Composite File Data Security Management Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data security management methods rely on external equipment and lack effective control over authorized users, leading to data leakage and security risks, as they fail to manage and control files securely during transmission and usage.

Innovation Solution

A data security management control system that integrates file management information into a composite file using a preset format, allowing each user terminal to encapsulate and manage files with permission-based access, ensuring secure file handling and control throughout the file flow process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Object-affected harmful factors

If firewall is used for network isolation, then security protection against illegal users is improved, but authorized users can still operate data at will leading to data leakage

Engineering Contradiction:
Improveprotection against illegal usersVSAvoiddata security control
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The patent merges file management information with the original file to create a composite file structure. This integration ensures that security controls travel with the data itself, enabling continuous management and control of authorized user operations throughout the data lifecycle, thereby preventing data leakage while maintaining authorized access.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The composite file structure enables self-service security management where the file carries its own management information. The system automatically reads and enforces file management information from the composite file, providing continuous security control without requiring external intervention, thus ensuring reliable data security control for authorized users.

Inventive Principle:
Principle #25Self-service

2Object-affected harmful factors

If virtual machine environment is used for data isolation, then user access isolation is improved, but data transmission to cloud creates security risks

Engineering Contradiction:
Improveuser access isolationVSAvoidcloud security risk
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The patent combines file management information directly with the original file content in a composite structure. This merging eliminates the need for separate cloud storage and transmission, as the file with its embedded management information can be securely handled locally or transmitted with guaranteed integrity, reducing cloud security risks while maintaining access isolation.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent performs preliminary encapsulation of file management information with the original file before any transmission or access operations. This advance preparation ensures that security controls are already in place and embedded within the file structure itself, preventing security risks during subsequent cloud transmission or access operations.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If file management information is integrated into composite file, then data security management capability is improved, but file format complexity increases

Engineering Contradiction:
Improvedata security management capabilityVSAvoidfile format structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges file management information with the original file to form a composite file. This integration improves data security management capability by ensuring management information travels with the data, while the merging process itself manages the complexity by creating a unified structure rather than separate components.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS20250103742A1Data security management control system and method
Publication Date: 2025.03.27 HANGZHOU LAIBU TECH CO LTD
  • US20250103742A1 patent drawing
  • US20250103742A1 patent drawing

AI summary

The invention relates to a data security management control system and a data security management control method. The system comprises at least two user terminals which are provided with file management systems, wherein the file management system of one user terminal receives file management information corresponding to an original file and encapsulates the original file and the file management information into a composite file according to a preset file format; The file management system of at least one other user terminal reads the file management information in the composite file and uses the original file according to the file management information. According to the invention, the file management information is integrated into the file, so that the file can be controlled at any time in the flowing process, and the data security management capability is improved.