Proxy Server Secure Data Access for Mobile Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Multi-purpose mobile devices often lack adequate security for business data, risking exposure if lost or stolen, and existing solutions either compromise user experience or pose security risks by storing data locally or remotely.

Innovation Solution

A proxy server system that securely manages business data access by rendering data remotely and transmitting it to the device in a secure client application, minimizing local storage and controlling data access based on user authentication and security policies, allowing business data to be temporarily displayed and then deleted.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If business data is stored locally on the mobile device, then data access speed and user experience are improved, but security risk increases if the device is lost or stolen

Engineering Contradiction:
Improvedata access speedVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent divides business data into multiple encrypted segments or shards, storing different portions across secure cloud services rather than all in one location. This segmentation allows fast access through selective retrieval while reducing security risk since no single point contains all data.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces secure cloud services as intermediaries between the user and business data. These services act as mediators that provide fast access when needed while maintaining security through encryption and controlled access protocols, eliminating the need to choose between speed and security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If business data is stored remotely on secure servers, then security is improved, but data access speed and user experience deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoiddata access speed
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent implements preliminary actions by pre-loading and caching frequently accessed business data into secure cloud services before it is needed. This advance preparation ensures fast access speeds when users need the data while maintaining remote storage for security, as the data is already positioned for rapid retrieval.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

Secure cloud services act as intermediaries that bridge remote storage and fast access. These services maintain encrypted remote storage for security while providing optimized data retrieval mechanisms that deliver fast access speeds, effectively mediating between the conflicting requirements of security and performance.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If users are given full control over their mobile device, then ease of operation and personalization are improved, but security control over business data deteriorates

Engineering Contradiction:
Improveuser controlVSAvoiddata protection
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces secure cloud services as intermediaries that manage business data security independently of user device controls. These services enforce security policies, encryption, and access controls at the service layer, allowing users full device control for personalization while maintaining robust data protection through the intermediary security layer.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10409982B2Secure data access for multi-purpose mobile devices
Publication Date: 2019.09.10 ZIXCORP SYST
  • US10409982B2 patent drawing
  • US10409982B2 patent drawing
  • US10409982B2 patent drawing

AI summary

According to some embodiments, a proxy server comprises one or more processors operable to establish communication with a secure client application of a device. The client is configured with a partition that contains data received from the proxy server within the secure application. If the client passes authentication, the server communicates preview information to the client previewing files that the server received from a business server on behalf of the client. The client requests a selected file. The server renders the selected file into a first portion and a second portion based on the immediate display capabilities of the client. The server communicates the first portion, determines that a trigger point was reached, and then communicates the second portion in response to the trigger point being reached. The client is configured to delete the first portion and the second portion in response to a completion event.