Secure Context Passing via Embedded File Identifier
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems face challenges in securely passing context information from web browsers to native applications on client devices, leading to user frustration, security concerns, and increased costs due to reliance on browser cookies, plugins, and complex digital signature infrastructures.
Innovation Solution
The system embeds a unique identifier in the file name of a digital file and uses it to securely pass context information by requesting an encryption key from the server, allowing the client device to encrypt and send the identifier back, which then retrieves the context information, eliminating the need for repetitive user input and reducing infrastructure costs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If browser cookies are used to pass information from web browsers to local applications, then information can be accessed by local applications, but security is compromised and reliability depends on browser capabilities
Solution Approach 1:
The patent extracts the identifier from the file name and uses it to retrieve context information from a server, separating the identification function from the storage function. This eliminates the need to store sensitive information in browser cookies while maintaining the ability to pass information securely to local applications.
Solution Approach 2:
The patent introduces a server as an intermediary that stores context information and provides it to local applications based on identifiers. This mediator approach replaces the direct browser-to-application information passing through cookies, improving security by keeping sensitive data on secure servers rather than in browser storage.
2Ease of operation
If browser plugins are used to pass information to local applications, then information can be transmitted, but users must install plugins and browser compatibility becomes an issue
Solution Approach 1:
The patent extracts the identifier from the file name and uses it to retrieve context information from a server, eliminating the need for browser plugins. This approach works across all browsers that support standard HTTP requests, improving compatibility while maintaining information transmission capability.
Solution Approach 2:
The system automatically retrieves context information using the identifier from the file name without requiring user installation or configuration. The server handles the information retrieval process automatically, making the system self-service oriented and compatible with all standard web browsers.
3Ease of operation
If information is embedded within a file before download, then user frustration is decreased, but digital signatures are broken and complex infrastructure is required
Solution Approach 1:
The patent segments the information passing process into two parts: the identifier is embedded in the file name, while the actual context information is stored separately on the server. This segmentation allows the file to maintain its digital signature while still providing the means to retrieve associated information, reducing infrastructure complexity compared to embedding all information within the file.
Solution Approach 2:
The server acts as an intermediary that stores context information and provides it based on the identifier in the file name. This approach avoids breaking digital signatures while still enabling information retrieval, eliminating the need for complex dynamic signing infrastructures that would be required if information were embedded directly in the file.
4Reliability
If context information is passed securely using encryption keys, then security is maintained, but the process requires multiple steps including requesting keys and encrypting identifiers
Solution Approach 1:
The encryption key is requested and obtained in advance before the actual information retrieval process. This preliminary action allows the identifier to be encrypted using a pre-obtained key, simplifying the overall process by separating the key acquisition step from the information retrieval step and allowing the encryption process to be performed efficiently.
Data Source
AI summary
Systems and methods are disclosed for securely passing context information from a server to a client device. In particular, in one or more embodiments, the disclosed systems and methods embed an identifier in a digital file provided to a client device. In one or more embodiments, the disclosed systems and methods utilize the embedded identifier to securely pass context information between a client device and server, such that the client device can utilize the context information with regard to the digital file. In particular, one or more embodiments include systems and methods that securely pass login credentials from a remote server to a client device such that the client device can utilize a digital file to access one or more features of a native software application.


