Collaboration provision device, data flow provision device, and collaboration provision method

Through collaborative provisioning devices, collaborate among different data circulation platforms, the complexity of cross-platform data sharing is solved and flexible and efficient data sharing is achieved.

CN120226007APending Publication Date: 2025-06-27NIPPON TELEGRAPH & TELEPHONE CORP
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202280101857.5
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2022-11-17
Publication Date
2025-06-27

AI Technical Summary

Technical Problem

When sharing data between different data circulation platforms, the existing technology requires significantly modifying the system or mastering other platforms, and the strategies are different in form and recommended methods, which leads to difficulty in sharing data.

Method used

Through the collaborative provisioning device, the first data circulation platform cooperates with the second data circulation platform, and uses the first connection part and the second connection part to form a protocol with the user, convert and relay messages respectively, to realize cross-platform data sharing.

Benefits of technology

Data sharing among different data circulation platforms is realized, which reduces the complexity of each enterprise's individual corresponding to multiple platforms, and improves the flexibility of data utilization.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120226007A_ABST
    Figure CN120226007A_ABST
Patent Text Reader

Abstract

A cooperation provision device (30) is provided with: a first connection unit (31) that is connected to a data flow platform (100) and forms a policy protocol with users (A, B); and a second connection unit (32) which is connected to the data flow platform (200) and serves as a protocol in which the users (A, B) and the users (C, D) form a policy. And a conversion unit (33) that converts a message transmitted and received between the first connection unit (31) and the second connection unit (32) into a form of a data flow platform as a transmission destination and transfers the converted message. When the user B uses the data of the user C, the second connection unit (32) acquires the data of the user C according to the policy, and the first connection unit (31) stores the data of the user C in a database (140) for B cooperation provided in the data flow platform (100), and provides the data of the user C to the user B according to the policy in the data flow platform (100). When the user D uses the data of the user A, the first connection unit (31) acquires the data of the user A from the data flow platform (100) following the policy in response to a request from the user D to the second connection unit (32) following the policy, and the second connection unit (32) provides the data of the user A to the user D.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to a collaborative provision device, a data circulation provision device, and a collaborative provision method. Background Art

[0002] In recent years, with the popularization of network services and the Internet of Things (IoT), various data have been collected. By mutually carrying the data collected by each enterprise and analyzing them, effective utilization of the data can be achieved. As a technology for promoting data sharing between enterprises, a data circulation platform that securely shares data while ensuring data sovereignty has been provided. Data sovereignty refers to the right of a data owner to control and manage their own data, as well as the right to be subject to the laws and governance of the country where the data is collected. In a data circulation platform, it is possible to connect several to tens of thousands of enterprises or more.

[0003] The data circulation platform of Non-Patent Document 1 stores a user's data and manages access. If an agreement to share data is formed between users, the data can be shared on the data circulation platform.

[0004] The data circulation platform of Non-Patent Document 2 does not store a user's data but guarantees an agreement between users. When an agreement is formed between users, the data is shared between users in accordance with the agreement.

[0005] Prior Art Documents

[0006] Non-Patent Documents

[0007] Non-Patent Document 1: "Features of Smart Data Platform - Smart Data Platform KnowledgeCenter", NTT Communications Corporation, Internet <URL: https: / / sdpf.ntt.com / feature / >

[0008] Non-Patent Document 2: "IDS Reference Architecture Model 3.0", International Data Spaces Association,

[0009] https: / / internationaldataspaces.org / wp-content / uploads / IDS-Reference-Archite cture-Model-3.0-2019.pdf Summary of the Invention

[0010] Problems to be Solved by the Invention

[0011] In the case of sharing data between users on different data circulation platforms, consider any user connecting to the data circulation platform of another party. However, in order for each enterprise to correspond to other data circulation platforms individually, it is necessary to significantly modify the system or be proficient in other data circulation platforms. Users hope to reach a data sharing strategy agreement on the data circulation platform they are connected to in order to utilize the data.

[0012] In addition, between different data circulation platforms, the strategy proposed by one data circulation platform is not in a form that can be directly proposed to another data circulation platform in the same form, and it may not be possible to form a strategy agreement.

[0013] Moreover, the data circulation platform of Non-Patent Document 1 stores users' data, while the data circulation platform of Non-Patent Document 2 does not store users' data, resulting in problems with different data processing.

[0014] The present invention has been completed in view of the above circumstances, and its object is to share data between different data circulation platforms.

[0015] Means for Solving the Problem

[0016] A collaborative provision device according to one aspect of the present invention is used to enable a first data circulation platform and a second data circulation platform to collaborate and provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform. The collaborative provision device includes: a first connection unit that forms an agreement on a first sharing condition with the first user in the first data circulation platform; and a second connection unit that forms an agreement on a second sharing condition with the second user in the second data circulation platform. By reaching an agreement on the first sharing condition and the second sharing condition, an agreement on a sharing condition via the collaborative provision device is formed between the first user and the second user. The sharing condition agreed upon between the user utilizing the data and the collaborative provision device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaborative provision device.

[0017] A method for collaborative provision according to one embodiment of the present invention enables collaboration between a first data circulation platform and a second data circulation platform to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform. The collaborative provision method includes the following steps: forming an agreement on a first sharing condition with the first user in the first data circulation platform of the collaborative provision device; and forming an agreement on a second sharing condition with the second user in the second data circulation platform of the collaborative provision device. By reaching an agreement on the first sharing condition and the second sharing condition, an agreement on a sharing condition via the collaborative provision device is formed between the first user and the second user. The sharing condition agreed upon between the user using the data and the collaborative provision device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaborative provision device.

[0018] Advantages of the Invention

[0019] According to the present invention, it is possible to share data between different data circulation platforms. Brief Description of the Drawings

[0020] Figure 1 A diagram for explaining the first data circulation platform.

[0021] Figure 2 A diagram for explaining the second data circulation platform.

[0022] Figure 3 A diagram for explaining an example of a user of the first data circulation platform using data of a user of the second data circulation platform.

[0023] Figure 4 A diagram showing an example of a policy correspondence table.

[0024] Figure 5 A timing diagram showing an example of the process of agreeing on a data sharing policy between a user of the first data circulation platform and a user of the second data circulation platform.

[0025] Figure 6 A timing diagram showing an example of the process of a user of the first data circulation platform using data of a user of the second data circulation platform.

[0026] Figure 7 A timing diagram showing an example of the process of a user of the first data circulation platform using data of a user of the second data circulation platform.

[0027] Figure 8 A diagram for explaining an example of a user of the second data circulation platform using data of a user of the first data circulation platform.

[0028] Figure 9 It is a timing diagram showing an example of the process of agreeing on a data sharing policy between users of a first data circulation platform and users of a second data circulation platform.

[0029] Figure 10 It is a timing diagram showing an example of the process of a user of a first data circulation platform using data of a user of a second data circulation platform.

[0030] Figure 11 It is a diagram showing an example of the structure of a conversion unit.

[0031] Figure 12 It is a diagram showing an example of a policy.

[0032] Figure 13 It is a diagram showing an embodiment of sharing data between Company E using the first data circulation platform and Company F using the second data circulation platform 200.

[0033] Figure 14 It is a diagram for explaining an example of sharing data between users of the first data circulation platform.

[0034] Figure 15 It is a diagram showing an example of a policy correspondence table.

[0035] Figure 16 It is a timing diagram showing an example of the process of agreeing on a data sharing policy between users of different data circulation platforms.

[0036] Figure 17 It is a timing diagram showing an example of the process of sharing data between users of different data circulation platforms.

[0037] Figure 18 It is a timing diagram showing an example of the process of sharing data between users of different data circulation platforms.

[0038] Figure 19 It is a diagram for explaining an example of sharing data between users of the second data circulation platform.

[0039] Figure 20 It is a timing diagram showing an example of the process of agreeing on a data sharing policy between users of different data circulation platforms.

[0040] Figure 21 It is a timing diagram showing an example of the process of sharing data between users of different data circulation platforms.

[0041] Figure 22 It is a diagram for explaining an example of sharing data between users of the second data circulation platform.

[0042] Figure 23This is a timing chart showing an example of the process of sharing data between users on different data circulation platforms.

[0043] Figure 24 This is a diagram showing an example of the hardware structure of the collaborative provision device. Detailed implementation

[0044] Before describing the collaborative provision device according to the embodiment of the present invention, the first data circulation platform and the second data circulation platform will be described.

[0045] [First data circulation platform]

[0046] Referring to Figure 1 , the data sharing using the first data circulation platform 100 will be described. The data circulation platform 100 ensures the data sharing policy by storing the users' data and managing the access to the data. The data circulation platform in Non-Patent Document 1 corresponds to the first data circulation platform 100. In the Figure 1 example, user B uses the data of user A via the data circulation platform 100. That is, user A is the provider of the data, and user B is the user of the data. User A and user B are respectively people belonging to different enterprises or groups. Here, it is assumed that user A belongs to enterprise A and user B belongs to enterprise B.

[0047] Users A and B communicate with the data circulation platform 100 using the connection parts 150A and 150B respectively. For example, the connection parts 150A and 150B have the function of an HTTP client, send requests to the HTTP server of the data circulation platform 100, and receive responses. The connection parts 150A and 150B have an interface for user operations and are terminals that can use the client software for communicating with the data circulation platform 100. The connection parts 150A and 150B may also provide an application programming interface (API) for connecting to other devices. The form of the messages sent and received between the connection parts 150A and 150B and the data circulation platform 100 follows the form of the API of the data circulation platform 100.

[0048] The data circulation platform 100 includes an authentication part 110, a policy management part 120, a policy application part 130, and a database 140.

[0049] The authentication part 110 authenticates the connection parts 150A and 150B. For authentication, for example, OpenID Connect can be used. Other authentication protocols can also be used. After authentication, the connection parts 150A and 150B represent that they are legitimate users by sending information such as the token obtained when the authentication is successful in the communication with other functional parts of the data circulation platform 100.

[0050] The database (for Company A) 140 is a database or folder path dedicated to Company A and stores the data held by User A (Company A). The data stored in the database (for Company A) 140 can only be browsed by users belonging to Company A. User A uses the connection unit 150A to store data in the database 140. Specifically, the connection unit 150A sends a data transmission message to the database 140 to store the data held by User A in the database 140. The data transmission message includes the data held by User A, the folder path for saving the data, and permission information. The permission information is, for example, user IDs, role IDs, group IDs of the people who can view the data, and information such as readable or writable indicating the usage permissions of the data. When the data circulation platform 100 receives the data transmission message, the data contained in the data transmission message is stored in the enterprise-specific or group-specific database 140. In addition, although not shown, the data of Company B is stored in the database 140 dedicated to Company B.

[0051] When User B uses the data of User A, User B proposes a policy indicating the data provision conditions and usage conditions to User A through the data circulation platform 100. By User A approving this policy, an agreement related to data sharing is formed between User A and User B. User B can use the data held by User A in accordance with the agreed-upon policy. The policy refers to the data provision conditions and usage conditions, such as the scope of data that can be used, the people who can use the data, the period during which the data can be used, and the operations that can be performed on the data.

[0052] When User B proposes a policy to User A, the connection unit 150B sends a policy proposal message for commissioning data sharing of User A to the policy management unit 120. The policy proposal message includes a policy recorded in the form of JSON or the like. For example, the policy includes the data usage purpose, the identification information of the policy proposal itself, the identification information of the entity of the data provider (enterprise ID, user ID, role ID, group ID, etc.), the identification information of the data for the shared object (enterprise ID, user ID, role ID, group ID, etc.), the method of sharing data (link method that enables reference to the data itself, copy method that enables copying the data at that time point and referring to the data, etc.), the identification information of the entity of the data user (enterprise ID, user ID, role ID, group ID, etc.), and information on the usage permissions of the data for the shared object (readable, readable and writable, number of read and write times, period during which it can be read and written). The policy may also contain other information.

[0053] The connection unit 150A sends a request to obtain a policy list to the policy management unit 120 and obtains the policy list as a response. In addition, when a new policy is proposed, the policy management unit 120 may also send a new policy or a policy list including the new policy to the connection unit 150A. The connection unit 150A presents the policy list to User A and accepts User A's approval. If User A confirms and approves the content of the policy proposed by User B based on the information included in the policy list, the connection unit 150A sends a policy approval message to the policy management unit 120. In addition, when User A does not approve the content of the policy, the connection unit 150A sends a policy rejection message to the policy management unit 120.

[0054] When the policy management unit 120 receives the policy approval message, it saves the information of the approved policy in the policy application unit 130. When the policy is saved in the policy application unit 130, User B can access the data held by User A in accordance with the policy.

[0055] After the policy protocol, when User B uses the data, User B requests the data from the data circulation platform 100. Specifically, the connection unit 150B sends a data request message for the data held by User A stored in the database 140 to the policy application unit 130. The form of the data request message follows the API of the data circulation platform 100. For example, the data request message includes the identification information of the entity of the data provider, the identification information of the data for the shared object, and the usage method (read, read / write, etc.). The data request message may also include other information.

[0056] The policy application unit 130 determines whether the content of the data request message follows the policy held by the policy application unit 130. For example, the policy application unit 130 searches for a policy that matches the content of the data request message from the multiple policies it holds, and determines whether the entity of the data user recorded in the searched policy is the same as the source of the data request message and whether the request is within the scope of the usage permission for the data of the shared object. The data request message may also include a policy ID for determining the policy.

[0057] When the data request message follows the policy, the policy application unit 130 obtains the data from the database 140 and sends the data to the connection unit 150B.

[0058] Through the above processing, User B can use the data held by User A.

