Data Sending Control Server Segmentation for Unauthorized Access Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data transmission systems in the mobile communication field are vulnerable to attackers who can steal data by impersonating service servers, leading to unauthorized access and data redirection.

Innovation Solution

A method involving a data sending control server that instructs data storage and processing servers to transmit data only after receiving and processing the data, ensuring secure and controlled data delivery to target devices, thereby preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If data is stored centrally on servers for easy access and transmission, then data transmission efficiency is improved, but security against unauthorized access deteriorates

Engineering Contradiction:
Improvedata transmission efficiencyVSAvoidunauthorized data access
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent segments the data transmission process into distinct phases: data preparation phase where data is stored on servers, and data transmission phase where data is sent to devices. The control server separates these phases by receiving data from storage servers, validating it, and then forwarding to processing servers only when ready, preventing unauthorized access during storage while maintaining transmission efficiency

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The control server acts as an intermediary between data storage servers and data processing servers. It receives data from storage servers, validates it against criteria, and only forwards validated data to processing servers. This intermediary role creates a security layer that prevents unauthorized data access while maintaining efficient data flow through the system

Inventive Principle:
Principle #24Intermediary (Mediator)

2Speed

If data is made available to processing servers for quick transmission to devices, then transmission speed is improved, but the window of vulnerability to attackers increases

Engineering Contradiction:
Improvedata transmission speedVSAvoiddata protection integrity
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

The control server performs preliminary validation and authorization checks before data is made available to processing servers. Data is prepared and validated in advance on the control server, then only authorized data is forwarded to processing servers for quick transmission to devices, reducing the vulnerability window

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements feedback mechanisms where the control server continuously monitors data transmission status and can halt or redirect data flow if security threats are detected. This feedback loop maintains fast transmission speeds while dynamically adjusting security measures to protect data integrity

Inventive Principle:
Principle #23Feedback

Data Source

PatentEP3520366B1Method, data sending control server, storage server, processing server and system for sending data to at least one device
Publication Date: 2022.08.10 THALES DIS FRANCE SA
  • EP3520366B1 patent drawingFigure 1~2

AI summary

The invention relates to a method (20) for sending data to at least one device. According to the invention, the method comprises the following steps. A data sending control server (12) sends to at least one data storage server (142) at least one predetermined rule or a first request (22) for sending data to at least one data processing server. The at least one data storage server sends, based upon the at least one predetermined rule or the first request for sending data, to the at least one data processing server data (26). The data sending control server sends to the at least one data processing server (16) a second request (28) for sending to the at least one device the data received or to be received by the at least one data processing server. The at least one data processing server sends, based upon the second request for sending the data, to the at least one device the received data (212). The invention also pertains to corresponding data sending control server, data storage server, data processing server and system for sending data to at least one device.