Mesh Searching Indexing Firewall Content Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems make it difficult for users to access and search content stored behind firewalls in a secure and easy manner, especially when they are outside the network or need to access files from various locations.
Innovation Solution
Implementing a mesh searching technology that indexes metadata from content stored behind firewalls, allowing users to search and access files via a cloud-based index, with permissions checked against metadata, and enabling file sharing through watch folders and cloud storage, while ensuring secure and controlled access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If content is stored behind a firewall for security, then security is improved, but user accessibility and ease of search deteriorates
Solution Approach 1:
The patent introduces an intermediary indexing system that sits between the firewall-protected content and users. The index stores metadata about content behind the firewall, allowing users to search and access content information without needing to directly connect to or breach the firewall. This mediator enables secure content access while maintaining firewall protection.
Solution Approach 2:
The patent extracts metadata from content stored behind the firewall and stores it separately in an index. This separation allows the index to be accessible outside the firewall while the actual content remains protected behind the firewall. Users can search and interact with the extracted metadata without accessing the protected content directly.
2Ease of operation
If custom work is done to enable access to content stores, then accessibility is improved, but complexity and cost of setup increases
Solution Approach 1:
The patent implements a self-service mechanism where the indexing system automatically monitors watch folders for content changes and updates the index without requiring manual configuration or custom work. The system autonomously detects when new content is added or modified and maintains the index, eliminating the need for complex custom setup while maintaining accessibility.
Solution Approach 2:
The patent creates a universal indexing system that can handle multiple content sources and users through a single standardized interface. Rather than requiring custom work for each content store, the system provides a general-purpose solution that works across different scenarios, reducing setup complexity and making the system easier to deploy.
3Reliability
If access is limited to inside the firewall network, then security is maintained, but availability for remote users deteriorates
Solution Approach 1:
The patent uses an index as an intermediary that enables remote users to access content information without being physically present on the network. The index stores metadata that can be queried from any location, and when users find content they need, the system facilitates secure retrieval through the existing firewall infrastructure, maintaining security while enabling remote access.
4Ease of operation
If content is pushed through firewall to users, then accessibility is improved, but firewall security rules and complexity increase
Solution Approach 1:
The patent performs preliminary actions by indexing all content metadata before any user requests are made. This pre-processing creates a ready-to-use index that can quickly respond to user searches without requiring complex real-time firewall rule evaluation. When content needs to be delivered, the system uses the pre-established index information to facilitate delivery through existing firewall rules, reducing the need for additional complex configurations.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Described is a technology by which private content maintained behind a firewall (e.g., in a "mesh") may be searched, browsed, and accessed via an index that exists outside of the firewall. Searching of the index may include checking permissions of a user against permissions associated with metadata in the index, e.g., per watch folder into which file content is added. When content is selected, e.g., by clicking on a search result, a request is made. An application polls for such requests, and when detected, pushes a copy of the content through the firewall to the requestor. The search may be performed over more than one index, with aggregated search results returned.