Upload Security Screening via Device Identity Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
There is a need for improved upload security in mobile applications to prevent unauthorized imposition and unwanted content sharing, particularly in mobile photos applications, where users risk receiving unwanted or excessive content uploads without permission.
Innovation Solution
A method and system for upload security that involves a server communicating with mobile devices, where the server identifies the mobile device used for an upload message, checks opt-in parameters set by the user, and only allows uploads from authorized devices within specified limits, optionally rerouting unauthorized uploads to a standard email address.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If upload security screening is implemented to prevent unauthorized imposition, then security is improved, but device complexity increases
Solution Approach 1:
The patent introduces an intermediary security screening system that acts as a mediator between upload requests and the final upload process. This intermediary layer checks opt-in parameters and mobile device identities without requiring complex changes to the core upload functionality, thereby improving security while managing system complexity through modular design.
Solution Approach 2:
The system performs preliminary actions by pre-configuring opt-in parameters and mobile device identities before upload operations occur. This preliminary setup allows the security screening to function efficiently during actual uploads without adding real-time complexity, as the validation rules are already established in advance.
2Reliability
If opt-in parameters and device identity checking are implemented, then unauthorized imposition is prevented, but ease of operation deteriorates
Solution Approach 1:
The system implements self-service by automatically checking mobile device identities against opt-in parameters without requiring manual intervention. This automated verification process prevents unauthorized uploads while maintaining operational simplicity, as the security checks occur transparently in the background without burdening the user.
Solution Approach 2:
The security screening system provides feedback by automatically accepting or rejecting upload requests based on pre-configured parameters. This feedback mechanism ensures security requirements are met while maintaining ease of operation, as users receive clear outcomes without needing to understand or configure the underlying security logic.
3Reliability
If upload limits are enforced during a given period, then unwanted excessive content is blocked, but productivity decreases
Solution Approach 1:
The system implements periodic action by enforcing upload limits within specific time periods rather than continuously. This approach allows controlled upload throughput during authorized periods while blocking excessive content, balancing content control with productive upload operations through time-based regulation.
Solution Approach 2:
The system changes parameters by adjusting upload limits and time period configurations to optimize both content control and productivity. By modifying these parameters, the system can enforce security policies while maintaining acceptable upload throughput, allowing flexible adjustment between control and productivity based on specific requirements.
Data Source
AI summary
The need for upload security arises during content sharing between users in communication link with each other and a server. In one embodiment, providing the upload security involves the server identifying a mobile device that sends an upload message destined to a user. Providing the upload security further involves the server accessing opt-in parameters predetermined by the user, determining if the identity of the sending mobile device is included in the opt-in parameters, and, if so, allowing the upload to the user's account, otherwise blocking the upload. The opt-in parameters include the identity of mobile devices that are authorized by the user to upload data to the user's account. In one embodiment, the communication link includes a wireless carrier network with capability for security screening of the upload message before it reaches the server based on the identity of the wireless carrier network.


