Cloud Print Server Secure Format Conversion

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Cloud printing systems face challenges in providing a secure printing mechanism for confidential documents, as they involve rendering and routing documents through remote servers and public networks, which raises concerns about data security and privacy.

Innovation Solution

A secure printing system is implemented using an application manager at a cloud print server that receives encrypted content, routes it to a designated cloud-aware printer for decryption, and uses a secure format converter to convert the print job from a printer-independent format to a printer-specific format without storing decrypted content, ensuring secure connections and minimizing data exposure.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If documents are routed through remote servers and public networks for cloud printing, then printing accessibility and convenience are improved, but data security and privacy are worsened

Engineering Contradiction:
Improveprinting accessibilityVSAvoiddata security risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary encryption of print jobs before they leave the client device. The encryption key is generated and applied in advance, so that the document content is protected before being transmitted through public networks to remote servers, thereby maintaining security while enabling cloud printing accessibility.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary decryption component at the printer that holds the decryption key locally. This intermediary mechanism allows the encrypted document to travel through insecure channels while the actual decryption and rendering occur only at the trusted printer endpoint, separating the transmission path from the security-sensitive operations.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If encrypted content is transmitted to cloud print server, then document security is improved, but the ability to convert to printer-specific format is worsened

Engineering Contradiction:
Improvedata protectionVSAvoidformat conversion capability
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The system performs preliminary conversion of the encrypted print job to the target printer's specific format while the document remains encrypted. The format conversion is accomplished on the encrypted data structure without requiring decryption, thus maintaining both security and conversion capability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent employs an intermediary format conversion component that operates on encrypted data. This mediator translates the encrypted print job between formats without exposing the plaintext content, allowing the system to handle printer-specific requirements while maintaining encryption throughout the process.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If cloud print server stores and processes print jobs, then printing flexibility is improved, but risk of data exposure is worsened

Engineering Contradiction:
Improveprinting flexibilityVSAvoiddata exposure risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary encryption of all print jobs before they are transmitted to or stored on the cloud print server. This advance encryption ensures that even if data is stored or processed in the cloud, the content remains protected, allowing flexible cloud-based printing operations without compromising security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary decryption component that resides locally at the printer rather than on the cloud server. This intermediary architecture allows the cloud server to handle flexible storage and routing of encrypted print jobs while the actual decryption occurs only at the trusted printer endpoint, minimizing data exposure risk on remote servers.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8988713B2Secure printing in a cloud-based print system
Publication Date: 2015.03.24 GOOGLE LLC
  • US8988713B2 patent drawing
  • US8988713B2 patent drawing
  • US8988713B2 patent drawing

AI summary

The embodiments provide a printing system including an application manager, implemented at a cloud print server, configured to receive a print job including encrypted content to be printed by a designated cloud-aware printer, over a network, from an application associated with a device, a print job router, implemented at the cloud print server, configured to route the print job including the encrypted content, over the network, to the designated cloud-aware printer to be decrypted, and a secure format converter configured to receive the print job including decrypted content from the designated cloud-aware printer, convert the print job from a printer-independent format to a printer-specific format associated with the designated cloud-aware printer, and provide the print job having the printer-specific format to the designated cloud-aware printer for printing.