Logical Data Isolation for Intermittent Backup Connectivity
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Traditional air gaps provide poor recovery point objectives (RPO) and recovery time objectives (RTO) in securing data backups, making them vulnerable to malicious actors who can exploit persistent connections for data compromise or ransomware attacks.
Innovation Solution
Implementing a logical data isolation with intermittent connectivity by creating three data copies, using a management resource to control communication sessions between primary and remote sites with pseudo-random start times and dynamic durations, and enabling/disabling routable ports to prevent unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional air gap is used to isolate computing device from source system, then security is improved, but recovery point objective (RPO) and recovery time objective (RTO) deteriorate
Solution Approach 1:
The patent introduces a storage system as an intermediary between the source system and computing device. This storage system maintains multiple copies of data and can restore the source system to any point in time within the retention period, eliminating the need for physical tape transport while maintaining security through controlled access mechanisms.
Solution Approach 2:
The storage system performs preliminary actions by continuously maintaining multiple copies of data at different points in time. This allows immediate restoration to any previous state without requiring physical media transport, thus improving RTO while maintaining security through controlled access.
2Ease of operation
If persistent connections are used for data replication, then data accessibility is improved, but vulnerability to malicious actors increases
Solution Approach 1:
The patent implements periodic establishment and termination of network connections between storage systems. Connections are established only when data replication or restoration is needed and are terminated afterward. This periodic connectivity maintains data accessibility while minimizing exposure to malicious actors by ensuring no persistent connections exist to exploit.
Solution Approach 2:
The network connection state is made dynamic rather than static. Connections are automatically established and terminated based on operational needs, transforming the system from having persistent vulnerable connections to having transient, need-based connections that reduce attack surface while maintaining functionality.
Data Source
AI summary
An intermittent network connection between a source system and a destination system is established by establishing a first connection from a management resource to a first port of the destination system, causing a second port of the destination system to be enabled including by providing an instruction via the first connection to the first port of the destination system, establishing a second connection from the management resource to a first port of a source system, causing a second port of the source system to be enabled including by providing an instruction via the second connection to the first port of the source system, registering the destination system with the source system, and causing a third connection to be established between the second port of the source system and the second port of the destination system for transferring data from the source system to the destination system. In response to a determination that a communication session of the third connection has been completed, the intermittent network connection between the source system and the destination system is terminated.