[0059] In addition, when the policy agreement is formed, the policy application unit 130 can copy the data of the shared object from the database 140 dedicated to Company A to the shared database (not shown), or can configure a link to the data in the shared database. In the case of using the shared database, when the policy application unit 130 receives a data request message, it obtains the data from the shared database and sends it.

[0060] [Second Data Circulation Platform]

[0061] Next, refer to Figure 2 to describe the data sharing using the second data circulation platform 200. The data circulation platform 200 does not store the users' data, ensures that there is an agreement on the sharing conditions of the data among the users, and provides the circulation of the data. The data circulation platform in Non-Patent Document 2 is equivalent to the second data circulation platform 200. In Figure 2 the example, User D uses the data of User C. That is, User C is the provider of the data, and User D is the user of the data. User C and User D are respectively people belonging to different enterprises or groups. Here, User C belongs to Enterprise C, and User D belongs to Enterprise D.

[0062] Users C and D respectively use the connection parts 250C and 250D to communicate with other users connected to the data circulation platform 200. For example, the connection parts 250C and 250D exchange authentication tokens between the connection parts 250C and 250D, confirm the legitimacy of each other, send requests, and receive responses, thereby forming a policy agreement and sharing data. The connection parts 250C and 250D have interfaces for user operations and are terminals that can use the client software for communicating with other users connected to the data circulation platform 200. The connection parts 250C and 250D can also provide APIs for connecting to other devices. As the connection parts 250C and 250D, the International Data Spaces (IDS) connectors in Non-Patent Document 2 can be used. The form of the messages transmitted and received between the connection parts 250C and 250D is the form specified by the data circulation platform 200.

[0063] The data circulation platform 200 includes an authentication department 210. The authentication department 210 has a mechanism for issuing certificates such as a Certificate Authority (CA) and a mechanism for issuing tokens such as a Dynamic Attribute Provisioning Service (DAPS) for non-patent literature 2. The authentication department 210 issues certificates and information for token confirmation (the public key or certificate of the authentication department itself, etc.) to the connection departments 250C and 250D. The connection departments 250C and 250D hold certificates and information for token confirmation. The connection departments 250C and 250D authenticate the certificates they hold to the authentication department 210, request tokens, and obtain authentication tokens. After authentication, when communicating with the connection departments of other users, the connection departments 250C and 250D send the tokens obtained when authentication is successful to indicate their own legitimacy. The connection departments 250C and 250D use token confirmation information to verify the tokens received from the connection departments of other users, thereby confirming that the tokens are legitimate tokens issued by the data circulation platform 200.

[0064] User C registers information (metadata) about the data provided by User C in the connection department 250C. For example, the metadata includes a Uniform Resource Identifier (URI) for obtaining the data, the people who can view the data, and usage permissions such as read and write. The metadata may also include other information.

[0065] When User D uses the data of User C, User D proposes a policy indicating the data provision conditions and usage conditions to User C. By User C approving this policy, an agreement related to data sharing is formed between User C and User D. User D can use the data held by User C in accordance with the agreed-upon policy.

[0066] The formation of the policy agreement takes place between the connection departments 250C and 250D that have mutually verified their legitimacy. The connection department 250C on the data providing side has a policy management department 251C and a policy application department 252C. The policy management department 251C forms the policy agreement. The policy application department 252C sends data in accordance with the policy after the agreement.

[0067] When User D proposes a policy to User C, the connection department 250D sends a policy proposal message for entrusting the sharing of User C's data to the policy management department 251C of the connection department 250C. The policy proposal message includes a policy indicating the data provision conditions and usage conditions.

[0068] The connection unit 250C obtains a list of policies from the policy management unit 251C, presents the list of policies to user C, and accepts the approval of user C. In addition, when a new policy is proposed, the policy management unit 251C can also send a new policy or a list of policies including the new policy to the connection unit 250C. When user C confirms and approves the content of the policy proposed by user D based on the information included in the list of policies, the policy management unit 251C sends a policy approval message to the connection unit 250D, and saves the information of the approved policy to the policy application unit 252C. When the policy is saved in the policy application unit 252C, user D can obtain the data held by user C in accordance with the policy. The policy application unit 252C can also attach a policy ID to the information of the policy after reaching an agreement to maintain the policy. As the policy ID, a resource ID indicating the data held by user C can also be used. The policy ID can also be notified to user D. In addition, in the case where user C does not approve the content of the policy, the policy management unit 251C can also send a policy rejection message to the connection unit 250D.

[0069] After the policy agreement, when user D uses the data, user D requests the data from the connection unit 250C. Specifically, the connection unit 250D sends a data request message for the data held by user C to the policy application unit 252C of the connection unit 250C. The form of the data request message is the form specified by the data circulation platform 200. For example, the data request message is a message for requesting data including the policy ID after the agreement.

[0070] The policy application unit 252C determines whether the content of the data request message complies with the policy held by the policy application unit 252C. For example, the policy application unit 252C searches for the policy ID included in the data request message from the multiple policies held, and determines whether the entity of the data user recorded in the searched policy is the same as the source of the data request message, and whether it is a request within the scope of the usage right for the data for the shared object.

[0071] When the data request message complies with the policy, the policy application unit 252C requests and obtains the data held by user C from the connection unit 250C, and sends the data to the connection unit 250D.

[0072] Through the above processing, user D can use the data held by user C.

[0073] [Collaboration between data circulation platforms using a collaborative provision device]

[0074] Next, a collaborative provision device according to an embodiment of the present invention will be described. When it is desired to share data between users of different data circulation platforms, the data circulation platforms cannot communicate with each other, so it is impossible to directly exchange control messages of a protocol for data sharing conditions, and it is also impossible to share data according to the data sharing conditions after the protocol.

[0075] As a solution, it is considered that an arbitrary user connects to the data circulation platform of the other party. However, in order for each enterprise to individually correspond to other data circulation platforms, it is necessary to perform these operations for the number of data circulation platforms, such as registration applications for connecting to multiple data circulation platforms, provision of connection systems, and operation. In addition, in each data circulation platform, since the forms of policies for data sharing, recommendation methods, data models for sending and receiving data, data formats, etc. may be different, even for the same held data and the same data sharing conditions, in each enterprise, the data sharing conditions are described in different formats for each data circulation platform, and data cannot be shared using the data circulation platform to which the enterprise of the data sharing destination belongs without converting to different data forms.

[0076] As another solution, a method is considered as follows: By providing an intermediary system that connects different data circulation platforms to each other, in a state where a user is connected to a single data circulation platform, control messages of a protocol for data sharing conditions with users of different data circulation platforms are exchanged to share data. To achieve this, it is considered necessary to configure the intermediary system as follows: Register or system-connect the information of all participants of one data circulation platform as information that can be processed in the other data circulation platform, simulate as if all users of this data circulation platform use the other data circulation platform, and also be able to convert the control messages and data sent in one data circulation platform into control messages and data that can be processed in the other data circulation platform for exchange during the sending and receiving of control messages and data. However, in this state, the intermediary system needs to manage / convert the information of all users of multiple data circulation platforms, be able to send and receive while converting messages with each other, and the more the number of interconnected data circulation platforms increases, the more the information to be managed, conversion rules, and the scale of the system for implementing these functions increase. In this method, regardless of whether users need to connect to each other, the system resources required by the intermediary system increase as the number of users increases.

[0077] In this embodiment, a collaborative providing device is provided, which relays messages between different data circulation platforms 100 and 200 to achieve data sharing between the data circulation platforms 100 and 200. Specifically, the data circulation platform 100 is extended, and the collaborative providing device acting as user A or user B is provided on the data circulation platform 200. In the data circulation platform 100, the collaborative providing device acts as a partner of user A or user B (referred to as "A collaboration" and "B collaboration"). A and B collaborations are registered on the data circulation platform 100 as other organizations different from users A and B. In the data circulation platform 100, a policy agreement is formed between the collaborative providing device and users A and B, and in the data circulation platform 200, a policy agreement is formed between the collaborative providing device and users C and D. The collaborative providing device collaborates the policies of the data circulation platform 100 with the policies of the data circulation platform 200, and converts and relays the messages sent and received between the data circulation platforms 100 and 200. Hereinafter, it is assumed that users A and B are users of the data circulation platform 100, and users C and D are users of the data circulation platform 200. The data circulation platform 100 includes a storage unit, and provides data circulation by storing the user's data in the storage unit and managing access. The data circulation platform 200 does not store the user's data, and provides data circulation by ensuring an agreement on the sharing conditions of data between users. Examples of user B using user C's data and user D using user A's data are described. In addition, since the data circulation platforms 100 and 200 have been described, repeated descriptions are omitted here.

[0078] [Example of User B Using User C's Data]

[0079] Refer to Figure 3 , and an example of user B of the data circulation platform 100 using user C's data of the data circulation platform 200 is described.

[0080] For user C of the data circulation platform 200, the collaborative providing device 30 acts as user B. The collaborative providing device 30 negotiates a policy with user C, requests data from user C, and receives data from user C.

[0081] For user B of the data circulation platform 100, the collaboration providing device 30 acts as collaboration B of the partner of user B. A database 140 dedicated to B collaboration is configured in the data circulation platform 100. A folder path dedicated to B collaboration can also be configured. The collaboration providing device 30 stores the data received from user C of the data circulation platform 200 as B collaboration in the database 140 dedicated to B collaboration. B collaboration is, for example, a virtual data collaboration organization of user B. B collaboration is substantially the same as user B, but on the data circulation platform 100, B collaboration and user B are distinguished as different organizations. The access authority of the database 140 dedicated to B collaboration is independent of the database dedicated to user B on the data circulation platform 100. That is, user B does not have access rights to the database 140 dedicated to B collaboration. User B can utilize the data of user C stored in the database 140 in accordance with the policy agreed upon between user B and B collaboration in the data circulation platform 100. Hereinafter, the structure of the collaboration providing device 30 will be described.

[0082] Figure 3 The collaboration providing device 30 includes a first connection unit 31, a second connection unit 32, and a conversion unit 33.

[0083] The first connection unit 31 authenticates the authentication unit 110 in a manner capable of connecting to the data circulation platform 100 and acts as B collaboration, which is the partner of user B in the data circulation platform 100.

[0084] When a policy is negotiated between user B and user C, the first connection unit 31 detects a new policy proposal of user B through a notification from the data circulation platform 100 or acquisition of a policy list, and extracts a policy proposal for sharing the data held by the entrusted user C from the information included in the policy list. The first connection unit 31 sends the extracted policy proposal to the second connection unit 32 via the conversion unit 33, and sends the policy approval message received from the second connection unit 32 via the conversion unit 33 to the data circulation platform 100. The first connection unit 31 sends the policy approval message converted by the conversion unit 33 to the data circulation platform 100, thereby forming a policy agreement between user B and the first connection unit 31 (B collaboration) in the data circulation platform 100.

[0085] In addition, the first connection unit 31 stores the data received from user C in the database 140.

[0086] The second connection unit 32 displays the certificate held by the second connection unit 32 to the authentication unit 210 of the data circulation platform 200 for authentication in order to be able to communicate with each user of the data circulation platform 200, requests a token, and acquires the token. The second connection unit 32 can communicate with the connection unit 250C by exchanging tokens with the connection unit 250C of user C and mutually confirming the legitimacy.

[0087] The second connection part 32 sends the policy suggestion of user B received via the conversion part 33 to the connection part 250C as a policy suggestion message, and sends the policy approval message of user C received from the connection part 250C to the first connection part 31 via the conversion part 33. User C approves the policy suggestion message through the connection part 250C, thereby forming a policy agreement between the second connection part 32 and user C in the data circulation platform 200.

[0088] The second connection part 32 requests data from the connection part 250C in accordance with the policy, and sends the data received from the connection part 250C to the first connection part 31 via the conversion part 33.

[0089] The conversion part 33 converts the form of the messages transmitted and received between the data circulation platform 100 and the data circulation platform 200. For example, when the messages are represented in JSON form in the data circulation platform 100 and in a proprietary form in the data circulation platform 200, the conversion part 33 converts the messages forwarded from the data circulation platform 100 to the data circulation platform 200 from JSON form to the proprietary form, and converts the messages forwarded from the data circulation platform 200 to the data circulation platform 100 from the proprietary form to JSON form. In addition, when the terms used between the data circulation platform 100 and the data circulation platform 200 are different, the conversion part 33 converts the terms to match the forwarding destination.

[0090] When the conversion part 33 sends the policy suggestion message of user B received from the first connection part 31 to the second connection part 32, it converts the policy from the form of the data circulation platform 100 to the form of the data circulation platform 200. For example, rules for converting the policy of the data circulation platform 100 to the policy of the data circulation platform 200 are predetermined, and the conversion part 33 converts the policy suggestion message into the form of the data circulation platform 200 according to the rules. The conversion of the policy is not limited to this, and natural language processing based on AI can be used to interpret the content of the policy and convert the form, or other methods can be used. In the data circulation platform 100, a policy agreement is formed between user B and the first connection part 31 through the pre-conversion policy. In the data circulation platform 200, a policy agreement is formed between user C and the second connection part 32 through the post-conversion policy. Thus, via the cooperation providing device 30, an agreement on data sharing conditions is formed between user B and user C.

[0091] In addition, the policies of the data circulation platform 100 and the data circulation platform 200 do not necessarily need to correspond one-to-one. Depending on the data circulation platforms 100 and 200, there are differences in the definition of language and the granularity of the corresponding conditions, and it may not be possible to reach an agreement with exactly the same policies in each of the data circulation platforms 100 and 200. When the purpose is to ensure data sovereignty, it is necessary to comply with the data usage methods stipulated by the data owner (provider) or the country or region where the data is collected. Therefore, the policy agreed upon between user B who uses data in the data circulation platform 100 and the collaborative providing device 30 needs to be the same as or more restricted than the policy agreed upon between user C who provides data in the data circulation platform 200 and the collaborative providing device 30. A more restricted policy means that the range in which data can be used under the policy agreed upon in the data circulation platform 100 on the data user side is included in the range in which data can be used under the policy agreed upon in the data circulation platform 200 on the data provider side.

