Third-Party Mediator for Secure P2P Medical Data

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Peer-to-peer communication systems lack effective data protection, particularly for sensitive information like medical records, as they rely on direct data circulation between endpoints without a centralized server, increasing the risk of confidential data leakage during real-time communication.

Innovation Solution

Introducing a trusted third-party platform that processes and analyzes sensitive data indirectly under physician control, participating in video conferences to display analysis results without exposing the original medical records, thereby reducing leakage risks and providing additional computation and storage resources for endpoints.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If peer-to-peer communication is used for direct data circulation between endpoints, then operation costs are reduced and multiple users can communicate simultaneously, but data protection capability deteriorates and confidential data leakage risk increases

Engineering Contradiction:
Improvecommunication efficiencyVSAvoiddata protection capability
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent introduces a trusted third-party platform as an intermediary that participates in peer-to-peer communication sessions. This platform receives sensitive data from one endpoint, processes it (e.g., medical record analysis), and transmits only the processed results to the other endpoint. The intermediary maintains data security while enabling communication functionality, resolving the contradiction between direct P2P efficiency and data protection requirements.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a centralized server is introduced to control data circulation and enhance data protection, then data protection capability improves, but operation costs increase and system complexity increases

Engineering Contradiction:
Improvedata protection capabilityVSAvoidsystem structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the centralized server functionality into a lightweight trusted third-party platform that only performs essential data processing and security functions. Rather than implementing a full-featured centralized server, the system divides responsibilities: endpoints handle communication initiation and basic operations, while the third-party platform handles only sensitive data processing. This segmentation maintains data protection without creating the complexity of a traditional centralized server architecture.

Inventive Principle:
Principle #1Segmentation

3Speed

If endpoints store medical records locally for diagnosis, then communication speed is maintained, but data leakage risk increases

Engineering Contradiction:
Improvedata access speedVSAvoiddata leakage risk
Core Design Contradiction:
SpeedVSObject-affected harmful factors

Solution Approach 1:

The patent extracts sensitive data (medical records) from the endpoint environment and processes it through the trusted third-party platform. Only the processed results, not the original sensitive data, are transmitted back to endpoints. This extraction removes the harmful element (sensitive data stored on endpoints) while preserving the useful function (medical diagnosis capability through processed information).

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The system creates and transmits only necessary copies of data - specifically, processed analysis results rather than complete medical records. The trusted third-party platform generates simplified copies containing only diagnostic information needed for consultation, eliminating the need for endpoints to store or handle complete sensitive datasets while maintaining diagnostic functionality.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS9973731B2Participating in a peer-to-peer communication session
Publication Date: 2018.05.15 HCL TECH LTD
  • US9973731B2 patent drawing
  • US9973731B2 patent drawing
  • US9973731B2 patent drawing

AI summary

A third party automatically participates in a peer-to-peer communication session established between a first endpoint and a second endpoint. Once the peer-to-peer communication session is established, a third party receives a first user data provided by the first endpoint, and verifies the first user data. If the verification succeeds, the third party automatically participates in the peer-to-peer communication session.