Information processing apparatus and information processing method

By designing an information processing device that can perform data processing according to user access rights, the problem of difficult to take into account both the speed and security of data provision in the prior art is solved, and data security is ensured quickly while providing data.

CN120201414APending Publication Date: 2025-06-24TOYOTA JIDOSHA KK
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202411288758.X
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Priority Date
2023-12-22
Filing Date
2024-09-14
Publication Date
2025-06-24

AI Technical Summary

Technical Problem

The prior art is difficult to take into account both speed and security when providing data, especially in on-board networks. The demands of data processing and access rights complexity lead to slowing down the speed of data provision and difficult to ensure data security.

Method used

An information processing device is designed, and its control unit is able to acquire the first data collected via the on-board network and generate the second data through the first process. According to the user's access rights, it is determined that the user is a first user or a second user, and when it is determined that the second user, the second data is directly sent, and the second data is second processed, and the access restricted data is deleted or blocked, thereby generating the third data and sending it.

Benefits of technology

It realizes the speed of data provision while ensuring data security, and uniformly implements data processing for all users and switches whether to process access restricted data based on the user's access rights.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120201414A_ABST
    Figure CN120201414A_ABST
Patent Text Reader

Abstract

The invention relates to an information processing apparatus and an information processing method. An information processing apparatus includes a control unit configured to: acquire first data; generating second data by performing first processing on the first data; determining whether the user is a first user whose access to the second data is not restricted or a second user whose access to at least a portion of the second data is restricted; and transmitting second data to a terminal associated with the first user when it is determined that the user is the first user, converting the second data into third data by performing second processing on the second data when it is determined that the user is the second user, and transmitting the third data to the terminal associated with the first user. And transmitting third data to the terminal associated with the second user, the third data being data not including data whose access is restricted.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This disclosure relates to the processing of data. Background Art

[0002] There are many known techniques for processing data according to requirements. Regarding such techniques, for example, Japanese Unexamined Patent Application Publication No. 2023-074377 discloses a data processing device including an arithmetic device and the like. The arithmetic device determines the use of data. When there is a need to process a plurality of data with different uses in the same period, the arithmetic device determines the degree of need for processing and starts processing from the data with a higher degree of need for processing. Summary of the Invention

[0003] An object of this disclosure is to balance the speed and security of data provision.

[0004] One aspect of an embodiment of this disclosure is an information processing device including a control unit configured to: acquire first data collected via a vehicle-mounted network; generate second data by performing a first process on the first data; in response to a data provision request from a terminal associated with a user, determine whether the user is a first user or a second user, where the first user is a user whose access to the second data is unrestricted, and the second user is a user whose access to at least a part of the second data is restricted; and in a case where it is determined that the user is the first user, send the second data to a terminal associated with the first user, and in a case where it is determined that the user is the second user, perform a second process on the second data to convert the second data into third data and send the third data to a terminal associated with the second user, where the third data does not include the data with restricted access.

[0005] In addition, one aspect of the embodiments of the present disclosure is an information processing method, which includes the following steps: obtaining first data collected via a vehicle network; generating second data by performing a first process on the first data; in response to a request for data provision from a terminal associated with a user, determining which one of a first user and a second user the user is, where the first user is a user whose access to the second data is unrestricted, and the second user is a user whose access to at least a part of the second data is restricted; and in the case where it is determined that the user is the first user, sending the second data to the terminal associated with the first user, and in the case where it is determined that the user is the second user, performing a second process on the second data, thereby converting the second data into third data, and sending the third data to the terminal associated with the second user, where the third data is data that does not include the data with restricted access.

[0006] In addition, as another aspect, there are provided a method executed by the above-described device, a program for causing a computer to execute the method, or a computer-readable storage medium non-temporarily storing the program.

[0007] According to the present disclosure, it is possible to balance the speed and security of data provision. BRIEF DESCRIPTION OF THE DRAWINGS

[0008] Hereinafter, with reference to the drawings, the features, advantages, and technical and industrial significance of the exemplary embodiments of the present invention will be described, where the same reference numerals denote the same elements, and:

[0009] Figure 1 is a diagram showing an outline of the processing executed by the server device of the embodiment.