[0092] For example, assume that there is a policy of "sharing data only with users having attribute A" in the data circulation platform 100. Assume that the users corresponding to attribute A in the data circulation platform 100 are user X and user Y. On the other hand, assume that the data circulation platform 200 does not have an attribute corresponding one-to-one to attribute A, and users can specify attribute B. Assume that the users corresponding to attribute B are user X, user Y, and user Z. In addition, user X, user Y, and user Z are all users who use the data circulation platform 100. In this case, the conversion unit 33 converts the policy of "sharing data only with users having attribute A" into the policy of "sharing data only with users having attribute B". As a result, in the data circulation platform 200, an agreement is reached on the policy that user X, user Y, and user Z can use the data, and in the data circulation platform 100, an agreement is reached on the policy that user X and user Y can use the data. As a result, user X and user Y can use the data, but user Z cannot use the data. In addition, the conversion unit 33 can also notify the data provider of the difference between the policies before and after the conversion. In the above example, when the conversion unit 33 sends the converted policy proposal message to the data provider of the data circulation platform 200, it can also notify that in the data circulation platform 100, only user X and user Y can use the data and user Z cannot use the data.

[0093] Give another example. Assume that there is a policy of "being able to share until 11:59:59" in the data circulation platform 100. On the other hand, in the data circulation platform 200, it is not possible to specify the time in seconds for the policy. In this case, the conversion unit 33 rounds up the seconds and below of the policy of "being able to share until 11:59:59" to "being able to share until 12:00:00" and converts the policy.

[0094] The conversion unit 33 has a correspondence table that corresponds the policies agreed upon in the data circulation platform 100 with the policies agreed upon in the data circulation platform 200, and collaborates the policies of the data circulation platform 100 with the policies of the data circulation platform 200. Figure 4 An example of the policy correspondence table is shown. The policy correspondence table shown in this figure includes the shared destination enterprise name, the shared destination user name, the path information, the first policy ID, the second policy ID, the shared source enterprise name, and the shared source user name. The shared destination enterprise name and the shared destination user name are the enterprise name and user name of the data user. The shared source enterprise name and the shared source user name are the enterprise name and user name of the data provider. The path information is information indicating the location where the data is stored on the data circulation platform 100, and represents the storage location of the data agreed upon by the policy. The first policy ID is an ID used to determine the policy agreed upon in the data circulation platform 100. The second policy ID is an ID used to determine the policy agreed upon in the data circulation platform 200.

[0095] The data obtained from the data circulation platform 200 following the policy of the second policy ID is stored in the data circulation platform 100 following the policy of the first policy ID corresponding to the second policy ID. For example, when the user C of the data circulation platform 200 obtains data following a policy, the conversion unit 33 retrieves the policy in the correspondence table, converts the data transmission message in such a way that the data is stored at the position indicated by the path information of the retrieved record, and forwards the data transmission message to the first connection unit 31.

[0096] In the case where the data held by the user C is periodically added or updated, the conversion unit 33 may also periodically request data from the second connection unit 32 and forward the obtained data to the first connection unit 31.

[0097] Next, with reference to Figure 5 the sequence diagram shown, an example of the policy agreement formation process will be described. The connection unit 150B of the user B and the first connection unit 31 are completed with authentication by the data circulation platform 100. The connection unit 250C of the user C and the second connection unit 32 are completed with mutual authentication by exchanging the tokens obtained from the data circulation platform 200.

[0098] In step S101, the connection unit 150B sends a policy proposal message for commissioning to share the data held by the user C to the policy management unit 120. The policy proposal message is recorded in the format of the data circulation platform 100.

[0099] In step S102, the first connection unit 31 obtains a policy list from the policy management unit 120. In step S103, the policy proposal message for commissioning to share the data held by the user C is extracted from the information included in the policy list, and the extracted policy proposal message is sent to the conversion unit 33.

[0100] In step S104, the conversion unit 33 converts the received policy recommendation message from the format of the data circulation platform 100 to the format of the data circulation platform 200. In step S105, the converted policy recommendation message is sent to the second connection unit 32. The conversion unit 33 can convert the content of the policy to conform to the data circulation platform 200.

[0101] In step S106, the second connection unit 32 sends the policy recommendation message to the policy management unit 251C of the connection unit 250C. The policy management unit 251C holds the policy recommendation message.

[0102] In step S107, the connection unit 250C obtains a policy list from the policy management unit 251C. User C confirms the policy recommendations for User C included in the policy list.

[0103] When User C approves the policy, in step S108, the connection unit 250C sends a policy approval message to the policy management unit 251C.

[0104] When receiving the policy approval message, in step S109, the policy management unit 251C saves the approved policy in the policy application unit 252C, and in step S110, sends the policy approval message to the second connection unit 32.

[0105] In step S111, the second connection unit 32 sends the policy approval message to the conversion unit 33.

[0106] In step S112, the conversion unit 33 converts the received policy approval message from the format of the data circulation platform 200 to the format of the data circulation platform 100, and in step S113, sends the converted policy approval message to the first connection unit 31. The conversion unit 33 can also convert the content of the policy approval message to conform to the data circulation platform 100.

[0107] In step S114, the first connection unit 31 sends the policy approval message to the policy management unit 120.

[0108] When receiving the policy approval message, in step S115, the policy management unit 120 saves the approved policy in the policy application unit 130, and in step S116, notifies the connection unit 150B that the policy is approved.

[0109] When a policy agreement is reached in the data circulation platform 100 and the data circulation platform 200 respectively, the conversion unit 33 records the correspondence between the policy reached an agreement in the data circulation platform 100 and the policy reached an agreement in the data circulation platform 200 in the policy correspondence table.

[0110] In addition, since User B and the first connection unit 31 (B collaboration) are substantially the same person, User B can operate the collaboration providing device 30, input a policy to the collaboration providing device 30, and can set a policy for sharing data between User B and B collaboration without performing the processes of steps S101 to S103. As a process corresponding to the process of forming the policy of steps S113 to S115, the first connection unit 31 on the data provider side sets a policy of sharing B collaboration data with User B for the data circulation platform 100. When User B inputs a policy to the collaboration providing device 30, in step S104, the conversion unit 33 converts the input policy into the format of the data circulation platform 200 and sends it to the data circulation platform 200. That is, when User B inputs a policy to the collaboration providing device 30, the collaboration providing device 30 sets a policy between User B and B collaboration in the data circulation platform 100 and sends a policy recommendation message corresponding to the input policy to the data circulation platform 200.

[0111] Next, with reference to Figure 6 the timing diagram, an example of the process of User B using the data held by User C will be described.

[0112] In step S201, the connection unit 150B sends a data request message for the data of User C to the policy application unit 130. The data request message can be a data request message for the data managed by B collaboration.

[0113] In step S202, the policy application unit 130 confirms whether the content of the data request message follows the policy. Specifically, the policy application unit 130 searches for a policy that is consistent with the content of the data request message from the multiple policies it holds. When there is a consistent policy, the policy application unit 130 confirms whether User B is included in the entity that accepts the sharing of the data recorded in the policy, and further confirms whether the utilization content of the data included in the data request message converges within the scope of the utilization authority for the data.

[0114] When the content of the data request message follows the policy, in step S203, the policy application unit 130 sends the data request message to the first connection unit 31. When the requested data is stored in the database 140, the policy application unit 130 can obtain the data from the database 140.

[0115] In step S204, the first connection unit 31 sends the data request message to the conversion unit 33.

[0116] In step S205, the conversion unit 33 converts the data request message from the format of the data circulation platform 100 to the format of the data circulation platform 200. For example, the conversion unit 33 refers to the policy correspondence table, obtains the resource ID corresponding to the folder path specified by the received data request message, and converts the data request message into a data request message for the obtained resource ID.

[0117] In step S206, the conversion unit 33 sends the converted data request message to the second connection unit 32.

[0118] In step S207, the second connection unit 32 sends the data request message to the policy application unit 252C.

[0119] In step S208, the policy application unit 252C confirms whether the content of the data request message complies with the policy.

[0120] If the content of the data request message complies with the policy, in step S209, the policy application unit 252C requests data from the connection unit 250C.

[0121] In step S210, the connection unit 250C obtains data from the storage location of the data and sends the data to the policy application unit 252C. The data can also be sent included in the data sending message.

[0122] In step S211, the policy application unit 252C sends the data to the second connection unit 32, and in step S212, the second connection unit 32 sends the data to the conversion unit 33.

[0123] In step S213, the conversion unit 33 converts the data from the format of the data circulation platform 200 to the format of the data circulation platform 100. For example, the conversion unit 33 refers to the policy correspondence table, obtains the folder path of the storage destination of the received data, and converts the data sending message into a data sending for the obtained folder path.

[0124] In step S214, the conversion unit 33 sends the data to the first connection unit 31.

[0125] In step S215, the first connection unit 31 stores the data in the database 140. The first connection unit 31 can also notify the policy application unit 130 of the meaning that the data has been stored. Or, the first connection unit 31 can also send the data to the policy application unit 130 as a response to the data request message for step S203.

[0126] In step S216, the policy application unit 130 obtains the data from the database 140, and in step S217, sends the data to the connection unit 150B.

[0127] Next, refer to Figure 7The timing chart will illustrate an example of another process where User B utilizes the data held by User C. In Figure 6 this process, data is obtained from User C according to the request of User B, but in Figure 7 this process, after the policy agreement, the data held by User C is stored in the database 140 of the data circulation platform 100 in advance.

[0128] In step S251, the conversion unit 33 sends a data request message for the data of User C to the second connection unit 32. For example, for the data of User C that is regularly appended, the conversion unit 33 sends a data request message according to the timing of data appending.

[0129] In step S252, the second connection unit 32 sends the data request message to the policy application unit 252C.

[0130] In step S253, the policy application unit 252C confirms whether the content of the data request message complies with the policy.

[0131] If the content of the data request message complies with the policy, in step S254, the policy application unit 252C requests data from the connection unit 250C.

[0132] In step S255, the connection unit 250C obtains the data from the storage location of the data and sends the data to the policy application unit 252C. The data can also be sent included in the data sending message.

[0133] In step S256, the policy application unit 252C sends the data to the second connection unit 32, and in step S257, the second connection unit 32 sends the data to the conversion unit 33.

[0134] In step S258, the conversion unit 33 converts the data from the format of the data circulation platform 200 to the format of the data circulation platform 100. For example, the conversion unit 33 refers to the policy correspondence table, obtains the folder path of the storage destination of the received data, and converts the data sending message into data sending for the obtained folder path.

[0135] In step S259, the conversion unit 33 sends the data to the first connection unit 31.

[0136] In step S260, the first connection unit 31 stores the data in the database 140.

[0137] Through the above process, the data of User C that has reached an agreement through the policy is stored in the database 140 of the data circulation platform 100, and User B can use the data of User C in accordance with the policy.

[0138] In the case where User B utilizes the data of User C, in step S261, the connection unit 150B sends a data request message for the data of User C held in cooperation by B to the policy application unit 130.

[0139] In step S262, the policy application unit 130 confirms whether the content of the data request message complies with the policy.

[0140] In the case where the content of the data request message complies with the policy, the policy application unit 130 requests data from the database 140 in step S263, obtains the data from the database 140 in step S264, and sends the data to the connection unit 150B in step S265.

[0141] [Example of User D Utilizing the Data of User A]

[0142] Next, with reference to Figure 8 An example of User D of the data circulation platform 200 utilizing the data of User A of the data circulation platform 100 will be described. For User D of the data circulation platform 200, the cooperation providing device 30 acts as User A. The cooperation providing device 30 applies a policy between the cooperation providing device 30 and User D, and sends data in response to a data request from User D. For User A of the data circulation platform 100, the cooperation providing device 30 acts as the A cooperation of the partner of User A. The cooperation providing device 30 applies a policy between the cooperation providing device 30 and User A, and obtains the data requested by User D from the data circulation platform 100. Hereinafter, the structure of the cooperation providing device 30 will be described.

[0143] Similar to Figure 3 the cooperation providing device 30 in Figure 8 the cooperation providing device 30 includes a first connection unit 31, a second connection unit 32, and a conversion unit 33.

[0144] The first connection unit 31 is capable of connecting to the data circulation platform 100 and authenticates with the authentication unit 110, acting as the A cooperation of the partner of User A in the data circulation platform 100.

[0145] The first connection unit 31 receives a policy proposal message from User D via the conversion unit 33 and sends it to the data circulation platform 100. If User A approves the policy, a policy agreement is formed between User A and the first connection unit 31 (A cooperation) in the data circulation platform 100.

[0146] The first connection unit 31 obtains the data of User A stored in the database 140 in accordance with the policy in response to a request from User D, and sends it to User D via the conversion unit 33 and the second connection unit 32.

[0147] In order to communicate with each user of the data circulation platform 200, the second connection unit 32 presents the certificate held by the second connection unit 32 to the authentication unit 210 of the data circulation platform 200 for authentication, requests a token, and obtains the token. The second connection unit 32 can communicate with the connection unit 250D by exchanging the token with the connection unit 250D of user D and mutually confirming the legitimacy.

[0148] The second connection unit 32 includes a policy management unit 321 and a policy application unit 322. The policy management unit 321 forms a policy agreement between user A and user D in the data circulation platform 200. The policy application unit 322 sends the data of user A in accordance with the policy agreed upon in the data circulation platform 200. The data of user A is obtained from the data circulation platform 100.

