approach 1:
The gateway implements feedback mechanisms to track active connections and dynamically manage address translations. When the intranet initiates communication, the gateway receives feedback about the connection state and automatically performs the necessary address translations to route packets back to the mobile host. This feedback loop enables bidirectional communication by maintaining state information about active sessions.
Data Source
AI summary
The address translation capabilities of packet-switched mobile networks are exploited to achieve bidirectional LAN communications therethrough. A multi-dash user VPN can be provided by encapsulating a multi-user LAN communication protocol for traversal of a packet-switched network. By encapsulating a commonly available multi-user LAN communication protocol, for example ethernet, remote LAN connectivity can be extended without requiring any host reconfiguration.


