Data Protection Service for Secure File Transfer
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional methods for accessing and transferring data in IT systems are cumbersome and insecure, lacking sufficient authentication, authorization, and access control, which can lead to unauthorized use and compromised security.
Innovation Solution
A data protection system that incorporates a file transfer protocol with authentication, authorization, and auditing capabilities, utilizing agents on hosts and a data protection service to securely transfer data while allowing partial file access and random access from specified locations, with a user interface that adapts to different configurations and software versions through a pluggable framework.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional file transfer methods are used, then data can be transferred, but authentication, authorization, and access control are insufficient leading to security compromises
Solution Approach 1:
The patent introduces a data protection service as an intermediary component that mediates between data hosts and requesting clients. This service centralizes authentication, authorization, and auditing functions, providing secure data transfer while managing complexity through a dedicated intermediary layer rather than embedding security logic throughout the entire system.
Solution Approach 2:
The data protection service implements a universal interface that handles multiple functions including authentication, authorization, auditing, and data transfer coordination through a single service component. This multi-functional approach improves security without proportionally increasing system complexity.
2Ease of operation
If users remotely log on to access files, then data can be accessed, but the process is cumbersome and insecure
Solution Approach 1:
The patent enables self-service file access where clients can request files without requiring remote login to the host. The data protection service automatically handles authentication and authorization based on client credentials and file permissions, making the process convenient while maintaining security through automated rather than manual access methods.
Solution Approach 2:
The data protection service acts as an intermediary that enables convenient file access without requiring direct remote login. It mediates between the client and host, handling security functions automatically so users can access files through simple requests rather than cumbersome login procedures.
3Loss of information
If entire files are transferred, then data is available, but network resources are wasted transferring unnecessary data
Solution Approach 1:
The patent implements segmentation by allowing clients to request specific portions or ranges of files rather than transferring entire files. The data protection service coordinates with the host to transfer only the necessary data segments, reducing network resource consumption while maintaining data availability for the client's specific needs.
Solution Approach 2:
The system enables partial file transfer actions where only the necessary portions of files are transferred based on client requests. This partial action approach prevents excessive data transfer and conserves network resources while still providing the required information to clients.
Data Source
AI summary
Systems and methods for performing a data transfer in a data protection system are disclosed. A user interface is provided that includes a workflow. The workflow is effective to configure a data transfer by identifying the source of the data, the destination of the data, and the data itself. A data control process associated with the data protection system is performed to authenticate the requesting user and determine whether the user is authorized to access the data. The data is transferred in accordance with the data control process of the data protection system.