[0149] The policy management unit 321 receives and holds the policy suggestion message of user D. The second connection unit 32 sends the policy suggestion message of user D held by the policy management unit 321 to the data circulation platform 100 via the conversion unit 33 and the first connection unit 31. When the policy suggestion of user D is approved, the policy management unit 321 saves the approved policy in the policy application unit 322.

[0150] The policy application unit 322 receives a data request message from user D and determines whether the content of the data request message follows the policy held by the policy application unit 322. If the data request message follows the policy, the policy application unit 322 sends the data request message to the conversion unit 33, obtains the data from the data circulation platform 100, and sends the data to the connection unit 250D.

[0151] When the conversion unit 33 sends the policy suggestion message of user D received from the second connection unit 32 to the first connection unit 31, it converts the policy from the format of the data circulation platform 200 to the format of the data circulation platform 100. The conversion unit 33 converts the policy so that the policy agreed upon between the user D using the data and the second connection unit 32 becomes the same or more restricted policy as the policy agreed upon between the user A providing the data and the first connection unit 31. The conversion method and conversion content are the same as those of the Figure 3 conversion unit 33, so the description is omitted here.

[0152] When the conversion unit 33 receives a data request message from the second connection unit 32, it converts the data request message into the format of the data circulation platform 100 and sends it to the first connection unit 31. For example, when receiving a data request message that follows the policy from user D of the data circulation platform 200, the conversion unit 33 searches for the policy in the corresponding table and converts the data request message in such a way as to obtain the data from the position indicated by the path information of the searched record, and sends the converted data request message to the first connection unit 31.

[0153] When the conversion unit 33 receives data from the first connection unit 31, it sends the received data to the second connection unit 32.

[0154] Other functions of the conversion unit 33 are the same as those of the conversion unit 33 in Figure 3 so repeated descriptions are omitted.

[0155] Figure 3 The collaboration providing device 30 in Figure 8 is basically the same as the collaboration providing device 30 in Figure 3 and Figure 8 The collaboration providing device 30 in can have the functions of each other and can share data bidirectionally between the data circulation platform 100 and the data circulation platform 200.

[0156] Next, an example of the process of the protocol data sharing policy between user A and user D and user D using the data held by user A is described. The connection unit 150A and the first connection unit 31 of user A are completed by the authentication of the data circulation platform 100. The connection unit 250D and the second connection unit 32 of user D are mutually authenticated by exchanging the tokens obtained from the data circulation platform 200.

[0157] Referring to Figure 9 the timing diagram of, an example of the formation process of the policy protocol is described.

[0158] In step S301, the connection unit 250D sends a policy proposal message for entrusting the sharing of the data held by user A to the policy management unit 321 of the second connection unit 32. The policy management unit 321 holds the policy proposal message. The policy proposal message is recorded in the format of the data circulation platform 200.

[0159] In step S302, the second connection unit 32 obtains a policy list from the policy management unit 321. In step S303, the policy proposal message for entrusting the sharing of the data held by user A is extracted from the information included in the policy list, and the extracted policy proposal message is sent to the conversion unit 33.

[0160] In step S304, the conversion unit 33 converts the received policy proposal message from the format of the data circulation platform 200 to the format of the data circulation platform 100. In step S305, the converted policy proposal message is sent to the first connection unit 31. The conversion unit 33 can convert the content of the policy to conform to the data circulation platform 100.

[0161] In step S306, the first connection unit 31 sends the policy proposal message to the policy management unit 120 of the data circulation platform 100. The policy management unit 120 holds the policy proposal message.

[0162] In step S307, the connection unit 150A obtains the policy list from the policy management unit 120. User A confirms the policy suggestions for User A included in the policy list.

[0163] When User A approves the policy, in step S308, the connection unit 150A sends a policy approval message to the policy management unit 120.

[0164] When the policy management unit 120 receives the policy approval message, in step S309, it saves the approved policy in the policy application unit 130, and in step S310, it sends the policy approval message to the first connection unit 31.

[0165] In step S311, the first connection unit 31 sends the policy approval message to the conversion unit 33.

[0166] In step S312, the conversion unit 33 converts the received policy approval message from the format of the data circulation platform 100 to the format of the data circulation platform 200, and in step S313, it sends the converted policy approval message to the second connection unit 32. The conversion unit 33 can also convert the content of the policy approval message to conform to the data circulation platform 200.

[0167] In step S314, the second connection unit 31 sends the policy approval message to the policy management unit 321.

[0168] When the policy management unit 321 receives the policy approval message, in step S315, it saves the approved policy in the policy application unit 130, and in step S316, it notifies the connection unit 250D that the policy has been approved.

[0169] When a policy agreement is reached in the data circulation platform 100 and the data circulation platform 200 respectively, the conversion unit 33 records the correspondence between the ID of the policy reached an agreement in the data circulation platform 100 and the ID of the policy reached an agreement in the data circulation platform 200 in the policy correspondence table.

[0170] In addition, since User A and the first connection unit 31 (A collaboration) are substantially the same person, the processes of steps S306 and S307 may not be performed. Instead, User A confirms the policy suggestion message of User D in the collaboration providing device 30. As the process corresponding to step S308, the connection unit 150A on the data provider side sets the policy for sharing data between User A and A collaboration in the data circulation platform 100.

[0171] In addition, in the case where an agreement on data sharing is reached outside the system between User A and User D, User A can also operate the collaborative providing device 30, input a policy to the collaborative providing device 30, and form a policy agreement in the data circulation platform 100 and the data circulation platform 200. For example, without performing the processing of steps S301 to S307, User A, as a data provider, inputs a policy to the collaborative providing device 30, and in step S312, the conversion unit 33 converts the input policy into the format of the data circulation platform 200, and stores it in the policy application unit 322 of the second connection unit 32 in steps S313 to S315. Moreover, in step S308, the connection unit 150A sets a policy for sharing data between User A and A in the data circulation platform 100. That is, when User A inputs a policy to the collaborative providing device 30, the collaborative providing device 30 sets a policy between User A and A in the data circulation platform 100, and sets the input policy in the second connection unit 32.

[0172] Next, with reference to Figure 10 the timing diagram, an example of the process of User D using the data held by User A will be described.

[0173] In step S401, the connection unit 150A sends data to the database 140 for storage.

[0174] In step S402, the connection unit 250D sends a data request message for the data of User A to the policy application unit 322.

[0175] In step S403, the policy application unit 322 confirms whether the content of the data request message complies with the policy.

[0176] If the content of the data request message complies with the policy, in step S404, the policy application unit 322 sends a data request message to the second connection unit 32, and in step S405, the second connection unit 32 sends a data request message to the conversion unit 33.

[0177] In step S406, the conversion unit 33 converts the data request message from the format of the data circulation platform 200 into the format of the data circulation platform 100. For example, the conversion unit 33 refers to the policy correspondence table, obtains the path information on the data circulation platform 100 corresponding to the resource ID specified by the received data request message, and converts the data request message into a data request message for the data represented by the path information.

[0178] In step S407, the conversion unit 33 sends the converted data request message to the first connection unit 31.

[0179] In step S408, the first connection unit 31 sends a data request message for the data held by user A in the database 140 to the policy application unit 130.

[0180] In step S409, the policy application unit 130 confirms whether the content of the data request message complies with the policy.

[0181] When the content of the data request message complies with the policy, the policy application unit 130 requests data from the database 140 in step S410 and obtains the data from the database 140 in step S411.

[0182] In step S412, the policy application unit 130 sends the data to the first connection unit 31, and in step S413, the first connection unit 31 sends the data to the conversion unit 33.

[0183] In step S414, the conversion unit 33 converts the data from the format of the data circulation platform 100 to the format of the data circulation platform 200. For example, the conversion unit 33 includes the data in the response to the data request message.

[0184] In step S415, the conversion unit 33 sends the data to the second connection unit 32.

[0185] In step S416, the second connection unit 32 sends the data to the policy application unit 322, and in step S417, the policy application unit 322 sends the data to the connection unit 250D.

[0186] [Conversion Unit]

[0187] Refer to Figure 11 to illustrate an example of the structure of the conversion unit 33. The conversion unit 33 shown in this figure includes a first conversion unit 331, a second conversion unit 332, and a general policy management unit 333.

[0188] The first conversion unit 331 is connected to the first connection unit 31, converts the information of the data circulation platform 100 received from the first connection unit 31 into general information and sends it to the second conversion unit 332, or converts the general information received from the second conversion unit 332 into the information of the data circulation platform 100 and sends it to the first connection unit 31.

[0189] The second conversion unit 332 is connected to the second connection unit 32, converts the information of the data circulation platform 200 received from the second connection unit 32 into general information and sends it to the first conversion unit 331, or converts the general information received from the first conversion unit 331 into the information of the data circulation platform 200 and sends it to the second connection unit 32.

[0190] The General Policy Management Department 333 maintains ontologies for various industries, for example. The First Conversion Department 331 and the Second Conversion Department 332 refer to the General Policy Management Department 333 to convert the information of the data circulation platforms 100 and 200 into general information, or convert general information into the information of the data circulation platforms 100 and 200.

[0191] [Changes in Policies]

[0192] Refer to Figure 12 , and an example of a policy will be described. Regarding policies, in addition to specifying the shared data or the users of the data, policies such as those shown in the example of Figure 12 can also be specified.

[0193] The first policy is a policy that allows or prohibits the method of using data. In this policy, as the method of using data, the actions that are desired to be allowed or prohibited are specified. For example, a policy that allows display but prohibits printing is specified.

[0194] The second to tenth policies are policies that restrict data use to specific conditions. For example, through this policy, restrictions on the connectors, systems, users, locations, or times for which data can be used, and restrictions on the purpose of using the data, are specified.

[0195] The eleventh policy is a policy that specifies the number of times data can be used.

[0196] The twelfth policy is a policy that requests deletion of data after data use.

[0197] The thirteenth and fourteenth policies are policies that request correction of data. For example, after anonymizing a part of the data through this policy, data use is allowed.

[0198] The fifteenth and sixteenth policies are policies regarding recording or notification of data use. Through this policy, obtaining a log is requested during data use, or notification to a specific user is requested during data use.

[0199] The seventeenth and eighteenth policies are policies related to data distribution. For example, in this policy, a policy that additionally specifies the data use method when distributing data to a third party, or only encrypted data can be distributed, is specified.

[0200] The nineteenth and twentieth policies are policies related to the payment of fees for data use. Through this policy, a one-time payment or monthly fees are specified.

[0201] The twenty-first policy is a policy related to the data use status. For example, through this policy, data use can be allowed only when the environment for using the data is in a specific state.

[0202] The regulations of the policies vary according to each data circulation platform 100, 200. Therefore, when converting the policy proposal message and the policy approval message, the conversion unit 33 converts the messages in accordance with the regulations of the policies of the data circulation platforms 100, 200 of the destination. In the case where there is no policy corresponding to the data circulation platform 100, 200 of the destination, it is also possible to convert to a similar policy.

[0203] [Automation of Policy Formation]

[0204] It is also possible to configure it not to wait for the approval of the data provider. For example, the data provider discloses the policies that can be permitted when providing data. A data user who wants to use the data sends a policy proposal message for the disclosed policy, and thus sets the policy in the case where the data provider does not approve.

[0205] For example, a list of the policies disclosed to the cooperation providing device 30 is maintained. A user accesses the cooperation providing device 30 and selects the policy to be used. When the policy is selected, the cooperation providing device 30 sets the policy in the data circulation platform 100 and the data circulation platform 200 respectively in accordance with the policy, and makes the policies cooperate.

[0206] Specifically, when the user C of the data circulation platform 200 provides data and the policy is disclosed by the cooperation providing device 30, the user B of the data circulation platform 100 accesses the cooperation providing device 30 and selects the policy. When the policy is selected, the cooperation providing device 30 creates B cooperation in the data circulation platform 100, sets a policy between the user B and B cooperation on the data circulation platform 100, and sends a policy request message in the form of the data circulation platform 200 that follows the selected policy to the connection unit 250C of the user C, and sets a policy between the cooperation providing device 30 and the connection part 250C on the data circulation platform 200. In the case of the disclosed policy, the policy is set without waiting for the approval from the user C. The cooperation providing device 30 makes the policies cooperate between the data circulation platform 100 and the data circulation platform 200, so that the user B can use the data of the user C.

[0207] In addition, when user A of the data circulation platform 100 provides data and discloses a policy, the collaboration providing device 30 creates collaboration A in the data circulation platform 100, sets a policy between user A and collaboration A on the data circulation platform 100, and distributes the metadata of user A's data on the data circulation platform 200. The metadata includes information such as the policy for data sharing and the data request destination. The second connection part 32 of the collaboration providing device 30 is designated as the data request destination. When user D of the data circulation platform 200 uses user A's data, the connection part 250D sends a policy request message to the second connection part 32 of the collaboration providing device 30, and sets a policy between the collaboration providing device 30 and the connection part 250D on the data circulation platform 200. In the case of a disclosed policy, the policy is set without waiting for approval from user A. The collaboration providing device 30 enables the policy to collaborate between the data circulation platform 100 and the data circulation platform 200, so that user D can use user A's data.

[0208] [Embodiment 1]

[0209] Refer to Figure 13 , an embodiment of sharing data between Company E using the first data circulation platform 100 and Company F using the second data circulation platform 200 will be described.

[0210] Company E manufactures products using components manufactured by Company F. In order to calculate the total CO2 emissions required for the products, Company E hopes to use the CO2 emissions required for the components manufactured by Company F. That is, Company E wants to use the data of Company F. Company E uses the data circulation platform 100, and Company F uses the data circulation platform 200. Therefore, by using the collaboration providing device 30 of this embodiment, the data of Company F on the data circulation platform 200 is shared with Company E on the data circulation platform 100.

