Cloud Server Centralized Security Data Management for SFTP Consistency
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In a network of Secure File Transfer Protocol (SFTP) servers, user information management is inconsistent across servers, leading to poor data consistency and authentication challenges when user data is amended in one server but not reflected in others.
Innovation Solution
A cloud server with multiple security modules that share security data based on user identification information, allowing for unified management and authentication across the network, using a communicator, storage device, and processor to transmit, store, and encrypt data while ensuring user authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If multiple SFTP servers operate independently with separate user management, then each server maintains its own security data, but user information consistency deteriorates across servers
Solution Approach 1:
The patent merges security data management across multiple SFTP servers by introducing a cloud server that centralizes user authentication information. The cloud server stores unified security data that all SFTP servers can access, replacing the previous independent management model where each server maintained separate user credentials. This consolidation ensures that user information amendments are immediately reflected across all servers, resolving the consistency issue while maintaining a manageable centralized structure.
Solution Approach 2:
The cloud server performs multiple functions: it acts as a centralized authentication authority for user verification, a security data repository for storing unified credentials, and a communication hub for transmitting security data to external devices. By making the cloud server universal and multi-functional, the system achieves consistent user authentication across all SFTP servers without requiring separate management mechanisms for each function.
2Reliability
If security data is stored locally in each SFTP server, then authentication is fast and simple, but data consistency and sharing between servers deteriorate
Solution Approach 1:
The cloud server pre-stores security data for multiple users in a centralized manner before authentication requests occur. When an SFTP server needs to authenticate a user, it can quickly retrieve pre-prepared security data from the cloud server without performing time-consuming computations or cross-server queries. This preliminary preparation of authentication data maintains fast processing while ensuring consistency across all servers.
3Adaptability or versatility
If user information is amended in one SFTP server, then that server has updated information, but other servers continue to use outdated information
Solution Approach 1:
The system implements a feedback mechanism where the cloud server continuously monitors and maintains updated security data. When user information is amended, the cloud server receives the updated credentials, stores them centrally, and makes them immediately available to all SFTP servers through subsequent authentication requests. This feedback loop ensures that all servers automatically receive and use the latest user information without manual synchronization, maintaining both update flexibility and information consistency.
Data Source
AI summary
A cloud server and a method for controlling thereof are provided. The cloud server comprising a communicator, a storage device that can be accessed by the plurality of security modules, and a processor configured to, based on receiving a request signal of preparation for data transmission and identification information of a user of an external device from the external device through the communicator, acquire security data corresponding to the identification information through one security module among the plurality of security modules, and control the communicator to transmit the security data to the external device, and store the acquired security data in the storage device so that the plurality of security modules can share the security data.


