Virtual Media Folder Mounting for Secure Server Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional virtual media systems in KVM switch configurations face issues with reliability and security, as they allow entire physical storage devices to be mapped as virtual drives, exposing sensitive data and risking device crashes during write operations due to poor error handling.
Innovation Solution
A virtual media method and apparatus that implements a folder-mount function, allowing selective access to specific folders or files on a client computer to be presented as virtual media on a server computer, using a graphical user interface for drag-and-drop operations, thereby enhancing security and reliability by isolating sensitive data and improving error handling through temporary data areas.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If entire physical storage devices are mapped as virtual drives, then accessibility and ease of operation are improved, but security and reliability deteriorate due to exposure of sensitive data and risk of device crashes during write operations
Solution Approach 1:
The patent divides the physical storage device into multiple folders, allowing selective mounting of individual folders as virtual drives rather than mapping the entire storage device. This segmentation enables users to expose only specific folders to remote computers, improving security while maintaining ease of access for authorized data. The folder-level isolation prevents accidental or malicious writes to the entire storage device, thereby improving reliability.
Solution Approach 2:
The patent applies different access permissions and mounting configurations to different folders within the storage device. Each folder can be selectively mounted or unmounted as a virtual drive, allowing local quality control over data exposure. This enables sensitive folders to remain protected while non-sensitive folders are accessible, resolving the contradiction between ease of operation and security/reliability.
2Ease of operation
If entire physical storage devices are mapped as virtual drives, then ease of operation is improved, but security deteriorates due to exposure of sensitive data
Solution Approach 1:
The storage device is segmented into multiple folders with selective mountability. Instead of mapping the entire storage device as a single virtual drive, the system allows individual folders to be mounted as separate virtual drives. This segmentation enables users to expose only necessary folders to remote computers, maintaining simplicity of operation while protecting sensitive data in unmounted folders.
Solution Approach 2:
The patent extracts specific folders from the physical storage device and presents them as virtual drives to remote computers. By taking out only the necessary folders for sharing and leaving sensitive folders on the local machine, the system maintains ease of operation for authorized data while preventing exposure of sensitive information. This extraction approach directly addresses the security concern without complicating the mounting process.
3Reliability
If folder-mount function is implemented, then security and reliability are improved, but device complexity increases due to selective mounting requirements
Solution Approach 1:
The folder-mount system enables users to perform selective mounting of folders based on their own security and access requirements. The system provides the capability for users to mount or unmount specific folders as virtual drives, giving them control over data exposure without requiring complex centralized management. This self-service approach improves reliability through selective exposure while keeping the interface user-friendly, thereby not significantly increasing operational complexity.
Solution Approach 2:
The folder-mount function serves multiple purposes: it enables selective data exposure for security, provides error handling for reliability, and maintains ease of operation through a user-friendly interface. By making the mounting system multi-functional, the patent addresses security and reliability concerns without requiring separate complex systems, thereby minimizing the increase in device complexity.
Data Source
AI summary
A graphical user interface used in a virtual media system for allowing a server computer to access objects (files and folders) on storage devices of a client computer. The server is controlled by input signals from the client. The desktop of the client displays a first file management window showing objects on the storage devices, and a second window representing a desktop of the server. Using input devices connected to the client, a user selects objects in the first window and drags and drops them on the second window. In response, the client performs a virtual media mounting process to present the selected objects to the server as objects on a local drive of the server, without presenting any unselected content on the storage devices. The local drive is shown in the second window on the client's desktop to allow the user to explore its content.


