Data utilization system and data utilization method
The data utilization system addresses the challenge of managing user data across platforms by using authentication and linkage units to facilitate data transactions and format conversions, ensuring data sovereignty and efficient utilization.
Patent Information
- Application Number
- JP2025109944
- Authority / Receiving Office
- JP · JP
- Patent Type
- Patents
- Current Assignee / Owner
- Filing Date
- 2025-06-30
- Publication Date
- 2025-10-06
- Estimated Expiration
- 2045-06-30
AI Technical Summary
Existing data distribution systems fail to effectively manage and utilize user data stored across different external services for commercial purposes while ensuring data sovereignty and efficient data linkage.
A data utilization system that enables data transactions between users via a data distribution infrastructure, utilizing an authentication information management unit to link authentication information, an external service linkage unit to acquire and manage user data, and a hub function unit to provide user data to connected data distribution platforms, with virtual connectors converting data formats for use by other users.
Enables effective utilization of user data across multiple platforms, ensuring data sovereignty and reliable data transactions, allowing users to share and utilize data efficiently.
Smart Images

Figure 0007749281000001_ABST
Abstract
Description
[Technical Field]
[0001] The present invention relates to a data utilization system and a data utilization method. [Background technology]
[0002] In recent years, with the spread of network services, etc., various user data are collected and stored in external services that provide a variety of services to users. This stored user data is managed individually for each user for each external service. For this reason, it is extremely difficult to link data with other external services or to mutually share user data between users, especially for the purpose of utilizing user data for commercial data transactions, because it requires a great deal of effort and management burden.
[0003] Meanwhile, data space, a data distribution platform that enables multiple users to exchange data safely while ensuring mutual trust, has been attracting attention. For example, the data distribution system disclosed in Patent Document 1 provides data sharing that enables multiple users to exchange data by linking multiple data distribution platforms and agreeing on sharing conditions. [Prior art documents] [Patent documents]
[0004] [Patent Document 1] Japanese Patent Application Publication No. 2024-73377 Summary of the Invention [Problem to be solved by the invention]
[0005] However, in the data distribution system of the prior art disclosed in the above Patent Document 1, although data linkage can be realized between each data distribution platform and each user can share data, it is not at all anticipated that the user's own user data stored in different external services can be managed so that it can be made available to the data distribution platform for commercial purposes while ensuring data sovereignty, and that efficient utilization of the user data can be achieved.
[0006] The present invention has been made in consideration of the above circumstances, and aims to provide a data utilization system and a data utilization method that can effectively utilize user data stored in external services. [Means for solving the problem]
[0007] The data utilization system according to the present invention is a data utilization system that enables data transactions between a first user who provides user data and a second user who uses the user data via a data distribution infrastructure, and includes an authentication information management unit that receives first authentication information that identifies the first user and second authentication information that identifies the first user in an external service used by the first user, and links the first authentication information with the second authentication information; an external service linkage unit that acquires user data accumulated in the external service based on the second authentication information, and manages the acquired user data by linking it with the first authentication information; The data distribution platform is provided with a hub function unit that authenticates the first user based on first authentication information, presents the acquired user data to the authenticated first user, and provides the selected user data to the destination connector connected to the selected data distribution platform based on selection information of the data distribution platform connected via the user data and the destination connector that provides the user data, and a virtual connector that converts the provided user data into a format that can be used by the data distribution platform, connects it to the data distribution platform as the destination connector, and provides the converted user data so that it can be used by the second user.
[0008] In one embodiment of the present invention, the authentication information management unit further links the linked first authentication information and second authentication information with third authentication information that identifies the first user in the selected data distribution platform and fourth authentication information that identifies the connector to which the information is to be provided.
[0009] In another embodiment of the present invention, the authentication information management unit inputs the necessary information required for the first user to use the selected data distribution platform, creates authorization information for the selected user data in the data distribution platform based on the necessary information input, and creates the virtual connector.
[0010] In still another embodiment of the present invention, the authentication information management unit creates the virtual connector so that it can become the destination connector for each of the pre-existing data distribution platforms that are different from each other.
[0011] In yet another embodiment of the present invention, the virtual connector sets additional information including terms of use and contract / authorization policies for the second user of the provided user data in the destination connector based on the authorization information.