[0211] The CO2 emissions of the machine tool 170E of Company E are obtained by the data acquisition unit 160E. For example, an OPC UA server is connected to the machine tool 170E, and an OPC UA client is provided in the data acquisition unit 160E to obtain the data of the machine tool 170E. Company E stores the obtained data in the dedicated database 140A of Company E on the data circulation platform 100 using the client 150E. The client 150E of Company E is client software for connecting to the data circulation platform 100.

[0212] The CO2 emissions of the machine tool 270F of Company F are obtained by the data acquisition unit 260F. For example, the machine tool 270F is connected to an OPC UA server, the data acquisition unit 260F is equipped with an OPC UA client, and the data acquisition unit 260F obtains the data of the machine tool 270F. The connector 250F of Company F is an IDS connector that can be connected to the data space of the data circulation platform 200. Company F entrusts the data circulation platform 200 to issue a certificate for the connector 250F of Company F. The data circulation platform 200 uses a CA to issue a certificate for the connector 250F of Company F. After registering the certificate in the DAPS, the data circulation platform 200 provides the certificate and its own certificate of the DAPS to the connector 250F of Company F. By setting the certificate, its own certificate of the DAPS, and the IP addresses of the DAPS and the Broker in the connector 250F of Company F, the connector 250F of Company F can communicate on the data circulation platform 200. The Broker is a function for searching for the types of data provided by data providers and the destinations for obtaining data (for example, the connector 250F of Company F).

[0213] The data circulation platform 100 includes an authentication unit 110, a policy management unit 120, a policy application unit 130, a dedicated database 140A for Company E, an international dedicated database 140B for Company E, and a shared database 140C. The dedicated database 140A for Company E is a database that stores the data of Company E. The international dedicated database 140B for Company E is a database that stores the data obtained from Company F. The shared database 140C is a database that stores the shared data. The data of Company F is copied from the international dedicated database 140B for Company E to the shared database 140C.

[0214] Company E uses the international connection management unit 34 of the collaborative provision device 30 to set the data sharing conditions with Company F for using the data of Company F on the data circulation platform 100. Specifically, Company E designates that Company F connects to the data circulation platform 200 without using the data circulation platform 100. As the data sharing conditions, Company E sets the path information indicating the scope of the data shared with Company E. This path information is the location where the data of Company F is stored. Moreover, Company E sets the IDS connector name or IDS connector ID for searching the connector 250F of Company F and the identifier of the data shared by Company F.

[0215] When the setting of the data sharing conditions is completed, the International Connection Management Department 34 newly adds and registers an organization such as "Company E International" in the data circulation platform 100, configures a client for Company E International (the first connection part) 31, and sets the information required for connection to the data circulation platform 100. In addition, the data circulation platform 100 is equipped with a dedicated database 140B for Company E International corresponding to the path information set as the data sharing condition. The data received from Company F is stored in the dedicated database 140B for Company E International.

[0216] The International Connection Management Department 34 sets, through the client 31 for Company E International, a policy in the data circulation platform 100 that allows viewing of the data of Company F stored in the dedicated database 140B for Company E International. Thereby, when the client 150E for Company E requests data of Company F from the Policy Application Department 130, it can view the data via the shared database 140C. In addition, since Company E and Company E International are substantially the same, a policy recommendation message is not sent from the client 150E for Company E to the Policy Management Department 120. Company E uses the International Connection Management Department 34 to set the policy between Company E and Company E International in the data circulation platform 100. However, it is also possible to set the policy for the Policy Application Department 130 by sending a policy recommendation message from the client 150E for Company E to the Policy Management Department 120 and a policy approval message from the client 31 for Company E International to the Policy Management Department 120.

[0217] When the policy setting in the data circulation platform 100 is completed, the International Connection Management Department 34 configures a connector for Company E International (the second connection part) 32 that can connect to the data space of the data circulation platform 200 identical to that of Company F. The International Connection Management Department 34 entrusts the data circulation platform 200 to issue a certificate for the connector 32 for Company E International. The data circulation platform 200 uses the CA to issue a certificate for the connector 32 for Company E International. After registering the certificate in the DAPS, it provides the certificate and its own certificate of the DAPS to the connector 32 for Company E International. By setting the certificate, its own certificate of the DAPS, and the IP addresses of the DAPS and the Broker in the connector 32 for Company E International, the connector 32 for Company E International can communicate on the data circulation platform 200.

[0218] If the configuration of the international connector 32 of Company E is completed, a data sharing policy agreement is reached between the international connector 32 of Company E and the connector 250F of Company F. The international conversion department 33 of Company E converts the data sharing conditions set by Company E with Company F into a policy recommendation message in the form of the data circulation platform 200, and the international connector 32 of Company E sends the policy recommendation message to the connector 250F of Company F. In addition, when the ID of the connector 250F of Company F and the resource ID are unknown, the international connector 32 of Company E asks the Broker of the data circulation platform 200 to obtain the ID of the connector 250F of Company F and the resource ID. When the international connector 32 of Company E receives a policy approval message from the connector 250F of Company F, it sends the policy approval message to the international conversion department 33 of Company E.

[0219] The international conversion department 33 of Company E registers the correspondence between the ID of the policy agreed upon between the international connector 32 of Company E and the connector 250F of Company F and the policy agreed upon between Company E and the international of Company E in the policy correspondence table.

[0220] If a policy agreement is reached between the international connector 32 of Company E and the connector 250F of Company F, the international conversion department 33 of Company E periodically sends a data request message to the connector 250F of Company F through the international connector 32 of Company E and periodically obtains the data of Company F. The data request message contains the ID of the policy agreed upon between the international connector 32 of Company E and the connector 250F of Company F. If the connector 250F of Company F receives a data request message that complies with the policy, it obtains the data and returns it. The international conversion department 33 of Company E converts the obtained data of Company F and stores the converted data of Company F in the international dedicated database 140B of Company E through the international client 31 of Company E. Regarding the data conversion process, a conversion rule is made using the data model specified by Company E and set in the international conversion department 33 of Company E. The international conversion department 33 searches the policy correspondence table for the ID of the policy used in the data request and determines the path for storing the data of Company F based on the path information of the data circulation platform 100 recorded in the policy correspondence table.

[0221] [Embodiment 2]

[0222] Refer to the same as in Embodiment 1 Figure 13 , an embodiment of sharing data between Company E using the first data circulation platform 100 and Company F using the second data circulation platform 200 is described.

[0223] In Embodiment 2, the positions of Company E and Company F in Embodiment 1 are changed, and Company F uses the data of Company E. Company E is the data provider, and Company F is the data user. Company E uses the data circulation platform 100, and Company F uses the data circulation platform 200. Using the collaboration providing device 30 of the present embodiment, the data of Company E on the data circulation platform 100 is shared with Company F on the data circulation platform 200.

[0224] The structures of the data circulation platform 100 and the data circulation platform 200, the client 150E for Company E of Company E, the data acquisition unit 160E, the machine tool 170E, the connector 250F for Company F of Company F, the data acquisition unit 260F, and the machine tool 270F are the same as those in Embodiment 1, so the description here is omitted.

[0225] Company E uses the international connection management unit 34 of the collaboration providing device 30 to set the data sharing conditions with Company F to share the data of Company E stored in the data circulation platform 100 with Company F. Specifically, Company E designates that Company F connects to the data circulation platform 200 without using the data circulation platform 100. As the data sharing conditions, Company E sets path information indicating the scope of the data shared with Company F, the period during which the data can be shared, the number of readable times, etc. Moreover, Company E sets the IDS connector name or IDS connector ID for searching the connector 250F for Company F and the identifier of the data shared by Company F.

[0226] When the setting of the data sharing conditions is completed, the international connection management unit 34 newly adds and registers an organization such as "Company E International" in the data circulation platform 100, configures a client (first connection unit) 31 for Company E International in a manner that can be connected to the data circulation platform 100, and sets the information required for connecting to the data circulation platform 100.

[0227] When Company E International is added, the client 150E for Company E sets a policy in the data circulation platform 100 so that Company E International can access the data of Company E in accordance with the data sharing conditions. Thus, when the client 31 for Company E International requests the data of Company E from the policy application unit 130, the data of Company E can be obtained via the shared database 140C. In addition, since Company E and Company E International are substantially the same, the policy recommendation message is not sent from the client 31 for Company E International to the policy management unit 120. Company E uses the client 150E for Company E to set the policy between Company E and Company E International in the data circulation platform 100, but it is also possible to send a policy recommendation message from the client 31 for Company E International to the policy management unit 120, and the client 150E for Company E sends a policy approval message to the policy management unit 120, thereby setting the policy in the policy application unit 130.

[0228] When the policy setting in the data circulation platform 100 is completed, the International Connection Management Department 34 is equipped with an international connector for Company E (second connection part) 32 that can be connected to the data space of the data circulation platform 200 of Company F. The International Connection Management Department 34 entrusts the data circulation platform 200 to issue a certificate for the international connector 32 for Company E. The data circulation platform 200 uses the CA to issue a certificate for the international connector 32 for Company E. After registering the certificate in the DAPS, the data circulation platform 200 provides the certificate and its own certificate of the DAPS to the international connector 32 for Company E. By setting the certificate, the DAPS's own certificate, and the IP addresses of the DAPS and the Broker in the international connector 32 for Company E, the international connector 32 for Company E can communicate on the data circulation platform 200.

[0229] If the installation of the international connector 32 for Company E is completed, a data sharing policy agreement is reached between the international connector 32 for Company E and the connector 250F for Company F. The International Conversion Department 33 for Company E converts the data sharing conditions set by Company E with Company F into a policy recommendation message in the form of the data circulation platform 200, and the international connector 32 for Company E sends the policy recommendation message to the connector 250F for Company F. When the international connector 32 for Company E receives a policy approval message from the connector 250F for Company F, a data sharing policy agreement is reached between the international connector 32 for Company E and the connector 250F for Company F. The international connector 32 for Company E maintains the agreed-upon policy and, when receiving a data request message that follows the policy, obtains the requested data and sends it. In addition, the connector 250F for Company F can also send a policy recommendation message to the international connector 32 for Company E. In this case, a policy that can be approved is set for the international connector 32 for Company E in advance. When the international connector 32 for Company E receives a policy recommendation message that can be approved, it automatically sends a policy approval message to the connector 250F for Company F, and a data sharing policy agreement is reached between the international connector 32 for Company E and the connector 250F for Company F. Alternatively, the collaborative providing device 30 can send the policy recommendation message from Company F to the data circulation platform 100 and set the policy between Company E and the international of Company E in the data circulation platform 100.

[0230] The International Conversion Department 33 for Company E registers the correspondence between the ID of the policy agreed upon between the international connector 32 for Company E and the connector 250F for Company F and the policy agreed upon between Company E and the international of Company E in the policy correspondence table.

[0231] When the E company's international connector 32 receives a data request message conforming to the policy from the F company's connector 250F, it sends the data request message to the E company's international conversion unit 33. The E company's international conversion unit 33 converts the data request message into the form of the data circulation platform 100, and obtains the data of the E company from the data circulation platform 100 through the E company's international client 11. Specifically, it searches for the ID of the policy included in the data request message from the policy correspondence table, determines the requested data according to the path information of the data circulation platform 100 recorded in the policy correspondence table, and obtains the data of the E company from the data circulation platform 100 through the E company's international client 11.

[0232] The E company's international conversion unit 33 converts the obtained data of the E company, and returns the converted data of the E company to the F company's connector 250F through the E company's international connector 12.

[0233] As described above, the cooperation providing device 30 of the present embodiment is a device for sharing data between users A and B of the first data circulation platform 100 and users C and D of the second data circulation platform 200. Among them, the first data circulation platform 100 enables data circulation by storing the user's data in the storage device and managing access, and the second data circulation platform 200 enables data circulation by ensuring the agreement between users without storing the user's data. The cooperation providing device 30 includes: a first connection unit 31, which is connected to the first data circulation platform 100 and forms a policy agreement with users A and B; a second connection unit 32, which is connected to the second data circulation platform 200 and forms a policy agreement between users A and B and users C and D; and a conversion unit 33, which converts the messages sent and received between the first connection unit 31 and the second connection unit 32 into the form of the data circulation platform of the destination, and forwards the converted messages. When user B uses the data of user C, the second connection unit 32 obtains the data of user C according to the policy, and the first connection unit 31 stores the data of user C in the database 140 for B cooperation provided in the first data circulation platform 100, and provides the data of user C to user B in the first data circulation platform 100 according to the policy. When user D uses the data of user A, according to the request of user D following the policy to the second connection unit 32, the first connection unit 31 obtains the data of user A from the first data circulation platform 100 according to the policy, and the second connection unit 32 provides the data of user A to user D. Thus, it is possible to exchange control messages for policy agreements between users of different data circulation platforms 100 and 200, and each user can use the data according to the agreed policy via the data circulation platforms 100 and 200 to which they are connected.

[0234] By using the collaboration providing device 30 of the present embodiment, it is not necessary to perform operations such as registration applications to each data circulation platform for connecting to multiple data circulation platforms, the provision of connection systems, and operation, which are required when each enterprise corresponds individually. In addition, in each enterprise, it is not necessary to describe policies in different formats for each data circulation platform and convert them into different data forms. Moreover, it is not necessary to provide a system that can manage / convert the information of all users of multiple data circulation platforms and send and receive messages while mutually converting them, which becomes a problem when providing an intermediate system for connecting different data circulation platforms to each other. By using the collaboration providing device 30 of the present embodiment, it is possible to allocate the minimum necessary system resources by focusing on the users who need to be interconnected.

