Distributed Data Access via Mutual Authentication and Fragmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication systems lack secure and efficient methods for centralized internet authentication and private data storage, particularly in ensuring the authenticity of users and service providers while protecting data from unauthorized access and internal threats.

Innovation Solution

A computer-implemented method that authenticates users and service providers, generates an access code based on combined user and service provider data, and uses this code to securely access and store data across multiple geographically dispersed storage locations, ensuring data privacy and redundancy through encryption and fragmentation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If data is stored in a centralized location for easy access, then data retrieval efficiency is improved, but security against unauthorized access and internal threats deteriorates

Engineering Contradiction:
Improvedata retrieval efficiencyVSAvoiddata security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent segments data into multiple fragments and stores them in different locations. The data is divided such that no single location contains the complete data, requiring multiple locations to be accessed together to retrieve the full information. This segmentation approach maintains security while enabling efficient retrieval through distributed access.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an authentication system as an intermediary between users and data storage locations. This intermediary verifies user credentials and generates access codes that enable secure retrieval of data fragments. The authentication system mediates access control, ensuring that only authorized users can retrieve data while maintaining efficient access paths.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If data is dispersed across multiple locations for security and redundancy, then resistance to single-point failures is improved, but data access complexity increases

Engineering Contradiction:
Improveresistance to single-point failuresVSAvoiddata access complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication system performs multiple functions: it verifies user credentials, generates access codes, and coordinates data retrieval across multiple locations. This multi-functional approach simplifies the overall access process by consolidating complexity within the authentication system rather than requiring users to manage multiple access paths manually.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system automatically generates access codes and coordinates the retrieval of data fragments from multiple locations without requiring manual intervention. The authentication system self-manages the complexity of distributed data access, making the process transparent to users while maintaining high reliability through geographic dispersion.

Inventive Principle:
Principle #25Self-service

3Reliability

If strong authentication protocols are implemented to verify user identity, then data security is improved, but authentication time and system complexity increase

Engineering Contradiction:
Improvedata securityVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary authentication verification before generating access codes. By pre-verifying user credentials and establishing authenticated sessions, the system reduces the time required during actual data access operations. The heavy authentication work is done in advance, allowing faster subsequent access to dispersed data locations.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8752153B2Accessing data based on authenticated user, provider and system
Publication Date: 2014.06.10 WWPASS CORP
  • US8752153B2 patent drawing
  • US8752153B2 patent drawing
  • US8752153B2 patent drawing

AI summary

A method that includes authenticating an authentication system, a user, and a service provider, generating an access code based on a combination of data related to the authenticated user and data related to the authenticated service provider, and using the access code to access at least some of data storage locations is described herein.