[0012] In yet another embodiment of the present invention, the virtual connector creates a data catalog that can be provided to the data distribution platform based on metadata of the provided user data and standards of the data distribution platform.
[0013] a data utilization method for utilizing the user data of the first user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the first user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the first user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the first user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the first user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the first user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; a data utilization method for utilizing the user data of the second user based on the first authentication information; [Effects of the Invention]
[0014] According to the present invention, it is possible to effectively utilize user data stored in an external service. [Brief explanation of the drawings]
[0015] [Figure 1] 1 is a block diagram showing in outline the basic configuration of a data distribution system that uses a data utilization system according to one embodiment of the present invention. [Figure 2] FIG. 2 is a block diagram showing an outline of the functional configuration of the data utilization system. [Figure 3] FIG. 10 is a diagram showing an example of a user data presentation and selection screen of the data utilization system. [Figure 4]FIG. 2 is a block diagram showing an outline of a hardware configuration for realizing a data utilization method in the data utilization system. DETAILED DESCRIPTION OF THE INVENTION
[0016] Hereinafter, a data utilization system and a data utilization method according to embodiments of the present invention will be described in detail with reference to the accompanying drawings. However, the following embodiments do not limit the inventions according to the claims, and not all of the combinations of features described in the embodiments are necessarily essential to the solution of the invention.
[0017] In the following embodiments, the same or corresponding components are denoted by the same reference numerals, and redundant explanations are omitted. In the embodiments, the arrangement, scale, dimensions, etc. of each component may be exaggerated or minimized, and may not correspond to the actual ones, and some components may be omitted.
[0018] [Basic configuration of data utilization system] FIG. 1 is a block diagram showing in outline the basic configuration of a data distribution system that uses a data utilization system 1 according to one embodiment of the present invention.
[0019] As shown in FIG. 1, the data utilization system 1 according to this embodiment is a system that enables data transactions between a terminal device 4 of a data provider A (user A) that provides user data and a terminal device 5 of a data provider B (user B), and a terminal device 71 of a data recipient C (user C), a terminal device 72 of a data recipient D (user D), and a terminal device 73 of a data recipient E (user E), which use the user data, via data space X50 and data space Y60, which are different data distribution platforms. Note that users A and B may also be referred to as "first users," and users C, D, and E may also be referred to as "second users." Data space may also be abbreviated as "DS."
[0020] In addition, the data utilization system 1 links data with multiple different external services 6, 7, and 8, and acquires various data accumulated by service user A (user A) and service user B (user B) using each of the external services 6 to 8 via terminal devices 2 and 3, respectively, from each of the external services 6 to 8 as user data under the operation of users A and B, and performs data processing so that the acquired user data can be provided to data recipient C (user C), data recipient D (user D), and data recipient E (user E) on data space X50 and data space Y60.
[0021] In addition, User A and User B can be Service User A and Service User B from the perspective of using external services 6 to 8 as shown in the figure, and can be Data Provider A and Data Provider B from the perspective of using data utilization system 1.
[0022] Furthermore, user A's terminal devices 2 and 4, user B's terminal devices 3 and 5, external services 6 to 8, and data utilization system 1 are interconnected via a communication network (not shown), and data utilization system 1, user C's terminal device 71, user D's terminal device 72, and user E's terminal device 73 are interconnected via the communication network and data space X50 and data space Y60. User A's terminal devices 2 and 4 may be the same or different. Similarly, user B's terminal devices 3 and 5 may be the same or different. Terminal devices 2 to 5 and 71 to 73 may be configured as known information processing devices, arithmetic processing devices, etc., such as personal computers (PCs), tablet devices, and smartphones. Data utilization system 1 can be realized by any of these devices executing an operating program.
[0023] Instead of or in addition to a communication network, these may be connected via a cloud or the like. Although not shown, the communication network may also be connected to a third-party certification authority (CA), for example. The configuration shown in Figure 1 illustrates two service users and two data providers, three external services, two data spaces, and three data destinations, but is not limited to these.
[0024] Furthermore, Data Space X50 and Data Space Y60, to which the data utilization system 1 is connected and linked, are, for example, decentralized ecosystems with common policies and rules defined by a governance framework. Therefore, in Data Space X50 and Data Space Y60, safe and reliable data transactions are possible between DS participants while maintaining data reliability and data sovereignty.
