Centralized Backup Authentication via Local Credential Generation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing data backup systems for personal computers face security challenges due to the need for multiple backups on different devices, which can lead to loss, theft, or damage of private information, and often require a domain controller for authentication, complicating backup and restore operations.
Innovation Solution
A system and method that enables secure backups by using a centralized storage server with credential generation and authentication, allowing client devices to access a shared directory without relying on a domain controller, utilizing a host server for credential management and access control across a wide area network.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a domain controller is used for authentication in backup systems, then authentication capability is provided, but system complexity increases
Solution Approach 1:
The patent extracts the authentication functionality from the domain controller and implements it locally within the backup system. The authentication module is now a standalone component that handles credential verification without requiring external domain controller intervention, thereby reducing system complexity while maintaining authentication capability
Solution Approach 2:
The patent introduces an authentication module as an intermediary component between client devices and the backup system. This module handles all authentication requests locally, acting as a mediator that eliminates the need for direct communication with external domain controllers, thus reducing system complexity while preserving security
2Reliability
If multiple backups are stored on different devices, then data redundancy is improved, but security risk increases
Solution Approach 1:
The patent merges multiple backup storage locations into a single centralized backup system with unified access control. Instead of distributing backups across multiple devices with separate security management, all backups are stored centrally with a single authentication mechanism, maintaining redundancy while improving security through consistent access control
Solution Approach 2:
The patent implements a universal authentication module that serves multiple backup devices and storage locations through a single security interface. This multi-functional authentication system provides consistent security protection across all backup operations, eliminating the need for separate security management for each backup device
3Speed
If credential information is stored locally on client devices, then authentication speed is improved, but security vulnerability increases
Solution Approach 1:
The patent implements preliminary authentication by verifying credentials against the authentication module before allowing access to backup data. The authentication module pre-validates credential formats and checks against stored authentication data, providing fast authentication while maintaining security through pre-validated credential verification rather than storing sensitive credential information locally
Data Source
AI summary
A system and method for performing backup operations is provided. Mechanisms facilitate a secure centralized backup system with a locally derived authentication model. A local centralized storage server may generate an authentication model, including credentials, and create a share/directory for each client. Clients store their credentials and use them to access centralized storage. Credentials are maintained and provisioned locally. A remote host server may establish trust by providing a list of clients in a circle.