[0010] Figure 2 is a diagram for explaining the components of the server device of the embodiment.

[0011] Figure 3 is a flowchart of the processing executed by the control unit of the server device of the embodiment.

[0012] Figure 4 is a flowchart of the processing for determining the first user and the second user, executed by the control unit of the server device of the embodiment. DETAILED DESCRIPTION OF THE EMBODIMENTS

[0013] There are known devices for processing data.

[0014] For example, consider a case where various data are obtained from the vehicle 10. First, the device communicates with the vehicle 10 to obtain various data on the in-vehicle network. Then, the device processes the various data as needed. For example, the device processes the obtained data into a data form that can be processed by various devices, or deletes or blocks information such as personal information that is not suitable for providing to those without browsing permissions. At this time, the device starts the data processing when a data provision requirement is generated.

[0015] However, if the device performs data processing every time a data provision requirement is generated, there may be duplicate processing, or the time required for data processing may increase. Therefore, there is a problem that data that requires rapid data provision cannot be provided smoothly. In addition, there is also a requirement that, while ensuring the speed of providing data that requires rapid data provision, appropriate processing is performed according to the access rights of the user who is the target of data provision.

[0016] To address such problems, it is preferable that the device uniformly performs processing that is common and necessary for the user who is the target of data provision, and individually determines whether to perform processing for each user regarding the data for which access restrictions are to be imposed.

[0017] The information processing device in this embodiment solves such problems.

[0018] An information processing device according to an aspect of the present disclosure includes a control unit configured to: obtain first data collected via an in-vehicle network; generate second data by performing a first process on the first data; in response to a data provision request from a terminal associated with a user, determine whether the user is a first user or a second user, where the first user is a user whose access to the second data is not restricted, and the second user is a user whose access to at least a part of the second data is restricted; and in a case where it is determined that the user is the first user, send the second data to the terminal associated with the first user, and in a case where it is determined that the user is the second user, perform a second process on the second data to convert the second data into third data, and send the third data to the terminal associated with the second user, where the third data does not include the data for which access is restricted.

[0019] Typically, the first user is a user whose access to the second data is not restricted. The first user is a user who can access all the data included in the second data. For example, the first user is a user who can also access data for which access is restricted for specific users such as personal information.

[0020] Typically, the second user refers to a user whose access to at least a part of the second data is restricted. The second user refers to a user who cannot access data such as personal information included in the second data, which is only accessible to a part of the users.

[0021] The first data refers to the data obtained from the in-vehicle network before the first processing is performed.

[0022] The first processing refers to the processing performed on the first data. The first processing is a processing that is common and necessary when the first user and the second user want to use the data. The first processing can be, for example, data shaping processing or data format conversion processing, etc.

[0023] The second data refers to the data obtained by performing the processing (first processing) that is common and necessary when the first user and the second user want to use the data on the first data.

[0024] Typically, the second processing refers to the processing of removing the information to which the second user's access is restricted from the second data.

[0025] The third data refers to the data obtained by performing the processing (second processing) such as removing the information to which the second user's access is restricted on the second data.

[0026] The second processing can also be, for example, a processing of deleting or masking (mask) the data for which access is to be restricted, such as personal information included in the second data.

[0027] When it is determined that the user is the first user, the control unit sends the second data to the terminal associated with the first user. In addition, when it is determined that the user is the second user, the control unit performs the second processing on the second data to generate the third data, and sends the third data to the terminal associated with the second user. Therefore, the control unit can switch the implementation of the processing of the data to which access restriction is to be imposed according to the category of the user.

[0028] Thus, the information processing apparatus of the present disclosure can accelerate the data providing speed according to the demand and ensure data security.

[0029] In addition, it can also be that in the first processing, the control unit processes the first data so that it can be used at least in the terminal associated with the first user and the terminal associated with the second user, thereby generating the second data.

