Backup Server Trust Level Verification for Secure Data Operations

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional systems for deploying signed certificates on backup servers and client devices are slow and ineffective, particularly in varying computing environments, leading to inadequate security during backup operations.

Innovation Solution

A method and system that identify the trust level of a designated backup server and sensitivity level of a backup task, determining if the trust level is appropriate, and facilitating the backup task by either transferring unencrypted data or encrypting it if the trust level is not sufficient, using modules for identification, determination, and backup operations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual certificate deployment is used on backup servers, then security verification is improved, but deployment speed and efficiency deteriorate

Engineering Contradiction:
Improvesecurity verificationVSAvoiddeployment speed
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The backup server automatically performs self-verification of certificates during backup operations. The server independently checks whether its certificate is valid and whether the client's certificate is trusted, without requiring manual administrator intervention for each verification operation. This enables continuous security verification while maintaining high deployment and operation efficiency.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Certificates are pre-deployed on backup servers and clients before backup operations begin. The system performs certificate verification checks in advance during the connection establishment phase, so that when actual backup operations need to proceed, the security verification is already complete and no time-consuming manual intervention is required.

Inventive Principle:
Principle #10Preliminary action

2Ease of manufacture

If standard certificate deployment process is used across varying computing environments, then deployment consistency is improved, but adaptability to different environments deteriorates

Engineering Contradiction:
Improvedeployment consistencyVSAvoidenvironment adaptability
Core Design Contradiction:
Ease of manufactureVSAdaptability or versatility

Solution Approach 1:

The patent implements environment-specific certificate verification strategies. Different backup servers with varying security capabilities can handle different types of backup requests appropriately. For example, servers with higher security credentials can handle sensitive backup operations while less secure servers handle non-sensitive operations, allowing the system to adapt to local environmental conditions while maintaining overall deployment consistency through the unified trust level assessment framework.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS10397216B2Systems and methods for performing secure backup operations
Publication Date: 2019.08.27 COHESITY INC
  • US10397216B2 patent drawing
  • US10397216B2 patent drawing
  • US10397216B2 patent drawing

AI summary

The disclosed computer-implemented method for performing secure backup operations may include (i) identifying a backup server that has been designated to perform a backup task for a backup client, (ii) prior to facilitating the backup task on the backup client (a) identifying both a trust level of the designated backup server and a sensitivity level of the backup task and (b) determining whether the trust level of the designated backup server is appropriate for the sensitivity level of the backup task, and (iii) facilitating the backup task on the backup client based on the determination of whether the trust level of the designated backup server is appropriate for the sensitivity level of the backup task. Various other methods, systems, and computer-readable media are also disclosed.