Virtual Web Server Instances for Multi-System Identity Routing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Enterprises face challenges in managing multiple identity management systems simultaneously across distributed applications, as existing solutions are costly and inefficient, particularly during migration from one system to another, leading to disruptions in single sign-on access.

Innovation Solution

The use of virtual web servers and intelligent rules-based routing allows for the simultaneous support of multiple identity management systems by generating virtual web server instances on existing physical servers, enabling seamless transitions and cost-effective management without requiring multiple network flows or infrastructures.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If separate physical infrastructures are used to support multiple identity management systems, then system reliability is improved, but device complexity and cost increase

Engineering Contradiction:
Improvesystem reliabilityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent combines multiple identity management system support into a single physical web server infrastructure by implementing multiple virtual web server instances. Each virtual instance handles a different identity management system, allowing the enterprise to support both legacy and new systems simultaneously on shared hardware, thereby reducing device complexity and cost while maintaining system reliability

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The web server infrastructure is designed with multi-functionality to handle multiple identity management systems through virtualization. The single physical infrastructure performs multiple functions by hosting different virtual web server instances, each configured to support specific identity management systems, eliminating the need for dedicated separate infrastructures

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If separate URLs are used to support multiple identity management systems, then adaptability is improved, but device complexity increases

Engineering Contradiction:
ImproveadaptabilityVSAvoiddevice complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent introduces an intelligent rules-based router as an intermediary component that directs access requests to the appropriate virtual web server instance based on the identity management system being used. This router analyzes incoming requests and applies routing rules to determine the correct destination, enabling adaptability to multiple systems without requiring separate URLs or complex infrastructure configurations

Inventive Principle:
Principle #24Intermediary (Mediator)

3Loss of energy

If virtual web server instances are implemented on existing physical servers, then cost is reduced, but processing speed may be affected

Engineering Contradiction:
ImprovecostVSAvoidprocessing speed
Core Design Contradiction:
Loss of energyVSSpeed

Solution Approach 1:

The virtual web server instances are designed with dynamic resource allocation capabilities, allowing them to efficiently utilize available server resources. The intelligent router dynamically directs requests to appropriate instances, and the virtualization architecture enables flexible resource distribution to maintain processing speed while reducing overall infrastructure costs through shared physical servers

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11876793B2Simultaneous application support of multiple identity management systems via virtual web servers
Publication Date: 2024.01.16 BANK OF AMERICA CORP
  • US11876793B2 patent drawing
  • US11876793B2 patent drawing
  • US11876793B2 patent drawing

AI summary

Simultaneous distributed application support of multiple identity management systems is provided through the use of virtual web server instances, which enable one identity management system, on physical servers already running a pre-existing web server instance, which enables a different identity management system. Further, an intelligent rules-based determination is implemented to determine whether to route an access request to either the virtual or pre-existing web server instance. Since the virtual web server instances are generated on the same physical server that executes the pre-existing web service instance, the the existing network flow (i.e., a single URL) and physical infrastructure is leveraged to create a simplified approach to managing the simultaneous use of multiple identity management systems across different distributed applications.