[0030] Thus, the information processing apparatus of the present disclosure can uniformly perform the data processing that is common and necessary when the first user and the second user want to use the data. Therefore, the information processing apparatus of the present disclosure can prevent the time spent before providing the data to the user from becoming long.

[0031] In addition, it may also be that when the user is included in the list of users whose access to the second data is unrestricted, the control unit determines that the user is the first user; and when the user is not included in the list of users whose access to the second data is unrestricted, the control unit determines that the user is the second user.

[0032] Thus, the information processing apparatus of the present disclosure can switch the implementation of the processing of the data to which access restriction is to be imposed according to the presence or absence of access restriction of the user.

[0033] In addition, it may also be that in the second processing, the control unit deletes or masks the information restricted from being accessed by the second user from the second data, thereby generating the third data.

[0034] Thus, the information processing apparatus of the present disclosure can provide the corresponding user with information that does not include the information restricted from being accessed by the user in the second data.

[0035] In addition, the information processing method of the present disclosure includes the following steps: acquiring first data collected via a vehicle-mounted network; generating second data by performing first processing on the first data; in response to a request for providing data from a user's terminal, determining which one of the first user and the second user the user is, where the first user is a user whose access to the second data is unrestricted, and the second user is a user whose access to at least a part of the second data is restricted; and when it is determined that the user is the first user, sending the second data to the terminal associated with the first user, and when it is determined that the user is the second user, performing second processing on the second data, thereby converting the second data into third data, and sending the third data to the terminal associated with the second user, where the third data is data that does not include the data restricted from being accessed.

[0036] Thus, the information processing method of the present disclosure can achieve the same effect as the above information processing apparatus.

[0037] Hereinafter, specific embodiments of the present disclosure will be described based on the drawings. Unless otherwise specified, the hardware configuration, module configuration, functional configuration, etc. described in each embodiment do not mean that the technical scope of the disclosure is limited thereto.

[0038] Embodiment

[0039] Refer to Figure 1 The outline of the processing performed by the server apparatus of the embodiment will be described. Figure 1It is a diagram showing an overview of the processing performed by the server device 100 representing an embodiment. Here, the server device 100 is an example of the information processing device of the present disclosure. The server device 100 acquires various data from the vehicle 10, appropriately processes the acquired data, and provides it to the user. The server device 100 is configured to communicate with the vehicle 10 and the terminal associated with the user.

[0040] First, the server device 100 communicates with the vehicle 10 to acquire first data that is various data on the in-vehicle network of the vehicle 10. Among the various data, for example, it may include the identifier of the user of the vehicle 10, the speed of the vehicle 10, the destination, the driving history, and the like.

[0041] Next, the server device 100 generates second data, which is data obtained by converting the acquired first data into a form that can be used in the user's terminal. The first data is the data itself generated by sensors or an ECU (Electronic Control Unit) etc. that flows on the in-vehicle network of the vehicle 10, so the user's terminal cannot directly view the first data. In the second data, in addition to including various driving data, personal information such as the identifier of the user of the vehicle 10 and the driving history is also included as it is.

[0042] Next, the server device 100 determines whether the user as the data-providing object is the first user 200, who has unrestricted access to the second data, or the second user 300, who has restricted access to the second data. Here, typically, the first user 200 refers to a user of a connected car etc., and is a user who requests data such as driving information like vehicle speed as needed. In addition, typically, the second user 300 refers to a user who uses the driving data etc. of the vehicle 10 for system development, and is a user who requests data provision for use in system development.

[0043] When the server device 100 determines that the user is the first user 200, it provides the second data as it is to the terminal associated with the first user 200. Since the server device 100 provides the second data to the first user 200 without performing new processing on the second data, data can be provided quickly.

[0044] When the server device 100 determines that the user is the second user 300, it generates third data obtained by deleting or masking the items of information in the second data to which the second user 300 has restricted access. Then, the server device 100 provides the third data instead of the second data to the terminal associated with the second user 300.

[0045] Thus, the server device 100 switches whether to perform the processing of data with access restrictions imposed according to whether the user is subject to access restrictions. Thereby, in the server device 100, for data that requires fast provision, it can be provided quickly, and for data that requires ensuring security, it can process and provide items with access restrictions set.

