Dynamic Protocol Generation for Secure Data Exchange
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current data exchange systems have a low security level due to the direct sharing of account and password information between data sender and receiver, making them vulnerable to malicious third-party access during FTP-based data exchanges.
Innovation Solution
A method and apparatus for data exchange that negotiates a default protocol between sender and receiver devices, generating a dynamic protocol to secure data transmission, thereby preventing unauthorized access by using a trusted server and dynamic protocol generator to create a unique protocol for each exchange.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If account and password are directly shared between data sender and receiver, then data exchange can be performed, but security level is low and vulnerable to malicious third-party access
Solution Approach 1:
The patent applies dynamics by transforming the static account/password authentication mechanism into a dynamic protocol-based system. The security protocol is generated dynamically for each data exchange session, containing time-limited authentication tokens and session-specific parameters, replacing the reusable static credentials with ephemeral dynamic authentication data that expires after use.
Solution Approach 2:
The patent changes parameters by evolving from fixed authentication credentials (account/password) to variable protocol parameters (dynamic tokens, session identifiers, time stamps). The security mechanism transitions from using constant authentication data to using parameters that change with each exchange session, including random-generated authentication codes and time-sensitive tokens.
2Reliability
If a dynamic protocol is generated for each data exchange, then security is enhanced, but the system complexity increases due to protocol negotiation and generation requirements
Solution Approach 1:
The patent applies self-service by enabling the sender and receiver devices to autonomously negotiate and generate their own dynamic security protocols without requiring manual configuration or external intervention. The system automatically performs protocol selection, parameter generation, and authentication token creation, allowing the security mechanism to serve itself without additional operational overhead.
Solution Approach 2:
The patent applies preliminary action by performing protocol negotiation and dynamic protocol generation before the actual data exchange occurs. The authentication tokens and session parameters are established in advance during the protocol negotiation phase, so that when data exchange begins, the security framework is already in place and operational.
3Ease of manufacture
If traditional FTP protocol is used for data exchange, then implementation is simple, but security is insufficient against malicious third-party access
Solution Approach 1:
The patent applies composite materials by creating a composite security architecture that integrates multiple security mechanisms within the data exchange protocol. The enhanced protocol combines authentication tokens, encryption parameters, session management, and verification mechanisms into a unified composite security framework that works together to provide comprehensive protection against malicious access.
Data Source
AI summary
The disclosed embodiments describe a data exchange method, apparatus, and device. In one embodiment, the method is applied to a sender device performing data exchange with a receiver device and comprises: negotiating a default protocol for the data exchange with the receiver device; obtaining a dynamic protocol according to the default protocol; generating an exchange data packet according to the dynamic protocol and to-be-transmitted data; and transmitting the exchange data packet to the receiver device, so that the receiver device receives the exchange data packet using the dynamic protocol generated through the default protocol. By means of the disclosed embodiments, a dynamic protocol is generated through a negotiated default protocol between a sender and a receiver; and data exchange is performed based on the dynamic protocol. Because the dynamic protocol can be dynamically generated when a need for data exchange arises, a malicious third party stealing can be effectively prevented in a communication process of data exchange, thereby enhancing data exchange security.


