Distributed Autonomous Data Security Agent Architecture

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data storage systems are vulnerable to remote manipulation and hacking, as they lack robust, autonomous security measures that can protect data and storage devices from unauthorized access and corruption.

Innovation Solution

A distributed and autonomous data security system utilizing two independent Chips (first-Chip and second-Chip) with firmware-based functionality, where first-Chip modifies data before forwarding it to second-Chip for storage, ensuring encryption and secure storage, and both Chips operate independently of the traditional server system, preventing corruption and hacking.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional server systems are used for data storage, then data accessibility and ease of operation are improved, but security and vulnerability to remote manipulation deteriorate

Engineering Contradiction:
Improvedata accessibilityVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system divides the storage architecture into three independent segments: the public-facing server, the first chip (security agent), and the second chip (storage controller). Each segment operates autonomously with defined boundaries, preventing compromise of one segment from affecting others. The first chip acts as an isolated security layer between the server and second chip, enforcing segmentation-based security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The first chip serves as an intermediary security agent positioned between the traditional server system and the second chip. It mediates all data flows, inspecting and controlling communications without being directly accessible from the public network. This intermediary role provides security enforcement while maintaining system accessibility through the server interface.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If autonomous security measures are implemented, then security and protection from manipulation are improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem architecture
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The security functionality is extracted from the traditional server system and embodied in dedicated first chip and second chip components. This extraction creates specialized security hardware with focused functions, reducing the security burden on the main server while providing robust autonomous protection through dedicated security agents.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

Each chip is designed with specific local qualities: the first chip specializes in security enforcement and data inspection, while the second chip specializes in storage control. This functional specialization allows each component to be optimized for its specific role, managing overall system complexity through localized functional expertise.

Inventive Principle:
Principle #3Local quality

3Ease of operation

If data is made accessible over public networks, then ease of operation and accessibility are improved, but vulnerability to hacking and remote manipulation increases

Engineering Contradiction:
Improvedata accessibilityVSAvoidvulnerability to hacking
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The first chip performs preliminary security actions by inspecting and controlling all data flows before they reach the second chip or storage devices. It proactively prevents potential hacking attempts and remote manipulation by enforcing security rules at the chip level, countering threats before they can compromise the stored data.

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentUS11423181B2Distributed and autonomous data security agent
Publication Date: 2022.08.23 PHENCEME HOLDINGS INC
  • US11423181B2 patent drawing
  • US11423181B2 patent drawing
  • US11423181B2 patent drawing

AI summary

The present invention is a distributed and autonomous digital data security agent that secures stored data and the storage device itself, from remote manipulation. The present system is an “agent” in that it acts independently in the accomplishment of its objects and is distributed in that its functionality is resides on firmware resident at disparate hardware locations. The agent is autonomous in that it cannot be remotely compromised. The system includes server having a dedicated Private link with a Chip Administrator, and a Data Link between a first-Chip, a second-Chip of said security agent. The first-Chip is resident and operable to control Write/Read calls and data transfers between the server and the second-Chips of the data storage. The Chip Administrator, first-Chip and second-Chip in combination with their associated Firmwares provide said distributed and autonomous data security agent.