[0046] According to such a configuration, the server device 100 can accelerate the data provision speed according to requirements and ensure data security.

[0047] Next, each element constituting the system will be described in detail. Figure 2 It is a diagram for explaining the constituent elements of the server device 100 of the embodiment.

[0048] The server device 100 of the present embodiment includes a control unit 110, a storage unit 120, and a communication unit 130.

[0049] The control unit 110 is implemented by a processor such as a CPU (Central Processing Unit) or a GPU (Graphics Processing Unit) and a memory. The control unit 110 includes an acquisition unit 111, a generation unit 112, a determination unit 113, and a transmission unit 114 as functional modules. These functional modules can also be implemented by the control unit 110 executing a program.

[0050] The acquisition unit 111 acquires first data as various data on the in-vehicle network of the vehicle 10 from the vehicle 10. Among the various data, for example, it may include an identifier of the user of the vehicle 10, the speed of the vehicle 10, the departure and destination, the number of braking times, the image of the in-vehicle camera, the driving history, etc. The acquisition unit 111 communicates with the vehicle 10 via the communication unit 130 described later to acquire the first data.

[0051] The generation unit 112 generates second data by performing a first process on the first data. Here, the first process is a process of processing the first data into a form that can be used in a terminal associated with the user who is the object of the provided data. The second data is, for example, data in a form that can be used in terminals associated with the first user 200 and the second user 300 respectively.

[0052] In addition, when the determination unit 113 described later determines that the user is the second user 300, the generation unit 112 performs a second process on the second data, thereby converting the second data into third data. Here, the second process is a process of deleting or masking items of information to which the second user 300 is restricted from accessing from the second data. The third data is data generated based on the second data and does not include data to which the second user 300 is restricted from accessing.

[0053] The determination unit 113 determines which of the first user 200 and the second user 300 the user is. Here, the first user 200 refers to a user who has unrestricted access to the second data, and the second user 300 refers to a user whose access to at least a part of the second data is restricted. When there is a request for providing the second data from a terminal associated with the user, the determination unit 113 makes the above determination. Specifically, it may be that when the user who has sent the request for providing the second data is included in the list of users who have unrestricted access to the second data, the determination unit 113 determines the user as the first user 200. In addition, it may be that when the user who has sent the request for providing the second data is not included in the list of users who have unrestricted access to the second data, the determination unit 113 determines the user as the second user 300.

[0054] The sending unit 114 sends the second data to the terminal associated with the first user 200. And, the sending unit 114 sends the third data to the terminal associated with the second user 300. The sending unit 114 communicates with the terminal associated with the first user 200 or the terminal associated with the second user 300 via the communication unit 130 described later, and thereby sends the data as the object.

[0055] The storage unit 120 is a main storage device such as a RAM (Random Access Memory) or a ROM (Read-Only Memory), an EPROM (Erasable Programmable Read-Only Memory), a hard disk drive, and a removable medium, etc. An operating system (OS), various programs, various tables, etc. are stored in the auxiliary storage device, and each function consistent with the specified purpose of each part of the control unit 110 can be realized by executing the programs stored therein. However, part or all of the functions may also be realized by a hardware circuit such as an ASIC (Application Specific Integrated Circuit) or an FPGA (Field Programmable Gate Array).

[0056] The storage unit 120 stores data, etc. used or generated in the processing performed by the control unit 110. In addition, the storage unit 120 may temporarily store the first data obtained from the vehicle 10.

[0057] The communication unit 130 is composed of a communication circuit that performs wireless communication. For example, the communication unit 130 can be a communication circuit that performs wireless communication using the fourth-generation mobile communication technology (4G: 4th Generation), or can be a communication circuit that performs wireless communication using the fifth-generation mobile communication technology (5G: 5th Generation). In addition, the communication unit 130 can be a communication circuit that performs wireless communication using the Long Term Evolution (LTE) technology, or can be a communication circuit that performs communication based on the Low Power Wide Area (LPWA). In addition, the communication unit 130 can also be a communication circuit that performs wireless communication using Wi-Fi (registered trademark).

