Server Intermediary for Secure Sensitive Information Association
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing transaction systems face challenges in securely and efficiently managing the transfer of sensitive information across multiple entities within a networked system, particularly in reducing the number of communications containing sensitive information and enhancing security.
Innovation Solution
A computer-implemented method and server computer configuration that utilize two distinct communication channels to securely transfer sensitive information. The method involves a user device receiving a session identifier from a second server, obtaining a Web token and accessing a data entry page from a first server, and then providing second sensitive information via the data entry page and the session identifier to the first server, which associates the information and communicates via separate channels.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If sensitive information is transferred through multiple communication channels in existing transaction systems, then information can be exchanged between entities, but the security is compromised due to increased data exposure and the number of communications increases
Solution Approach 1:
The patent introduces a server as an intermediary that receives sensitive information from multiple entities (user device, second server) through different communication channels and consolidates it into a single association. This intermediary approach reduces the number of direct communications between entities while maintaining security, as the server acts as a trusted mediator that handles the sensitive data associations centrally rather than requiring multiple direct exchanges between participating entities
2Adaptability or versatility
If multiple communication channels are used to transfer sensitive information between entities, then information exchange is enabled, but system complexity increases
Solution Approach 1:
The patent merges multiple communication channels into a centralized association process at the server. Instead of managing separate communications between each entity pair, the server consolidates sensitive information from different channels (user device to server, second server to server) and creates a unified association. This combining approach maintains the adaptability to receive information from multiple sources while reducing the complexity of managing multiple communication pathways
3Productivity
If direct communication between entities is maintained for account updates, then transaction processing is straightforward, but security is reduced due to increased data exposure
Solution Approach 1:
The server acts as an intermediary that enables transaction processing while reducing data exposure. Instead of direct communication between user device and second server for sensitive information exchange, the server mediates by receiving sensitive information from both parties through secure channels and creating associations centrally. This maintains productivity by enabling necessary information exchange for account updates while reducing harmful data exposure through centralized, controlled communication
Data Source
AI summary
Disclosed is a method of managing sensitive information. The method includes receiving, from a second server, a session identifier, after the second server provides to a first server, first sensitive information relating to a user having an account with the second server. The method also includes receiving, from the first server, a Web token and a data entry page, and receiving second sensitive information via the data entry page. The second sensitive information is different than the first sensitive information. The method further comprises providing, to the first server, the second sensitive information via the data entry page, and the session identifier. The first server is programmed to associate the first sensitive information with the second sensitive information. The first server and the second server communicate via a first communication channel and the first server and the user device communicate via a second, different communication channel.


