Secure P2P Document Transfer via Security State Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Despite peer-to-peer data transmission having a lower risk of information leakage compared to electronic mail, there is still a risk due to differing information security states between transmission source and destination apparatuses, particularly when these states are not adequately maintained.

Innovation Solution

An information processing system comprising a first apparatus for storing an encrypted document, a management apparatus that assesses the information security states of both the transmission source and destination apparatuses, and only permits transmission if both states meet the required security criteria, ensuring secure document transfer.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Object-affected harmful factors

If peer-to-peer transmission is used to reduce transmission path security risks, then the risk of data leakage during transmission is reduced, but the information security states of transmission source and destination apparatuses may be insufficient

Engineering Contradiction:
Improvetransmission path security riskVSAvoidapparatus information security state
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The management apparatus performs preliminary security state verification of both transmission source and destination apparatuses before permitting document transmission. This advance checking ensures that only apparatuses meeting security requirements can participate in transmission, preventing security issues before they occur

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

A management apparatus is introduced as an intermediary between transmission source and destination apparatuses. This mediator verifies the security states of both parties and controls whether transmission can proceed, adding a layer of security management without interfering with the peer-to-peer transmission path

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If transmission permission is granted without verifying security states, then transmission convenience is improved, but the risk of unauthorized transmission increases

Engineering Contradiction:
Improvetransmission convenienceVSAvoidunauthorized transmission risk
Core Design Contradiction:
Ease of operationVSObject-generated harmful factors

Solution Approach 1:

The system implements feedback control where the management apparatus continuously monitors and verifies the security states of apparatuses before and during transmission processes. Based on this feedback, transmission permissions are dynamically granted or denied, balancing convenience with security

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10917408B2Secure document management through verification of security states of information processing apparatuses in peer-to-peer transmission of encrypted documents
Publication Date: 2021.02.09 FUJIFILM BUSINESS INNOVATION CORP
  • US10917408B2 patent drawing
  • US10917408B2 patent drawing
  • US10917408B2 patent drawing

AI summary

An information processing system includes a first apparatus, a second apparatus, and a management apparatus, in which the first apparatus includes a unit that notifies the management apparatus of a first state of the first apparatus regarding information security requirements, the second apparatus includes a unit that notifies the management apparatus of a second state of the second apparatus regarding the information security requirements, and the management apparatus includes an issue unit that issues transmission permission for transmission of an encrypted document from the first apparatus to the second apparatus related to a request for transmission permission in a case where both of a first state sent from the first apparatus which is the transmission source and a second state sent from the second apparatus which is the transmission destination satisfy the information security requirements in response to the request for transmission permission from the first apparatus.