Backup Server Trust Level Verification for Secure Data Operations
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Traditional systems for deploying signed certificates on backup servers and client devices are slow and ineffective, particularly in varying computing environments, leading to inadequate security during backup operations.
Innovation Solution
A method and system that identify the trust level of a designated backup server and sensitivity level of a backup task, determining if the trust level is appropriate, and facilitating the backup task by either transferring unencrypted data or encrypting it if the trust level is not sufficient, using modules for identification, determination, and backup operations.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If manual certificate deployment is used on backup servers, then security verification is improved, but deployment speed and efficiency deteriorate
Solution Approach 1:
The backup server automatically performs self-verification of certificates during backup operations. The server independently checks whether its certificate is valid and whether the client's certificate is trusted, without requiring manual administrator intervention for each verification operation. This enables continuous security verification while maintaining high deployment and operation efficiency.
Solution Approach 2:
Certificates are pre-deployed on backup servers and clients before backup operations begin. The system performs certificate verification checks in advance during the connection establishment phase, so that when actual backup operations need to proceed, the security verification is already complete and no time-consuming manual intervention is required.
2Ease of manufacture
If standard certificate deployment process is used across varying computing environments, then deployment consistency is improved, but adaptability to different environments deteriorates
Solution Approach 1:
The patent implements environment-specific certificate verification strategies. Different backup servers with varying security capabilities can handle different types of backup requests appropriately. For example, servers with higher security credentials can handle sensitive backup operations while less secure servers handle non-sensitive operations, allowing the system to adapt to local environmental conditions while maintaining overall deployment consistency through the unified trust level assessment framework.
Data Source
AI summary
The disclosed computer-implemented method for performing secure backup operations may include (i) identifying a backup server that has been designated to perform a backup task for a backup client, (ii) prior to facilitating the backup task on the backup client (a) identifying both a trust level of the designated backup server and a sensitivity level of the backup task and (b) determining whether the trust level of the designated backup server is appropriate for the sensitivity level of the backup task, and (iii) facilitating the backup task on the backup client based on the determination of whether the trust level of the designated backup server is appropriate for the sensitivity level of the backup task. Various other methods, systems, and computer-readable media are also disclosed.


