Videoconference Proxy Paths for Participant IP Obfuscation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current videoconferencing technologies expose participants' IP addresses and locations due to Network Address Translation (NAT) and protocols like STUN and TURN, compromising privacy and security.
Innovation Solution
A videoconference instantiation server generates inbound and portal proxies within an on-demand computing network, creating unique access paths for each participant, obfuscating their location and identity using cryptographic hashing and zero network-profile protocols, ensuring only authorized connections can be established.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If videoconference participants use standard network connections to join conferences, then the videoconference can be easily established and accessed, but the participants' IP addresses and locations are exposed to the server and third parties
Solution Approach 1:
The patent introduces proxy servers as intermediary components between participants and the videoconference server. These proxies act as mediators that forward traffic while hiding the true IP addresses and locations of participants from the conference server and third parties, thus resolving the contradiction between easy access and privacy protection
Solution Approach 2:
The network connection is segmented into multiple hops through proxy servers. Instead of a direct connection between participants and the server, the traffic passes through intermediate proxy nodes, which segments the visible network path and obscures the original participant identities while maintaining connectivity
2Object-affected harmful factors
If proxy servers are used to obfuscate participant IP addresses, then privacy is improved, but the complexity of network configuration and connection establishment increases
Solution Approach 1:
The system automatically manages proxy server assignments and configurations without requiring manual intervention from participants. The videoconference server autonomously assigns appropriate proxies and handles the complexity of network setup, allowing participants to simply join the conference while the system manages the privacy-obfuscating infrastructure
Solution Approach 2:
The proxy servers perform multiple functions: they obfuscate participant identities, forward videoconference traffic, and manage network connections. This multi-functionality reduces the need for separate dedicated components and simplifies the overall system architecture while maintaining privacy protection
3Reliability
If STUN and TURN protocols are used to traverse NAT, then network connectivity is established, but the actual IP addresses of users are revealed despite proxy usage
Solution Approach 1:
The patent employs proxy servers as intermediaries that prevent STUN and TURN protocols from revealing actual user IP addresses. The proxies absorb the NAT traversal functionality while maintaining their own identities, thus allowing reliable connectivity through NAT without exposing the true user locations to conference servers or third parties
Data Source
AI summary
A request is received by a videoconference instantiation server to initiate a videoconference among a plurality of participants. Thereafter, the videoconference instantiation server requests provision of an on-demand computing network. The videoconference server is then instantiated in the on-demand computing network. A plurality of inbound proxies are generated which are configured to communicate with the videoconference server. The inbound proxies obfuscate administrative data passing therethrough. In addition, a plurality of portal proxies are generated that each are configured to communicate with a different one of the inbound proxies. The videoconference instantiation server then generates a unique access path to a different one of the portal proxies for each of the participants. The portal proxies, when accessed, allow the corresponding participant to access a videoconference being executed by the videoconference server. The portal proxies and inbound proxies are terminated upon completion of the videoconference.


