Server File Restriction via HTTP Headers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing information processing systems cannot effectively prevent information leakage when document files are accessed and saved or printed from client devices, especially with the increasing concerns of personal data protection laws.
Innovation Solution
An information processing server system that includes a file storage section, a specification section for processing restrictions, and a transmission section that sends processing restriction information via an HTTP header to the client device, restricting saving and printing processes by specifying user-level and folder-level permissions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If document files are stored at a server and accessed by client devices, then administration of document files is simplified and administrative burdens are reduced, but information leakage cannot be prevented when files are saved or printed at client devices
Solution Approach 1:
The patent segments the file management system into server-side storage and client-side display, with processing restriction information transmitted separately through HTTP headers. This allows the server to maintain centralized control while the client receives only the necessary file data and associated restrictions, preventing information leakage without compromising administrative simplicity.
Solution Approach 2:
The patent introduces processing restriction information as an intermediary element transmitted between the server and client. This intermediary carries the control instructions that prevent saving and printing operations at the client device, thereby preventing information leakage while maintaining the simplicity of centralized file administration.
2Object-affected harmful factors
If processing restriction information is transmitted to client devices, then information leakage is prevented, but system complexity increases
Solution Approach 1:
The patent makes the HTTP header serve multiple functions: it transmits both file data and processing restriction information through the same communication channel. This multi-functionality prevents information leakage without adding separate complex transmission mechanisms, thereby limiting the increase in system complexity.
Solution Approach 2:
The patent creates a copy of the file data along with associated processing restriction information and transmits this copy to the client device. The client device then uses this copy to display the file while enforcing restrictions, preventing information leakage without requiring complex server-side intervention for each restriction enforcement.
Data Source
AI summary
An information processing server including: a file storage section that stores a data file; a specification section that specifies processing restriction information for restricting at least one of saving processing and printing processing of the data file at a client device that is connected to the information processing server via a network; a restriction information storage section that stores the processing restriction information that is specified; and a transmission section that, when transmission of the data file is requested by the client device, transmits file management information including the processing restriction information for the data file that has been stored at the restriction information storage section, and the data file that has been stored at the file storage section, to the client device via the network, is provided.