[0058] Next, the specific content of the processing performed by the server device 100 will be described. Figure 3 It is a flowchart of the processing executed by the control unit 110 of the server device 100 according to the embodiment.

[0059] For example, it can be that when the server device 100 receives a request for data provision from a terminal associated with a user, it starts Figure 3 the processing shown.

[0060] First, in S10, the acquisition unit 111 acquires first data from the vehicle 10. The acquisition unit 111 communicates with the vehicle 10 via the communication unit 130 to acquire first data including the driving data of the vehicle 10 and the user information of the vehicle 10, etc.

[0061] Next, in S11, the generation unit 112 performs a first process on the first data to generate second data. Specifically, it can be that the generation unit 112 processes the first data so that it can be utilized at least in a terminal associated with the first user 200 or a terminal associated with the second user 300, thereby generating second data.

[0062] Specifically, the first process can also include flattening of hierarchical data, deletion of rows with no values, deletion of useless tags, removal of deviation values or outliers of latitude and longitude data, correction of timestamps, aggregation or deletion of duplicate data. In addition, it can be that the first process further includes data shaping processes such as conversion of tag names, deletion of outliers, linear interpolation of data, left-right inversion processing of data, zero-point correction, and smoothing processing, or processing such as data format conversion. The terminal associated with the user cannot directly view the first data itself, and cannot view it unless it is the second data after the first process on the first data.

[0063] Next, in S12, the determination unit 113 determines which of the first user 200 and the second user 300 the user is. As described above, the first user 200 is a user whose access to the second data is not restricted. As described above, the second user 300 is a user whose access to at least a part of the second data is restricted.

[0064] In this step, if it is determined that the user is the first user 200, the process moves to S13.

[0065] In this step, if it is determined that the user is the second user 300, the process moves to S14.

[0066] When the process moves to S13, the sending unit 114 sends the second data to the terminal associated with the first user 200. The sending unit 114 sends the second data to the terminal associated with the first user 200 via the communication unit 130.

[0067] When the process moves to S14, the generation unit 112 performs a second process on the second data to generate third data. Here, the second process refers to a process of converting the second data into third data, where the third data is data that does not include information for which the access of the second user 300 is restricted. Specifically, the generation unit 112 may also delete or mask the information for which the access of the second user 300 is restricted from the second data.

[0068] In S14, in response to a request from the user, third data is generated each time, whereby the capacity of the storage unit 120 for storing the third data can be reduced.

[0069] Next, in S15, the sending unit 114 sends the third data to the terminal associated with the second user 300. The sending unit 114 sends the third data to the terminal associated with the second user 300 via the communication unit 130.

[0070] Thereby, the server device 100 can uniformly perform processing that is common and necessary for the users who are the data provision targets on the acquired data. Also, regarding the processing of data for which access restrictions are set, the server device 100 can switch whether to perform the processing based on the presence or absence of the user's access restrictions. That is, in the server device 100, for data that requires fast provision speed, it can be provided quickly, and for data that requires countermeasures for personal information, etc., it can be provided after performing data processing. Therefore, the server device 100 can accelerate the data provision speed as needed and ensure data security.

[0071] Next, the process of the determination unit 113 of the control unit 110 of the server device 100 for determining the user category will be described. Figure 4It is a flowchart of the process for the control unit 110 of the server device 100 of the embodiment to determine the first user 200 and the second user 300. In Figure 4 The process described in Figure 3 is a process that explains in detail the process of S12 described in

[0072] First, in S20, the determination unit 113 determines whether the user who has sent a data provision request is restricted from accessing the second data. If the determination unit 113 determines that the user is restricted from accessing the second data, this step becomes an affirmative determination.

