Secure File Transfer Between Independent Servers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing file transfer methods from one server to another in network-based storage are inefficient, especially for files not stored on user devices, requiring multiple network hops and resource consumption, and lack direct secure transfer capabilities across independent authentication schemes.
Innovation Solution
The implementation of a secure file transfer capability that allows for One-Click or Zero-Click file transfers between servers without user device intervention, using announcement messages with encoded links and challenge-response processes for secure connections, enabling direct file transfers between servers with independent authentication schemes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If files are transferred from other servers or devices through user device intervention, then file transfer can be achieved, but resource consumption and transfer time increase
Solution Approach 1:
The patent introduces an intermediary server that mediates file transfers between source and destination servers without requiring user device intervention. The intermediary receives transfer requests, establishes secure connections, and coordinates the file transfer process, enabling direct server-to-server transfers that eliminate the need for files to traverse user devices, thereby reducing transfer time and network resource consumption
Solution Approach 2:
The file transfer process is segmented into distinct phases: announcement message generation, link propagation, secure connection establishment, and actual file transfer. This segmentation allows each component to be optimized independently and enables parallel processing of multiple transfer operations, improving overall transfer efficiency
2Productivity
If direct secure transfer between servers is implemented, then resource consumption is reduced, but compatibility between independent authentication schemes becomes challenging
Solution Approach 1:
The intermediary server acts as a universal mediator that supports multiple authentication schemes simultaneously. It maintains separate authentication credentials for different servers and manages the complexity of cross-scheme authentication, allowing source and destination servers with independent authentication systems to communicate securely without requiring them to be compatible with each other
Solution Approach 2:
The intermediary server is designed with multi-functionality to handle various authentication protocols and server types. It can authenticate with different servers using their respective authentication schemes while presenting a unified interface for file transfer operations, making the system adaptable to diverse authentication infrastructures
3Productivity
If announcement messages with links are propagated, then file location information is communicated efficiently, but security risks increase
Solution Approach 1:
Secure connection establishment is performed in advance before any file transfer or data exposure occurs. The intermediary server pre-establishes encrypted channels with both source and destination servers, validates authentication credentials, and sets up security parameters before the actual file transfer begins, ensuring that security measures are in place before any potential security risks arise
Solution Approach 2:
The intermediary server acts as a secure gateway that validates and verifies all communication. It encrypts announcement messages and links, verifies the authenticity of receiving servers, and controls data flow between servers. This intermediary layer filters out malicious activities and ensures that only authorized transfers occur, mitigating security risks while maintaining efficient information communication
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A capability is provided for securely transferring a file within network-based storage. A capability is provided for securely transferring a user file of a user from a first server to a second server. The first server may be associated with a first service provider and the second server may be associated with a second service provider. The secure transfer of a user file from the first server to the second server may be performed based on a One-Click File Transfer capability in which only a single click by the user is needed in order for the user file to be transferred. The secure transfer of a user file from the first server to the second server may be performed based on a Zero-Click File Transfer capability in which the user file may be transferred without any interaction by the user.