Virtualized Proactive Services for Secure Data Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Telecommunications network operators face challenges in ensuring data security and privacy due to existing data collection and analysis systems that require data to be sent externally, straining network resources and raising concerns about data privacy and security.

Innovation Solution

A standalone and virtual proactive services (vPAS) system is developed, which is self-contained, encrypted, and hosted within the customer's network, allowing data collection and analysis to occur without leaving the firewall, utilizing a component-based architecture for flexibility and scalability across various computing environments, including cloud-based setups.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If data is sent to external data analysis server, then data analysis capability is improved, but data security and privacy are worsened

Engineering Contradiction:
Improvedata analysis capabilityVSAvoiddata security and privacy
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

A virtual machine is introduced as an intermediary between the network operator's data and the data analysis system. The virtual machine hosts a data analysis server within the operator's network, acting as a mediator that enables data analysis while keeping data within the secure network boundary. This resolves the contradiction by providing data analysis capability without requiring data to leave the protected network environment.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Instead of sending data out to an external analysis server, the analysis server is brought inside the operator's network by hosting it on a virtual machine within the network. This inversion of the traditional architecture allows data to remain in-place while still enabling analysis, thus maintaining security and privacy while achieving data analysis capability.

Inventive Principle:
Principle #13The other way round (Inversion)

2Object-affected harmful factors

If data collection servers are physically installed in network operator's network, then data security is improved, but device complexity is worsened

Engineering Contradiction:
Improvedata securityVSAvoiddevice complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

Instead of physically installing complex data collection and analysis infrastructure, the patent uses virtualization to create a virtual copy of the data analysis server within the operator's network. This virtual instance provides the necessary data analysis functionality without requiring physical hardware installation, thereby maintaining data security while avoiding the complexity of physical device deployment.

Inventive Principle:
Principle #26Copying

3Adaptability or versatility

If data analysis server is hosted externally, then service flexibility is improved, but data privacy assurance is worsened

Engineering Contradiction:
Improveservice flexibilityVSAvoiddata privacy assurance
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The data analysis server is nested within the operator's network infrastructure by hosting it on a virtual machine that resides inside the network boundary. This nested architecture allows the analysis server to be part of the external service ecosystem while simultaneously being protected within the internal network, thus providing both service flexibility and data privacy assurance.

Inventive Principle:
Principle #7Nested doll (Nesting)

Data Source

PatentUS10680910B2Virtualized proactive services
Publication Date: 2020.06.09 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US10680910B2 patent drawing
  • US10680910B2 patent drawing
  • US10680910B2 patent drawing

AI summary

A standalone and virtual proactive services (vPAS) implementation is described. The vPAS is entirely self-contained, encrypted, and can be hosted within the customer's network. Furthermore, data collected by the vPAS can be analyzed without the data leaving the customer's firewall, thereby providing additional assurance to the network operator's data security and privacy. Moreover, the solution is developed based on an architecture that enables the platform to run in a variety of computing environments, including cloud-based environments. The vPAS system addresses data security and privacy concerns, enables different budgeting options, enables in-line predictive analysis, provides flexible delivery options, and increases the performance of preemptive services.