Virtual Service Account Linking for Uncertified Servers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Uncertified servers lack the necessary qualifications to operate specific services, leading to increased complexity and reduced convenience for users due to the need for repeated account entries and security reconstruction costs, which results in suboptimal service processing.
Innovation Solution
A method and device that enable uncertified servers to link users to certified servers through virtual service accounts, allowing users to access service processing without needing to enter real service accounts each time, by generating and using virtual service accounts that correspond to real service accounts stored on certified servers.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If uncertified servers operate specific services, then service availability is improved, but security compliance deteriorates
Solution Approach 1:
The patent introduces a certified server as an intermediary between the uncertified server and the service account system. The certified server handles security compliance and service account verification, while the uncertified server focuses on providing service functionality. This mediator approach allows uncertified servers to operate services without directly managing security-sensitive operations.
Solution Approach 2:
The patent extracts the security compliance functions (service account management, security verification) from the uncertified server and relocates them to a dedicated certified server. This separation allows the uncertified server to provide service availability while the certified server ensures security compliance, resolving the contradiction between these two requirements.
2Ease of operation
If users access services on uncertified servers, then service accessibility is improved, but operational complexity increases
Solution Approach 1:
The system implements automatic service account binding between user accounts and service accounts. When users access services on uncertified servers, the system automatically retrieves and binds the appropriate service accounts without requiring users to manually enter or manage service account credentials, thereby maintaining ease of operation while reducing operational complexity.
Solution Approach 2:
The patent performs preliminary binding of service accounts to user accounts in advance. The certified server pre-establishes the mapping between user accounts and service accounts, so that when users access services on uncertified servers, the service accounts are already configured and ready, eliminating the need for complex real-time account management operations.
3Reliability
If certified servers handle all service processing, then security compliance is improved, but system complexity increases
Solution Approach 1:
The patent segments the server system into two distinct roles: certified servers that handle security compliance and service account management, and uncertified servers that handle service functionality. This segmentation allows each server type to focus on its specialized function, improving security compliance while avoiding the complexity of making every server fully certified.
Solution Approach 2:
The patent creates a universal architecture where certified servers can serve multiple uncertified servers. A single certified server can provide security compliance and service account management for multiple uncertified servers, reducing the overall system complexity compared to having each uncertified server paired with its own dedicated certified server.
Data Source
AI summary
Implementations of the present application provide methods and devices for linking to an account and providing service processing. In one example method, an uncertified server can receive a linking request sent by a terminal device, wherein the linking request corresponds to a user account logged in by a user to the uncertified server. The uncertified service can transmit, to the terminal device, a predetermined instruction based on the linking request, wherein the predetermined instruction instructs the terminal device to send a real service account request to a certified server based on predetermined instruction. The uncertified server can later receive, from the terminal device, a virtual service account identifier generated by the certified server in response to the real service account request sent by the terminal device to the certified server. The virtual service account identifier can then be linked to the user account and used at a later time to transmit service requests along with the virtual service account identifier without sharing the real service account information.