[0235] In addition, the data circulation platform 100 may have the functions of the collaboration providing device 30, or the data circulation platform 200 may have the collaboration providing device 30. In other words, the data circulation providing system of the present embodiment may be a data circulation providing system including the data circulation platform 100 and the collaboration providing device 30, or may be a data circulation providing system including the data circulation platform 200 and the collaboration providing device 30.

[0236] [Collaboration between the same type of data circulation platforms]

[0237] Next, an embodiment of collaboration between the same type of data circulation platforms 100A, 100B and data circulation platforms 200C, 200D in which data processing is the same will be described. The data circulation platforms 100A, 100B provide data circulation by holding user data in a storage unit and managing access. The data circulation platforms 200C, 200D do not hold user data and ensure the circulation of data provided that there is an agreement on the data sharing conditions among users. In addition, in the case where data processing is the same and data circulation platforms of the same type collaborate with each other, the modified examples of data circulation platforms with different data processing described so far can also be applied.

[0238] [Example of User A Using User B's Data]

[0239] Refer to Figure 14 , an embodiment of sharing data between the first data circulation platforms 100A, 100B that ensure data sharing policies by registering user data and managing access to the data will be described. Hereinafter, an example in which User A is a user of the data circulation platform 100A, User B is a user of the data circulation platform 100B, and User A uses User B's data will be described.

[0240] In this embodiment, a cooperation providing device 30 is provided to enable the data circulation platform 100A and the data circulation platform 100B to cooperate and achieve data sharing between the data circulation platform 100A and the data circulation platform 100B. Specifically, the cooperation providing device 30 acts as a partner of user A (referred to as "A cooperation") in the data circulation platform 100A. In addition, the cooperation providing device 30 acts as an agent of user A in the data circulation platform 100B. A cooperation is registered as an organization different from user A on the data circulation platform 100A. In the data circulation platform 100A, a policy agreement is formed between user A and the cooperation providing device 30, and in the data circulation platform 100B, a policy agreement is formed between user B and the cooperation providing device 30. The cooperation providing device 30 enables the policies of the data circulation platform 100A and the policies of the data circulation platform 100B to cooperate to transform and relay the messages sent and received between the data circulation platform 100A and the data circulation platform 100B.

[0241] The authentication units 110A, 110B, the policy management units 120A, 120B, and the policy application units 130A, 130B of the data circulation platforms 100A, 100B Figure 1 are the same as the authentication unit 110, the policy management unit 120, and the policy application unit 130 of the data circulation platform 100, so the repeated description is omitted here. A database 140A dedicated to A cooperation is configured in the data circulation platform 100A. A folder path dedicated to A cooperation can also be configured. A database 140B dedicated to B that holds the data of user B is configured in the data circulation platform 100B. User A connects to the data circulation platform 100A using the connection unit 150A, and user B connects to the data circulation platform 100B using the connection unit 150B.

[0242] Figure 14 The cooperation providing device 30 includes a first connection unit 31, a second connection unit 32, and a conversion unit 33.

[0243] The first connection unit 31 can be connected to the data circulation platform 100A to authenticate with the authentication unit 110A and act as A cooperation, which is a partner of user A in the data circulation platform 100A.

[0244] When a policy agreement is reached between user A and user B, the first connection unit 31 obtains the policy proposal message of user A from the policy management unit 120A and sends the policy proposal message of user A to the second connection unit 32 via the conversion unit 33. The first connection unit 31 sends the policy approval message received from the second connection unit 32 via the conversion unit 33 to the data circulation platform 100A. By sending the policy approval message to the data circulation platform 100A, a policy agreement is formed between user A and the first connection unit 31 (A cooperation) in the data circulation platform 100A.

[0245] The first connection unit 31 stores the data received from User B in the database 140A.

[0246] The second connection unit 32 authenticates with the authentication unit 110B to be able to connect to the data circulation platform 100B and acts as an agent for User A, who is a partner of User B in the data circulation platform 100B.

[0247] The second connection unit 32 sends the policy recommendation message of User A received via the conversion unit 33 to the data circulation platform 100B. User B sends a policy approval message to the data circulation platform 100B using the connection unit 150B, thereby forming a policy agreement between User B and the second connection unit 32 in the data circulation platform 100B.

[0248] The second connection unit 32 obtains the data of User B from the data circulation platform 100B in accordance with the policy and sends the obtained data to the first connection unit 31 via the conversion unit 33.

[0249] The conversion unit 33 converts the messages sent and received between the data circulation platform 100A and the data circulation platform 100B. For example, when the industries using the data circulation platform 100A and the data circulation platform 100B are different and the terminologies between the industries are different, the terminologies are converted to match the forwarding destination.

[0250] When the conversion unit 33 sends the policy recommendation message of User A received from the first connection unit 31 to the second connection unit 32, it converts the policy from the form of the data circulation platform 100A to the form of the data circulation platform 100B. The conversion unit 33 converts the policy so that the policy agreed upon between the data-using User A and the first connection unit 31 becomes the same or more restricted policy as the policy agreed upon between the data-providing User B and the second connection unit 32. The conversion method and conversion content are the same as those of Figure 3 the conversion unit 33, so the description is omitted here.

[0251] The conversion unit 33 has a correspondence table that corresponds the policies agreed upon in the data circulation platform 100A with the policies agreed upon in the data circulation platform 100B, enabling the policies of the data circulation platform 100A and the data circulation platform 100B to cooperate. Figure 15An example of a policy correspondence table is shown. The policy correspondence table shown in this figure includes the shared destination enterprise name, the shared destination user name, the first path information, the first policy ID, the second policy ID, the second path information, the shared source enterprise name, and the shared source user name. The shared destination enterprise name and the shared destination user name are the enterprise name and user name of the data user. The shared source enterprise name and the shared source user name are the enterprise name and user name of the data provider. The first path information is information indicating the location where data is stored on the data circulation platform 100A. The first policy ID is an ID used to determine the policy agreed upon in the data circulation platform 100A. The second path information is information indicating the location where data is stored on the data circulation platform 100B. The second policy ID is an ID used to determine the policy agreed upon in the data circulation platform 100B.

[0252] Data obtained from the data circulation platform 100B in accordance with the policy of the second policy ID is stored in the data circulation platform 100A in accordance with the policy of the first policy ID corresponding to the second policy ID. For example, when obtaining the data of user B from the data circulation platform 100B, the conversion unit 33 searches for the policy in the correspondence table, converts the data sending message so as to store the data at the location indicated by the first path information of the searched record, and forwards the data sending message to the first connection unit 31.

[0253] In the case where the data held by user B is periodically appended or updated, the conversion unit 33 may also periodically request data from the second connection unit 32 and send the obtained data to the first connection unit 31.

[0254] Next, with reference to Figure 16 the timing chart of, an example of the formation process of the policy agreement is described. The connection unit 150A of user A is completed by authentication by the data circulation platform 100A. The connection unit 150B of user B is completed by authentication by the data circulation platform 100B.

[0255] In step S501, the connection unit 150A sends a policy proposal message to the policy management unit 120A entrusting the sharing of the data held by user B.

[0256] In step S502, the first connection unit 31 obtains a policy list from the policy management unit 120A. In step S503, a policy proposal message entrusting the sharing of the data held by user B is extracted from the information included in the policy list, and the extracted policy proposal message is sent to the conversion unit 33.

[0257] In step S504, the conversion unit 33 converts the received policy proposal message from the format of the data circulation platform 100A to the format of the data circulation platform 100B. In step S505, the converted policy proposal message is sent to the second connection unit 32.

[0258] In step S506, the second connection unit 32 sends a policy recommendation message to the policy management unit 120B. The policy management unit 120B holds the policy recommendation message.

[0259] In step S507, the connection unit 150B obtains a policy list from the policy management unit 120B. User B confirms the policy recommendations for user B included in the policy list.

[0260] When user B approves the policy, in step S508, the connection unit 150B sends a policy approval message to the policy management unit 120B.

[0261] When the policy management unit 120B receives the policy approval message, in step S509, it saves the approved policy in the policy application unit 130B, and in step S510, it sends the policy approval message to the second connection unit 32.

[0262] In step S511, the second connection unit 32 sends a policy approval message to the conversion unit 33.

[0263] In step S512, the conversion unit 33 converts the received policy approval message from the format of the data circulation platform 100B to the format of the data circulation platform 100A, and in step S513, it sends the converted policy approval message to the first connection unit 31.

[0264] In step S514, the first connection unit 31 sends a policy approval message to the policy management unit 120A.

[0265] When the policy management unit 120A receives the policy approval message, in step S515, it saves the approved policy in the policy application unit 130A, and in step S516, it notifies the connection unit 150A that the policy has been approved.

[0266] When a policy agreement is reached in the data circulation platform 100A and the data circulation platform 100B respectively, the conversion unit 33 records the correspondence between the policies agreed upon in the data circulation platform 100A and the policies agreed upon in the data circulation platform 100B in the policy correspondence table.

[0267] In addition, since User A and the first connection unit 31 (A collaboration) are substantially the same person, the processes of steps S501 to S503 are not executed. Instead, User A can operate the collaboration providing device 30, input a policy to the collaboration providing device 30, and set a policy for sharing data between User A and A collaboration. As a process corresponding to the process of the protocol for forming the policy of steps S513 to S515, the first connection unit 31 on the data provider side sets a policy for sharing A collaboration data with User A on the data circulation platform 100A. When User A inputs a policy to the collaboration providing device 30, in step S504, the conversion unit 33 converts the input policy into the format of the data circulation platform 100B and sends it to the data circulation platform 100B. That is, when User A inputs a policy to the collaboration providing device 30, the collaboration providing device 30 sets a policy between User A and A collaboration on the data circulation platform 100A, and sends a policy recommendation message corresponding to the input policy to the data circulation platform 100B.

[0268] Next, with reference to Figure 17 the timing diagram, an example of the process of User A using the data held by User B will be described.

[0269] In step S600, the connection unit 150B sends the data of User B to the data circulation platform 100B. The data of User B is stored in the database 140B.

[0270] In step S601, the connection unit 150A sends a data request message for the data of User B to the policy application unit 130A. The data request message can be a data request message for the data managed by A collaboration.

[0271] In step S602, the policy application unit 130A confirms whether the content of the data request message follows the policy. Specifically, the policy application unit 130A searches for a policy that matches the content of the data request message from the multiple policies it holds. If there is a matching policy, the policy application unit 130A confirms whether User A is included in the entity that accepts the sharing of the data recorded in the policy, and further confirms whether the usage content of the data included in the data request message converges within the scope of the usage permission for the data.

[0272] If the content of the data request message follows the policy, in step S603, the policy application unit 130A sends the data request message to the first connection unit 31. When the requested data is stored in the database 140A, the policy application unit 130 can obtain the data from the database 140A.

[0273] In step S604, the first connection unit 31 sends the data request message to the conversion unit 33.

[0274] In step S605, the conversion unit 33 converts the data request message from the format of the data circulation platform 100A to the format of the data circulation platform 100B. For example, the conversion unit 33 refers to the policy correspondence table and converts the path information on the data circulation platform 100A requested by the data request message into the path information on the data circulation platform 100B.

[0275] In step S606, the conversion unit 33 sends the converted data request message to the second connection unit 32.

[0276] In step S607, the second connection unit 32 sends a data request message to the policy application unit 130B.

[0277] In step S608, the policy application unit 130B confirms whether the content of the data request message complies with the policy.

[0278] If the content of the data request message complies with the policy, in step S609, the policy application unit 130B requests data from the database 140B, and in step S610, obtains the data from the database 140B.

[0279] In step S611, the policy application unit 130B sends data to the second connection unit 32, and in step S612, the second connection unit 32 sends data to the conversion unit 33.

[0280] In step S613, the conversion unit 33 converts the data from the format of the data circulation platform 100B to the format of the data circulation platform 100A. For example, the conversion unit 33 refers to the policy correspondence table and sets the storage destination of the data send message as the path information on the data circulation platform 100A.

[0281] In step S614, the conversion unit 33 sends data to the first connection unit 31.

[0282] In step S615, the first connection unit 31 stores the data in the database 140A. The first connection unit 31 may also notify the policy application unit 130A of the meaning of storing the data. Alternatively, the first connection unit 31 may also send data to the policy application unit 130A as a response to the data request message in step S203.

[0283] In step S616, the policy application unit 130A obtains data from the database 140, and in step S217, sends the data to the connection unit 150A.

[0284] Next, with reference to Figure 18 the timing diagram, an example of another process in which user A uses the data held by user B will be described. In Figure 17 the process, data was obtained from user B according to the request of user A, but in Figure 18In the process of , after the policy agreement, the data held by user B is stored in the database 140A of the data circulation platform 100A in advance.

[0285] In step S600, the connection part 150B sends the data of user B to the data circulation platform 100B. The data of user B is stored in the database 140B.

[0286] In step S651, the conversion part 33 sends a data request message for the data of user B to the second connection part 32. For example, for the data of user B that is regularly appended, the conversion part 33 sends a data request message according to the timing of data appending.

[0287] In step S652, the second connection part 32 sends the data request message to the policy application part 130B.

[0288] In step S653, the policy application part 130B confirms whether the content of the data request message follows the policy.

[0289] If the content of the data request message follows the policy, the policy application part 130B requests data from the database 140B in step S654 and obtains the data from the database 140B in step S655.

[0290] In step S656, the policy application part 130B sends the data to the second connection part 32, and in step S657, the second connection part 32 sends the data to the conversion part 33.

[0291] In step S658, the conversion part 33 converts the data from the format of the data circulation platform 100B to the format of the data circulation platform 100A.