[0073] For example, it may be that if the user who has sent the data provision request is included in the list of users whose access to the second data is not restricted, which is referred to by the determination unit 113, it is determined that the user is the first user 200. And it may be that if the user is not included in the list of users whose access to the second data is not restricted, which is referred to by the determination unit 113, it is determined that the user is the second user 300. It may be that the acquisition unit 111 acquires the list of users whose access to the second data is not restricted stored in an external device. In addition, it may be that the storage unit 120 stores the list acquired by the acquisition unit 111. Then, it may be that the determination unit 113 refers to the list stored in the storage unit 120.

[0074] If an affirmative determination is made in this step, the process proceeds to S22.

[0075] If a negative determination is made in this step, the process proceeds to S21.

[0076] When the process proceeds to S21, the determination unit 113 determines that the user is the first user 200. After that, the process proceeds to Figure 3 S13.

[0077] When the process proceeds to S22, the determination unit 113 determines that the user is the second user 300. After that, the process proceeds to Figure 3 S14.

[0078] Thus, the server device 100 can switch the implementation of the processing of the data to which access restriction is to be imposed according to the presence or absence of the user's access restriction.

[0079] Variation

[0080] The above-described embodiment is only an example, and the present disclosure can be implemented with appropriate changes without departing from its gist.

[0081] For example, the processes and means described in the present disclosure can be freely combined and implemented as long as there is no technical contradiction.

[0082] In addition, the processing described as being performed by one device can also be executed by multiple devices in a shared manner. Or, the processing described as being performed by different devices can also be executed by one device. In a computer system, the hardware configuration (server configuration) by which each function is implemented can be flexibly changed.

[0083] The present disclosure can also be implemented by supplying a computer program having the functions described in the above embodiments to a computer, and causing one or more processors included in the computer to read and execute the program. Such a computer program can be provided to the computer either by a non-transitory computer-readable storage medium connectable to the system bus of the computer or via a network. The non-transitory computer-readable storage medium includes, for example, any type of disk such as a magnetic disk (e.g., a floppy disk (registered trademark), a hard disk drive (HDD), etc.), an optical disk (e.g., a CD-ROM, a DVD disk, a Blu-ray disk, etc.), a read-only memory (ROM), a random access memory (RAM), an EPROM, an EEPROM, a magnetic card, a flash memory, an optical card, and any type of medium suitable for storing electronic commands.

Claims

1. An information processing device comprising a control unit, The control unit is configured as follows: Acquiring first data collected via the vehicle network; generating second data by performing a first process on the first data; In response to a request for data provision from a terminal associated with a user, determining whether the user is a first user or a second user, wherein: The first user is a user whose access to the second data is not restricted, and the second user is a user whose access to at least a part of the second data is restricted; as well as If it is determined that the user is the first user, the second data is sent to a terminal associated with the first user, When it is determined that the user is the second user, the second data is subjected to a second processing to convert the second data into third data, and the third data is sent to a terminal associated with the second user, wherein the third data is data that does not include the data to which access is restricted.

2. The information processing device according to claim 1, wherein: In the first process, the control unit generates the second data by processing the first data so as to be usable in at least a terminal associated with the first user and a terminal associated with the second user.

3. The information processing device according to claim 1 or 2, wherein: the control unit determines that the user is the first user when the user is included in a list of users whose access to the second data is not restricted, If the user is not included in the list of users whose access to the second data is not restricted, the control section determines that the user is the second user.

4. The information processing device according to claim 1 or 2, wherein: In the second process, the control section deletes or masks information that access by the second user is restricted from the second data, thereby generating the third data.

5. An information processing method comprising the following steps: Acquiring first data collected via the vehicle network; generating second data by performing a first process on the first data; In response to a request for data provision from a terminal associated with a user, determining whether the user is a first user or a second user, wherein the first user is a user whose access to the second data is not restricted and the second user is a user whose access to at least a portion of the second data is restricted; and If it is determined that the user is the first user, the second data is sent to a terminal associated with the first user, When it is determined that the user is the second user, the second data is subjected to a second processing to convert the second data into third data, and the third data is sent to a terminal associated with the second user, wherein the third data is data that does not include the data to which access is restricted.

Citation Information

Patent Citations

  • Data processing apparatus

    JP2023074377A