Dynamic Protocol Generation for Secure Data Exchange

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current data exchange systems have a low security level due to the direct sharing of account and password information between data sender and receiver, making them vulnerable to malicious third-party access during FTP-based data exchanges.

Innovation Solution

A method and apparatus for data exchange that negotiates a default protocol between sender and receiver devices, generating a dynamic protocol to secure data transmission, thereby preventing unauthorized access by using a trusted server and dynamic protocol generator to create a unique protocol for each exchange.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If account and password are directly shared between data sender and receiver, then data exchange can be performed, but security level is low and vulnerable to malicious third-party access

Engineering Contradiction:
Improvedata exchange securityVSAvoidprotocol complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies dynamics by transforming the static account/password authentication mechanism into a dynamic protocol-based system. The security protocol is generated dynamically for each data exchange session, containing time-limited authentication tokens and session-specific parameters, replacing the reusable static credentials with ephemeral dynamic authentication data that expires after use.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent changes parameters by evolving from fixed authentication credentials (account/password) to variable protocol parameters (dynamic tokens, session identifiers, time stamps). The security mechanism transitions from using constant authentication data to using parameters that change with each exchange session, including random-generated authentication codes and time-sensitive tokens.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If a dynamic protocol is generated for each data exchange, then security is enhanced, but the system complexity increases due to protocol negotiation and generation requirements

Engineering Contradiction:
Improvedata exchange securityVSAvoidoperation simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies self-service by enabling the sender and receiver devices to autonomously negotiate and generate their own dynamic security protocols without requiring manual configuration or external intervention. The system automatically performs protocol selection, parameter generation, and authentication token creation, allowing the security mechanism to serve itself without additional operational overhead.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent applies preliminary action by performing protocol negotiation and dynamic protocol generation before the actual data exchange occurs. The authentication tokens and session parameters are established in advance during the protocol negotiation phase, so that when data exchange begins, the security framework is already in place and operational.

Inventive Principle:
Principle #10Preliminary action

3Ease of manufacture

If traditional FTP protocol is used for data exchange, then implementation is simple, but security is insufficient against malicious third-party access

Engineering Contradiction:
Improveimplementation simplicityVSAvoidvulnerability to malicious access
Core Design Contradiction:
Ease of manufactureVSObject-affected harmful factors

Solution Approach 1:

The patent applies composite materials by creating a composite security architecture that integrates multiple security mechanisms within the data exchange protocol. The enhanced protocol combines authentication tokens, encryption parameters, session management, and verification mechanisms into a unified composite security framework that works together to provide comprehensive protection against malicious access.

Inventive Principle:
Principle #40Composite materials

Data Source

PatentUS10419212B2Methods, systems, apparatuses, and devices for securing network communications using multiple security protocols
Publication Date: 2019.09.17 ALIBABA GROUP HOLDING LTD
  • US10419212B2 patent drawing
  • US10419212B2 patent drawing
  • US10419212B2 patent drawing

AI summary

The disclosed embodiments describe a data exchange method, apparatus, and device. In one embodiment, the method is applied to a sender device performing data exchange with a receiver device and comprises: negotiating a default protocol for the data exchange with the receiver device; obtaining a dynamic protocol according to the default protocol; generating an exchange data packet according to the dynamic protocol and to-be-transmitted data; and transmitting the exchange data packet to the receiver device, so that the receiver device receives the exchange data packet using the dynamic protocol generated through the default protocol. By means of the disclosed embodiments, a dynamic protocol is generated through a negotiated default protocol between a sender and a receiver; and data exchange is performed based on the dynamic protocol. Because the dynamic protocol can be dynamically generated when a need for data exchange arises, a malicious third party stealing can be effectively prevented in a communication process of data exchange, thereby enhancing data exchange security.