[0292] In step S659, the conversion part 33 sends the data to the first connection part 31.

[0293] In step S660, the first connection part 31 stores the data in the database 140A.

[0294] Through the above processing, the data of user B that has reached an agreement through the policy is stored in the database 140A of the data circulation platform 100A, and user A can use the data of user B following the policy.

[0295] When user A uses the data of user B, in step S661, the connection part 150A sends a data request message for the data of user B held in cooperation with A to the policy application part 130A.

[0296] In step S662, the policy application part 130A confirms whether the content of the data request message follows the policy.

[0297] When the content of the data request message complies with the policy, the policy application unit 130A requests data from the database 140A in step S663, obtains data from the database 140A in step S664, and sends the data to the connection unit 150A in step S665.

[0298] As described above, the cooperation providing device 30 of the present embodiment is a cooperation providing device 30 for user A of the data circulation platform 100A to use the data of user B of the data circulation platform 100B, and includes: a first connection unit 31 that forms a policy agreement with user A in the data circulation platform 100A; a second connection unit 32 that forms a policy agreement with user B in the data circulation platform 100B; and a conversion unit 33 that converts the messages transmitted and received between the first connection unit 31 and the second connection unit 32 into the form of the data circulation platform of the destination and forwards them. Thereby, a policy agreement can be formed between user A and user B, and data can be shared between the data circulation platforms 100A and 100B.

[0299] [Example of User C Using User D's Data]

[0300] Refer to Figure 19 , an embodiment of sharing data between the second data circulation platforms 200C and 200D that guarantees the data sharing policy by ensuring the agreement between users without storing the users' data is described. Hereinafter, an example in which user C is a user of the data circulation platform 200C, user D is a user of the data circulation platform 200D, and user D uses user C's data will be described.

[0301] In the present embodiment, a cooperation providing device 30 is provided to cooperate the data circulation platform 200C and the data circulation platform 200D to realize the sharing of data between the data circulation platform 200C and the data circulation platform 200D. Specifically, the cooperation providing device 30 acts as a different organization of user C (C cooperation) in the data circulation platform 200C and acts as user C in the data circulation platform 200D. The cooperation providing device 30 can act as user D in the data circulation platform 200C and act as a separate organization of user D (D cooperation) in the data circulation platform 200D. In the data circulation platform 200C, a policy agreement is formed between user C and the cooperation providing device 30, and in the data circulation platform 200D, a policy agreement is formed between user D and the cooperation providing device 30. The cooperation providing device 30 cooperates the policies of the data circulation platform 200C and the data circulation platform 200D, and converts and relays the messages transmitted and received between the data circulation platform 200C and the data circulation platform 200D.

[0302] The authentication units 210C and 210D of the data circulation platforms 200C and 200D are connected to Figure 2It is the same as the authentication unit 210 of the data circulation platform 200, so repeated descriptions are omitted here. Regarding user C and user D, user C uses the connection unit 250C to communicate with other users connected to the data circulation platform 200C, and user D uses the connection unit 250D to communicate with other users connected to the data circulation platform 200D. In addition, in Figure 19 In the example of, the connection unit 250C and the connection unit 250D obtain tokens from different data circulation platforms 200C and 200D, so they cannot communicate directly with each other.

[0303] Figure 19 The collaboration providing device 30 of includes a first connection unit 31, a second connection unit 32, and a conversion unit 33.

[0304] The first connection unit 31 authenticates by presenting the certificate held by the first connection unit 31 to the authentication unit 210C of the data circulation platform 200C in order to be able to communicate with each user of the data circulation platform 200C, requests a token and obtains the token. The first connection unit 31 can communicate with the connection unit 250C by exchanging tokens with the connection unit 250C of user C and mutually confirming the legitimacy.

[0305] The first connection unit 31 sends the policy recommendation message of user D received via the conversion unit 33 to the connection unit 250C, and sends the policy approval message of user C received from the connection unit 250C to the second connection unit 32 via the conversion unit 33. User C approves the policy recommendation message through the connection unit 250C, thereby forming a policy agreement between user C and the first connection unit 31 in the data circulation platform 200C.

[0306] The first connection unit 31 requests data from the connection unit 250C according to the policy, and sends the data received from the connection unit 250C to the second connection unit 32 via the conversion unit 33.

[0307] The second connection unit 32 authenticates by presenting the certificate held by the second connection unit 32 to the authentication unit 210D of the data circulation platform 200D in order to be able to communicate with each user of the data circulation platform 200D, requests a token and obtains the token. The second connection unit 32 can communicate with the connection unit 250D by exchanging tokens with the connection unit 250D of user D and mutually confirming the legitimacy.

[0308] The second connection unit 32 includes a policy management unit 321 and a policy application unit 322. The policy management unit 321 forms a policy agreement between user C and user D in the data circulation platform 200D. The policy application unit 322 sends the data of user C according to the policy agreed upon in the data circulation platform 200D. Obtain the data of user C from the data circulation platform 200C.

[0309] The Policy Management Department 321 receives and holds the policy suggestion message of User D. The Second Connection Department 32 sends the policy suggestion message of User D held by the Policy Management Department 321 to the Data Circulation Platform 200C via the Conversion Department 33 and the First Connection Department 31. When the policy suggestion of User D is approved, the Policy Management Department 321 saves the approved policy in the Policy Application Department 322.

[0310] The Policy Application Department 322 receives a data request message from User D and determines whether the content of the data request message complies with the policy held by the Policy Application Department 322. When the data request message complies with the policy, the Policy Application Department 322 sends the data request message to the Conversion Department 33, obtains data from the Data Circulation Platform 200C, and sends the data to the Connection Department 250D.

[0311] The Conversion Department 33 converts the messages sent and received between the Data Circulation Platform 200C and the Data Circulation Platform 200D.

[0312] When the Conversion Department 33 sends the policy suggestion message of User D received from the Second Connection Department 32 to the First Connection Department 31, it converts the policy from the form of the Data Circulation Platform 200D to the form of the Data Circulation Platform 200C. The Conversion Department 33 converts the policy so that the policy agreed upon between User D using the data and the Second Connection Department 32 becomes the same or more restricted policy as the policy agreed upon between User C providing the data and the First Connection Department 31. The conversion method and conversion content are the same as those of the Figure 3 Conversion Department 33, so the description is omitted here.

[0313] The Conversion Department 33 has a correspondence table that corresponds the policies agreed upon in the Data Circulation Platform 200C with the policies agreed upon in the Data Circulation Platform 200D, enabling the policies of the Data Circulation Platform 200C and the policies of the Data Circulation Platform 200D to cooperate. For example, the Connection Department 250D requests data from the Second Connection Department 32 in accordance with the policy agreed upon in the Data Circulation Platform 200D. The Conversion Department 33 refers to the correspondence table and converts the data request to the Second Connection Department 32 into a data request to the Connection Department 250C according to the policy agreed upon in the Data Circulation Platform 200C corresponding to the policy agreed upon in the Data Circulation Platform 200D, and sends it to the First Connection Department 31.

[0314] Next, referring to the Figure 20 sequence diagram, an example of the policy agreement formation process will be described. The Connection Department 250C of User C and the First Connection Department 31 complete mutual authentication by exchanging tokens obtained from the Data Circulation Platform 200C. The Connection Department 250D of User D and the Second Connection Department 32 complete mutual authentication by exchanging tokens obtained from the Data Circulation Platform 200D.

[0315] In step S701, the connection part 250D sends a policy recommendation message for entrusting the sharing of data held by the entrusted sharing user C to the policy management part 321.

[0316] In step S702, the second connection part 32 obtains a policy list from the policy management part 321. In step S703, a policy recommendation message for entrusting the sharing of data held by the entrusted sharing user C is extracted from the information included in the policy list, and the extracted policy recommendation message is sent to the conversion part 33.

[0317] In step S704, the conversion part 33 converts the received policy recommendation message from the format of the data circulation platform 200D to the format of the data circulation platform 200C. In step S705, the converted policy recommendation message is sent to the first connection part 31.

[0318] In step S706, the first connection part 31 sends a policy recommendation message to the policy management part 251C. The policy management part 251C holds the policy recommendation message.

[0319] In step S707, the connection part 250C obtains a policy list from the policy management part 251C. User C confirms the policy recommendation for user C included in the policy list.

[0320] When user C approves the policy, in step S708, the connection part 250C sends a policy approval message to the policy management part 251C.

[0321] When the policy management part 251C receives the policy approval message, in step S709, the approved policy is saved in the policy application part 252C, and in step S710, the policy approval message is sent to the first connection part 31.

[0322] In step S711, the first connection part 31 sends a policy approval message to the conversion part 33.

[0323] In step S712, the conversion part 33 converts the received policy approval message from the format of the data circulation platform 200C to the format of the data circulation platform 200D, and in step S713, the converted policy approval message is sent to the second connection part 32.

[0324] In step S714, the second connection part 32 sends a policy approval message to the policy management part 321.

[0325] When the policy management part 321 receives the policy approval message, in step S715, the approved policy is saved in the policy application part 322, and in step S716, it notifies the connection part 250D that the policy has been approved.

[0326] When a policy agreement is reached in the data circulation platform 200C and the data circulation platform 200D respectively, the conversion unit 33 records the correspondence between the policy agreed upon in the data circulation platform 200C and the policy agreed upon in the data circulation platform 200D in the policy correspondence table.

[0327] Next, with reference to Figure 21 the following sequence diagram, an example of the process of user D using the data held by user C will be described.

[0328] In step S801, the connection unit 250D sends a data request message for the data of user C to the policy application unit 322.

[0329] In step S802, the policy application unit 322 confirms whether the content of the data request message complies with the policy.

[0330] If the content of the data request message complies with the policy, in step S803, the policy application unit 322 sends the data request message to the second connection unit 32.

[0331] In step S804, the second connection unit 32 sends the data request message to the conversion unit 33.

[0332] In step S805, the conversion unit 33 converts the data request message from the format of the data circulation platform 200D to the format of the data circulation platform 200C. For example, the conversion unit 33 refers to the policy correspondence table and converts the request from the policy application unit 322 for the second connection unit 32 into a request for the policy application unit 252C of the connection unit 250C.

[0333] In step S806, the conversion unit 33 sends the converted data request message to the first connection unit 31.

[0334] In step S807, the first connection unit 31 sends a data request to the policy application unit 252C.

[0335] In step S808, the policy application unit 252C confirms whether the content of the data request message complies with the policy.

[0336] If the content of the data request message complies with the policy, in step S809, the policy application unit 252C requests data from the connection unit 250C and obtains the data from the connection unit 250C in step S810.

[0337] In step S811, the policy application unit 252C sends data to the first connection unit 31, and in step S812, the first connection unit 31 sends data to the conversion unit 33.

[0338] In step S813, the conversion unit 33 converts the data from the format of the data circulation platform 200C to the format of the data circulation platform 200D.

[0339] In step S814, the conversion unit 33 sends the data to the second connection unit 32.

[0340] In step S815, the second connection unit 32 sends the data to the policy application unit 322, and in step S816, the policy application unit 322 sends the data to the connection unit 250D.

[0341] Refer to Figure 22 , and another example of sharing data between the second data circulation platforms 200C and 200D will be described. Figure 22 The example shown is different from the example shown in Figure 19 in that after the protocol for forming the policy, the connection unit 250C and the connection unit 250D directly send and receive data.

[0342] Figure 22 The collaboration providing device 30 of does not relay data, so it does not maintain policies, and the second connection unit 32 does not have a policy application unit 322. In addition, the second connection unit 32 has a policy management unit 321 in order to receive a policy proposal from the connection unit 250D and respond to its approval.

[0343] When a protocol for forming a policy is formed between user C and user D, as described in Figure 20 , the connection unit 250C and the connection unit 250D send and receive messages via the collaboration providing device 30 to form a protocol for the policy. The formed policy is stored in the policy application unit 252C of the connection unit 250C of the data provider.

[0344] When a protocol for forming a policy is formed, as shown in the timing diagram of Figure 23 , in step S900, tokens are exchanged between the connection unit 250C and the connection unit 250D. The authentication unit 210C of the data circulation platform 200C and the authentication unit 210D of the data circulation platform 200D share information for mutually verifying the tokens, and this information is shared between the connection units 250C and 250D. Therefore, the token issued by the authentication unit 210C can also be verified in the connection unit 250D, and the token issued by the authentication unit 210D can also be verified in the connection unit 250C.

[0345] When user D uses the data of user C, in step S901, the connection unit 250D sends a data request message for the data of user C to the policy application unit 252C of the connection unit 250C.

[0346] In step S902, the policy application unit 252C determines whether the content of the data request message complies with the policy maintained by the policy application unit 252C.

[0347] When the data request message complies with the policy, in step S903, the policy application unit 252C requests data from the connection unit 250C.

[0348] In step S904, the connection unit 250C obtains data from the storage location of the data and sends the data to the policy application unit 252C. The data can also be sent included in a data transmission message.

[0349] In step S905, the policy application unit 252C sends the data to the connection unit 250D.

[0350] As described above, the cooperation providing device 30 of the present embodiment is a cooperation providing device 30 for user C of the data circulation platform 200C to use the data of user D of the data circulation platform 200D, and includes: a first connection unit 31 that forms a policy protocol with user C in the data circulation platform 200C; a second connection unit 32 that forms a policy protocol with user D in the data circulation platform 200D; and a conversion unit 33 that converts messages transmitted and received between the first connection unit 31 and the second connection unit 32 into the form of the data circulation platform of the destination and forwards them. Thereby, a policy protocol can be formed between user C and user D, and data can be shared between the data circulation platforms 200C and 200D.

