Remote Header File Security System
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing security systems for protecting proprietary information on private networks are insufficient, as they rely on passwords and cryptographic means that are difficult to update once files are secured, leading to security breaches when access criteria need to be altered.
Innovation Solution
A file security system that centralizes the storage and management of security information, allowing access criteria to be modified remotely through a remote header identifier within the secured file, enabling changes without altering the secured files themselves.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If cryptographic techniques are used to secure files, then security and protection of proprietary information is improved, but the ability to update access criteria after file securing is worsened
Solution Approach 1:
The patent divides the security information into two parts: (1) a header portion embedded in the secured file containing a unique identifier, and (2) a remote header stored externally containing the actual access criteria. This segmentation allows the access criteria to be updated in the remote header without modifying the secured file itself, thus maintaining both security and adaptability.
Solution Approach 2:
The patent introduces a remote header as an intermediary between the secured file and the access criteria. The remote header acts as a mediator that stores access criteria externally and can be updated independently, allowing the system to change access rules without affecting the encrypted file content or requiring re-encryption.
2Stability of the object's composition
If security information is embedded within secured files, then self-containment is improved, but the complexity of modifying security criteria is worsened
Solution Approach 1:
The patent segments the security information structure by separating the file header (containing identifier) from the access criteria (stored in remote header). This allows the secured file to remain self-contained and stable while the access criteria can be modified externally through updates to the remote header, reducing the complexity of modification operations.
3Ease of operation
If passwords are used for access control, then ease of operation is improved, but security reliability is worsened when passwords are leaked or detected
Solution Approach 1:
The patent replaces the mechanical password-based access control system with a cryptographic key-based system. Instead of relying on passwords that can be leaked, the system uses encrypted keys stored in the remote header that can be securely managed and updated. The access control is achieved through cryptographic operations rather than password verification, enhancing security reliability while maintaining ease of operation through automated key-based authentication.
Data Source
AI summary
An improved file security system that manages secured files (documents) is disclosed. The file security system provides centralized management and storage of security information that can be referenced by secured files. In other words, a secured file need not itself contain security information that is needed to determine whether access to the secured file is to be permitted. That is, at least a portion of the security information can be remotely stored and accessed by way of an identifier that is provided within the secured file. By centralizing storage of security information, the file security system is able to subsequently modify access criteria for secured files (documents) without having to physically make modifications to the secured files.


