Electronic Discovery Facility for Secure Cloud Content Exchange

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for secure content sharing across diverse entities are cumbersome, requiring new infrastructure, software, and processes, and lack efficient solutions for secure storage and access management, especially in global network environments.

Innovation Solution

A secure data exchange system that allows users to access and manage content through a network-based content storage service, with an electronic discovery facility that tracks storage and access, and provides secure access to authorized agents for tasks like investigations and disputes, using encryption and IRM encoding.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a new secure network infrastructure and common software package are established between entities, then security and controlled content sharing are improved, but the time and expense of wiring networks and agreeing on standards increase

Engineering Contradiction:
ImprovesecurityVSAvoidtime and expense of wiring network
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces a gateway server as an intermediary component that enables secure content sharing between entities without requiring direct network wiring or common software packages. The gateway server receives content from a first entity, stores it securely, and distributes it to authorized second entities, thereby eliminating the need for complex network infrastructure while maintaining security through centralized control and authentication mechanisms

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The gateway server provides universal access capabilities across diverse platforms and devices. It supports multiple content types, handles various authentication methods, and serves multiple entities simultaneously through a single unified system, replacing the need for entity-specific network infrastructure and software agreements

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If secure encryption processes are implemented for Internet content sharing, then security is improved, but the process becomes cumbersome and unproductive

Engineering Contradiction:
ImprovesecurityVSAvoidease of content sharing
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system implements automated authentication and authorization mechanisms that eliminate manual security configuration. Users simply upload content to the gateway server or access content through standard web interfaces, while the system automatically handles encryption, decryption, and access control based on pre-configured permissions, making secure sharing as easy as standard web operations

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Security permissions and authentication credentials are pre-configured before content sharing begins. The gateway server is预先 equipped with encryption keys, user credentials, and access policies, so that when content sharing occurs, no additional security setup is needed during the actual content transfer process

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If content is shared across diverse storage facilities, then accessibility is improved, but tracking content versions and user access becomes difficult

Engineering Contradiction:
Improveaccessibility across storage facilitiesVSAvoidtracking content versions and user access
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The gateway server implements comprehensive logging and tracking mechanisms that provide feedback on all content operations. Every upload, download, modification, and access event is recorded with user identification, timestamps, and content version information. This centralized logging system maintains complete audit trails regardless of how many diverse storage facilities are involved, enabling full tracking of content provenance and access history

Inventive Principle:
Principle #23Feedback

4Reliability

If a centralized gateway server is used for content storage and sharing, then security control and tracking are improved, but infrastructure complexity increases

Engineering Contradiction:
Improvesecurity controlVSAvoidinfrastructure complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The gateway server acts as a centralized intermediary that consolidates security control functions. Rather than requiring complex peer-to-peer security configurations between multiple entities, all security operations (authentication, authorization, encryption, logging) are centralized in the gateway server, simplifying the overall infrastructure to a single managed component that handles all security requirements

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10346937B2Litigation support in cloud-hosted file sharing and collaboration
Publication Date: 2019.07.09 INTRALINKS INC
  • US10346937B2 patent drawing
  • US10346937B2 patent drawing
  • US10346937B2 patent drawing

AI summary

In embodiments, the disclosure provides a method for managing content, including providing an electronic discovery facility of a secure data exchange environment, wherein at least one of a plurality of users of a first entity utilizes a network-based content storage service of a second entity to store content, and wherein the storage and access of the content with the network-based content storage service is tracked by the electronic discovery facility. The method includes receiving, at the electronic discovery facility, a discovery request, the discovery request comprising a request for a legal counsel of a third entity to access content stored on the network-based content storage service, the discovery request being, for example, in association with a litigation discovery action in relation to the first entity. Further, the method includes identifying and securing, by the electronic discovery facility and as a result of the discovery request, at least one item of content on the network-based content storage service; and providing, by the electronic discovery facility of the secure data exchange environment, access to the identified and secured item of content stored on network-based content storage service to the legal counsel of the third entity.