[0351] In addition, in the above, the cooperation providing device 30 has been described as a device different from the data circulation platforms 100 and 200, but one of the data circulation platforms 100 and 200 that cooperate with each other may have the function of the cooperation providing device. For example, Figure 3 、 Figure 8 、 Figure 14 the data circulation platforms 100 and 100A may also include the first connection unit 31, the second connection unit 32, and the conversion unit 33.

[0352] In the cooperation providing device 30 described above, for example, a general computer system having a central processing unit (CPU) 901, a memory 902, a storage device 903, a communication device 904, an input device 905, and an output device 906 as shown in Figure 24 can be used. In this computer system, the CPU 901 executes a predetermined program loaded on the memory 902, thereby implementing the cooperation providing device 30. This program can be recorded on a computer-readable non-transitory recording medium such as a magnetic disk, an optical disk, or a semiconductor memory, and can also be distributed via a network. As each unit of the data circulation platforms 100 and 200, the above computer system can also be used.

[0353] Regarding the above embodiment, the following additional notes are further disclosed.

[0354] (Supplementary Note Item 1)

[0355] A collaborative provision device for enabling collaboration between a first data circulation platform and a second data circulation platform to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, wherein,

[0356] The collaborative provision device includes:

[0357] A first connection part that forms an agreement on a first sharing condition with the first user in the first data circulation platform; and

[0358] A second connection part that forms an agreement on a second sharing condition with the second user in the second data circulation platform,

[0359] By reaching an agreement on the first sharing condition and the second sharing condition, an agreement on a sharing condition via the collaborative provision device is formed between the first user and the second user.

[0360] The sharing condition agreed upon between the user using the data and the collaborative provision device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaborative provision device.

[0361] (Supplementary Note Item 2)

[0362] A data circulation provision device for the first data circulation platform in a data circulation provision system, the data circulation provision system enabling collaboration between a first data circulation platform and a second data circulation platform through a collaborative provision device to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, wherein,

[0363] The data circulation provision device includes:

[0364] A management part that manages the sharing condition between the first user and the collaborative provision device; and

[0365] A storage unit for the collaborative provision device,

[0366] In the first data circulation platform, an agreement on a first sharing condition is formed between the first user and the collaborative provision device, in the second data circulation platform, an agreement on a second sharing condition is formed between the second user and the collaborative provision device, and by reaching an agreement on the first sharing condition and the second sharing condition, an agreement on a sharing condition via the collaborative provision device is formed between the first user and the second user.

[0367] The sharing conditions for reaching an agreement between the user who utilizes the data and the collaborative providing device are the same conditions as or more restrictive conditions than the sharing conditions for reaching an agreement between the user who provides the data and the collaborative providing device.

[0368] (Supplementary Note Item 3)

[0369] A data circulation providing device for a second data circulation platform in a data circulation providing system, where the data circulation providing system enables cooperation between a first data circulation platform and a second data circulation platform through a collaborative providing device to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform. Among them,

[0370] The data circulation providing device includes: an authentication unit that authenticates the collaborative providing device and assigns a token to the collaborative providing device for indicating the legitimacy of the collaborative providing device to the second user.

[0371] In the first data circulation platform, an agreement on the first sharing conditions is formed between the first user and the collaborative providing device. In the second data circulation platform, an agreement on the second sharing conditions is formed between the second user and the collaborative providing device. Through the agreement on the first sharing conditions and the second sharing conditions, an agreement on the sharing conditions via the collaborative providing device is formed between the first user and the second user.

[0372] The sharing conditions for reaching an agreement between the user who utilizes the data and the collaborative providing device are the same conditions as or more restrictive conditions than the sharing conditions for reaching an agreement between the user who provides the data and the collaborative providing device.

[0373] (Supplementary Note Item 4)

[0374] A collaborative providing method for enabling cooperation between a first data circulation platform and a second data circulation platform to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform. Among them,

[0375] The collaborative providing method has the following steps:

[0376] Forming an agreement on the first sharing conditions with the first user in the first data circulation platform by the collaborative providing device; and

[0377] Forming an agreement on the second sharing conditions with the second user in the second data circulation platform by the collaborative providing device.

[0378] An agreement is reached through the first sharing condition and the second sharing condition, forming an agreement on the sharing condition via the collaboration providing device between the first user and the second user.

[0379] The sharing condition agreed upon between the user utilizing the data and the collaboration providing device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaboration providing device.

[0380] (Supplementary Note 5)

[0381] A data circulation providing system that enables collaboration between a first data circulation platform and a second data circulation platform to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, wherein

[0382] The data circulation providing system includes:

[0383] The first data circulation platform;

[0384] A first connection part that forms an agreement on the first sharing condition with the first user in the first data circulation platform; and

[0385] A second connection part that forms an agreement on the second sharing condition with the second user in the second data circulation platform,

[0386] An agreement is reached through the first sharing condition and the second sharing condition, forming an agreement on the sharing condition via the collaboration providing device between the first user and the second user.

[0387] The sharing condition agreed upon between the user utilizing the data and the collaboration providing device is the same condition or a condition more restricted by the agreement as the sharing condition agreed upon between the user providing the data and the collaboration providing device.

[0388] Symbol Explanation

[0389] 100, 100A, 100B Data Circulation Platform

[0390] 110, 110A, 110B Authentication Department

[0391] 120, 120A, 120B Policy Management Department

[0392] 130, 130A, 130B Policy Application Department

[0393] 140, 140A, 140B Database

[0394] 150A, 150B Connection Part

[0395] 200, 200C, 200D Data Circulation Platform

[0396] 210, 210C, 210D Authentication Department

[0397] 250C, 250D Connection Department

[0398] 251C Policy Management Department

[0399] 252C Policy Application Department

[0400] 30 Collaboration Provision Device

[0401] 31 First Connection Department

[0402] 32 Second Connection Department

[0403] 321 Policy Management Department

[0404] 322 Policy Application Department

[0405] 33 Conversion Department

[0406] 331 First Conversion Department

[0407] 332 Second Conversion Department

[0408] 333 General Policy Management Department.

Claims

1. A collaborative providing device for enabling a first data circulation platform and a second data circulation platform to collaborate to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, characterized in that the collaborative providing device includes: a first connection part that forms an agreement on a first sharing condition with the first user in the first data circulation platform; and a second connection part that forms an agreement on a second sharing condition with the second user in the second data circulation platform, by reaching an agreement on the first sharing condition and the second sharing condition, an agreement on a sharing condition via the collaborative providing device is formed between the first user and the second user, the sharing condition agreed upon between the user using the data and the collaborative providing device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaborative providing device.

2. The collaborative providing device according to claim 1, characterized in that the first sharing condition and the second sharing condition are made to correspond, a data request conforming to the first sharing condition is converted into a data request conforming to the second sharing condition, and a data request conforming to the second sharing condition is converted into a data request conforming to the first sharing condition.

3. The collaborative providing device according to claim 1 or 2, characterized in that the first data circulation platform is a data circulation platform that has a storage unit and provides data circulation by holding the user's data in the storage unit and managing access, the second data circulation platform is a data circulation platform that does not hold the user's data but guarantees an agreement on a sharing condition regarding data among users to provide data circulation, the first data circulation platform has a storage unit for the collaborative providing device, in the case of providing the first user with the use of the second user's data, the second connection part obtains the second user's data under the second sharing condition, and the first connection part stores the second user's data obtained by the second connection part in the storage unit for the collaborative providing device so that the first user can use the second user's data in the first data circulation platform under the first sharing condition.

4. The collaborative providing device according to claim 3, characterized in that the second user's data is obtained regularly under the second sharing condition and stored in the storage unit for the collaborative providing device.

5. The collaborative providing device according to claim 3, characterized in that the sharing condition of the data is input by the first user, the first sharing condition is set in the first data circulation platform according to this condition, and a message for forming an agreement on the second sharing condition with the second user is sent according to this condition.

6. The collaborative providing device according to claim 1 or 2, characterized in that The first data circulation platform is a data circulation platform that has a storage unit and provides data circulation by storing the user's data in the storage unit and managing access thereto. The second data circulation platform is a data circulation platform that does not store the user's data but provides data circulation by ensuring an agreement on the sharing conditions of the data among users. In the case of providing the second user with the use of the first user's data, the first connection part obtains the first user's data stored in the storage unit under the first sharing condition, and the second connection part provides the second user with the first user's data obtained by the first connection part under the second sharing condition.

7. The cooperation providing device according to claim 1 or 2, characterized in that The first data circulation platform and the second data circulation platform are respectively data circulation platforms that have a storage unit and provide data circulation by storing the user's data in the storage unit and managing access thereto. The first data circulation platform has a storage unit for the cooperation providing device. In the case of providing the first user with the use of the second user's data, the second connection part obtains the second user's data stored in the storage unit of the second data circulation platform under the second sharing condition, and the first connection part stores the second user's data obtained by the second connection part in the storage unit for the cooperation providing device so that the first user can use the second user's data in the first data circulation platform under the first sharing condition.

8. The cooperation providing device according to claim 1 or 2, characterized in that The first data circulation platform and the second data circulation platform are respectively data circulation platforms that do not store the user's data but provide data circulation by ensuring an agreement on the sharing conditions of the data among users. In the case of providing the first user with the use of the second user's data, the second connection part obtains the second user's data under the second sharing condition, and the first connection part provides the first user with the second user's data obtained by the second connection part under the first sharing condition.

9. The cooperation providing device according to claim 8, characterized in that After the first sharing condition and the second sharing condition reach an agreement, data is directly transmitted and received between the first user and the second user.

10. A data circulation providing device for a first data circulation platform in a data circulation providing system, the data circulation providing system enabling cooperation between a first data circulation platform and a second data circulation platform through a cooperation providing device to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, characterized in that The data circulation providing device includes: A management part that manages the sharing conditions between the first user and the cooperation providing device; and A storage unit for the cooperation providing device. In the first data circulation platform, a protocol for forming a first sharing condition is formed between the first user and the collaborative providing device. In the second data circulation platform, a protocol for forming a second sharing condition is formed between the second user and the collaborative providing device. An agreement is reached through the first sharing condition and the second sharing condition, and a protocol for forming a sharing condition via the collaborative providing device is formed between the first user and the second user. The sharing condition for reaching an agreement between the user utilizing the data and the collaborative providing device is the same condition as or a more restricted condition than the sharing condition for reaching an agreement between the user providing the data and the collaborative providing device.

11. The data circulation providing device according to claim 10, wherein the first data circulation platform is a data circulation platform that includes a storage unit and provides data circulation by holding the user's data in the storage unit and managing access. the second data circulation platform is a data circulation platform that does not hold the user's data but guarantees an agreement on the sharing condition of data among users to provide data circulation. In the case of providing the first user with the use of the second user's data, the second user's data obtained under the second sharing condition is stored in the storage unit for the collaborative providing device so that the first user can utilize the second user's data in the first data circulation platform under the first sharing condition.

12. The data circulation providing device according to claim 10, wherein the first data circulation platform and the second data circulation platform are respectively data circulation platforms that include a storage unit and provide data circulation by holding the user's data in the storage unit and managing access. In the case of providing the first user with the use of the second user's data, the second user's data obtained under the second sharing condition is stored in the storage unit for the collaborative providing device so that the first user can utilize the second user's data in the first data circulation platform under the first sharing condition.

13. A data circulation providing device for a second data circulation platform in a data circulation providing system, the data circulation providing system enabling cooperation between a first data circulation platform and a second data circulation platform through a collaborative providing device to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, characterized in that the data circulation providing device includes: an authentication unit that authenticates the collaborative providing device and assigns a token for indicating the legitimacy of the collaborative providing device to the second user to the collaborative providing device. In the first data circulation platform, a protocol for forming a first sharing condition is established between the first user and the collaborative providing device. In the second data circulation platform, a protocol for forming a second sharing condition is established between the second user and the collaborative providing device. An agreement is reached through the first sharing condition and the second sharing condition, and a protocol for forming a sharing condition via the collaborative providing device is established between the first user and the second user. The sharing condition agreed upon between the user utilizing the data and the collaborative providing device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaborative providing device.

14. The data circulation providing device according to claim 13, wherein: The first data circulation platform is a data circulation platform that includes a storage unit and provides data circulation by storing the user's data in the storage unit and managing access. The second data circulation platform is a data circulation platform that does not store the user's data but ensures an agreement on the sharing condition of the data among users to provide data circulation. In the case of providing the utilization of the first user's data to the second user, the collaborative providing device obtains the first user's data stored in the storage unit under the first sharing condition, and the collaborative providing device provides the first user's data to the second user under the second sharing condition.

15. The data circulation providing device according to claim 13, wherein: The first data circulation platform and the second data circulation platform are each a data circulation platform that does not store the user's data but ensures an agreement on the sharing condition of the data among users to provide data circulation. In the case of providing the utilization of the first user's data to the second user, the collaborative providing device obtains the first user's data under the first sharing condition, and the collaborative providing device provides the first user's data to the second user under the second sharing condition.

16. A collaborative providing method for enabling a first data circulation platform and a second data circulation platform to collaborate to provide data sharing between a first user of the first data circulation platform and a second user of the second data circulation platform, wherein: The collaborative providing method includes the following steps: In the first data circulation platform by the collaborative providing device, establishing a protocol for forming a first sharing condition with the first user; And In the second data circulation platform by the collaborative providing device, establishing a protocol for forming a second sharing condition with the second user, Reaching an agreement through the first sharing condition and the second sharing condition, and establishing a protocol for forming a sharing condition via the collaborative providing device between the first user and the second user, The sharing condition agreed upon between the user utilizing the data and the collaborative providing device is the same condition or a more restricted condition as the sharing condition agreed upon between the user providing the data and the collaborative providing device.