Centralized Backup Authentication via Local Credential Generation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data backup systems for personal computers face security challenges due to the need for multiple backups on different devices, which can lead to loss, theft, or damage of private information, and often require a domain controller for authentication, complicating backup and restore operations.

Innovation Solution

A system and method that enables secure backups by using a centralized storage server with credential generation and authentication, allowing client devices to access a shared directory without relying on a domain controller, utilizing a host server for credential management and access control across a wide area network.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a domain controller is used for authentication in backup systems, then authentication capability is provided, but system complexity increases

Engineering Contradiction:
Improveauthentication capabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication functionality from the domain controller and implements it locally within the backup system. The authentication module is now a standalone component that handles credential verification without requiring external domain controller intervention, thereby reducing system complexity while maintaining authentication capability

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an authentication module as an intermediary component between client devices and the backup system. This module handles all authentication requests locally, acting as a mediator that eliminates the need for direct communication with external domain controllers, thus reducing system complexity while preserving security

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If multiple backups are stored on different devices, then data redundancy is improved, but security risk increases

Engineering Contradiction:
Improvedata redundancyVSAvoidsecurity risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent merges multiple backup storage locations into a single centralized backup system with unified access control. Instead of distributing backups across multiple devices with separate security management, all backups are stored centrally with a single authentication mechanism, maintaining redundancy while improving security through consistent access control

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent implements a universal authentication module that serves multiple backup devices and storage locations through a single security interface. This multi-functional authentication system provides consistent security protection across all backup operations, eliminating the need for separate security management for each backup device

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Speed

If credential information is stored locally on client devices, then authentication speed is improved, but security vulnerability increases

Engineering Contradiction:
Improveauthentication speedVSAvoidsecurity vulnerability
Core Design Contradiction:
SpeedVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary authentication by verifying credentials against the authentication module before allowing access to backup data. The authentication module pre-validates credential formats and checks against stored authentication data, providing fast authentication while maintaining security through pre-validated credential verification rather than storing sensitive credential information locally

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8635670B2Secure centralized backup using locally derived authentication model
Publication Date: 2014.01.21 SERIES 124 OF ALLIED SECURITY TRUST I
  • US8635670B2 patent drawing
  • US8635670B2 patent drawing
  • US8635670B2 patent drawing

AI summary

A system and method for performing backup operations is provided. Mechanisms facilitate a secure centralized backup system with a locally derived authentication model. A local centralized storage server may generate an authentication model, including credentials, and create a share/directory for each client. Clients store their credentials and use them to access centralized storage. Credentials are maintained and provisioned locally. A remote host server may establish trust by providing a list of clients in a circle.