Virtual Private Site Access Control via Device Credential Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The interactive and interconnected nature of internet platforms, such as weblogs and social networking sites, increases the risk of public expression leading to unintended consequences, as users may regret their passionate online comments, and existing technologies lack effective means to control or restrict access to sensitive content.

Innovation Solution

A system for secure access and architecture of virtual private sites is provided, which creates a secure environment by using unique identifiers and credentials for registered portable electronic devices, allowing only authorized users to access and post content, thereby controlling admission and ensuring confidentiality.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If public weblogs and social networking sites allow free expression, then user freedom and interactivity are improved, but security and control of sensitive content deteriorate

Engineering Contradiction:
Improveuser freedom of expressionVSAvoidsecurity and control of content
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system segments the internet into public spaces and virtual private sites (VPS). Each VPS is a isolated, controlled environment where access is restricted to specific members. This segmentation allows free expression within private boundaries while maintaining overall security through architectural division of the network space.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary authentication system that mediates between users and VPS content. The system verifies member credentials and device identifiers before granting access, acting as a trusted intermediary that enables secure private communication while maintaining control over sensitive content distribution.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If access control mechanisms are implemented for virtual private sites, then security and confidentiality are improved, but device complexity and authentication overhead increase

Engineering Contradiction:
Improvesecurity and confidentialityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system implements self-service authentication where portable devices automatically perform mutual verification with the VPS server. The device independently validates the VPS authenticity using embedded credentials, and the server verifies device identifiers without requiring complex user intervention. This self-service approach reduces operational complexity while maintaining strong security.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Authentication credentials and device identifiers are pre-configured in portable devices before they join the VPS network. This preliminary setup eliminates the need for complex real-time authentication negotiations, as the verification process simply checks pre-established trust relationships, reducing system complexity.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If unique identifiers and credentials are required for device authentication, then access security is improved, but ease of operation deteriorates

Engineering Contradiction:
Improveaccess securityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The authentication system operates autonomously through self-service mechanisms. The portable device automatically presents its unique identifier to the VPS server, and the server independently verifies credentials without requiring manual password entry or user authentication steps. This makes the secure authentication process transparent and convenient for users.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS8683566B1Secure access and architecture for virtual private sites
Publication Date: 2014.03.25 T MOBILE INNOVATIONS LLC
  • US8683566B1 patent drawing
  • US8683566B1 patent drawing
  • US8683566B1 patent drawing

AI summary

A system is provided. The system comprises a computer system and an application that, when executed on the computer system, creates a virtual private site in response to a request from a first portable electronic device, the site storing and displaying electronic content posted by the first device. The application also receives a first message from the first device containing a request to authorize a second portable electronic device to access content from the virtual private site and associates a unique identifier for the second device with a credential for the second device. The system also receives a second message containing a request from the second device to access electronic content from the virtual private site. The system also verifies the unique identifier received in the second message, verifies the credential received in the second message, and transmits the electronic content to the second portable from the virtual private site.