[0025] The external services 6 to 8 include various service systems that provide a variety of services on various existing platforms (PFs). Examples of the external services 6 to 8 include various services provided by public institutions to users A and B who are service users, various services on shopping sites operated by shopping companies, unique point services provided by each company, and various other membership services.
[0026] Here, the external services 6 to 8 each have a database (DB) (not shown) that accumulates and stores various data related to the external services 6 to 8 of service user A (user A) and service user B (user B) who use these services as user data.
[0027] The user data stored in the database (DB) includes various data, such as data regarding service usage history of external services 6 to 8, and data regarding content created by service users User A and User B themselves in relation to external services 6 to 8.
[0028] Such user data may include, for example, if any of external services 6 to 8 is a service related to industrial waste, data that can identify information about various types of waste, such as the waste generator, the waste generator facility, the waste disposal company, the type of waste, the grade of waste, and the amount of waste disposed of.
[0029] The data utilization system 1 then links various identification information (hereinafter referred to as "account ID") such as an account ID, which is first authentication information that identifies user A and user B of the data provider who have previously registered as members (account registration) in the system and logged in, with various identification information (hereinafter referred to as "service ID") such as a service ID, which is second authentication information that identifies user A and user B of the service users in external services 6 to 8 provided by user A and user B of the data provider when they registered their accounts in the data utilization system 1.
[0030] This enables the data utilization system 1 to acquire the user data of user A and user B stored in the databases (DBs) of external services 6 to 8 as user data provided by user A and user B based on the service IDs of data users A and B linked to the account IDs of data providers user A and user B.
[0031] In addition, the data utilization system 1 manages the acquired user data by linking it to the account IDs of user A and user B, and creates a virtual connector (AX) 40, a virtual connector (AY) 41, and a virtual connector (BY) 42 that function as destination connectors that provide similarly selected user data to the data space X50 and data space Y60 selected by user A, and the data space Y60 selected by user B.
[0032] As a result, the data utilization system 1 provides the user data selected by user A to user C and user D via data space X50 using the virtual connector (AX) 40 so that they can be used. In addition, the data utilization system 1 provides the user data selected by user A and the user data selected by user B to user E via data space Y60 using the virtual connector (AY) 41 and virtual connector (BY) 42 so that they can be used. Therefore, the data utilization system 1 can effectively utilize the user data stored in external services 6 to 8.
[0033] [Functional configuration of data utilization system] FIG. 2 is a block diagram showing a schematic functional configuration of the data utilization system.
[0034] In the following, we will explain an example in which the data utilization system 1 conducts data transactions via data space X50 under the instructions of data provider A (user A), using external service 6, with user data accumulated in external service 6 of service user A (user A).
[0035] Note that data transactions can also be performed for User A and User B when using external services 7 and 8, so a description thereof will be omitted here. Furthermore, data transactions using user data in the data utilization system 1 are not limited to the cases described below. Furthermore, parts that overlap with parts already described will be assigned the same reference numerals and descriptions thereof will be omitted.
[0036] As shown in Figure 2, the data utilization system 1 includes an authentication information management unit 10, an external service integration unit 20, a hub function unit 30, and a virtual connector (AX) 40 to enable data integration with external services 6 and provide data to data space X50.
[0037] The authentication information management unit 10 creates and manages an account 4b and various authentication information and authorization information of a data provider A (user A), who is a user of the data utilization system 1, at the time of account registration. The authentication information management unit 10 has, for example, an account / authentication / authorization information creation unit 11, an external service authentication information management unit 12, a DS user authentication information creation unit 13, and a DS connector authentication information creation unit 14.
[0038] The account 4b is used as first authentication information including an account ID that can identify the user A in the data utilization system 1. Here, authentication information refers to information that can confirm and identify who or what the other party in communication is, and authorization information refers to information that can grant access rights that enable the use of resources of the target object under specific conditions.
[0039] The authentication information management unit 10 receives provided information 4a from user A and inputs it. The provided information 4a includes account creation information required to create user A's account 4b, DS authentication information required when participating in or using data space X50, and a service ID, which is user authentication information for an external service required to identify user A in the external service 6. The account creation information may also include various attribute information required to identify user A as an individual or a corporation, such as name, title, address, telephone number, gender, age, occupation, industry, etc., as well as various contractual conditions of user A associated with the use of the data utilization system 1.
[0040] For example, if user A is a corporate user, the service ID may be identification information (identifier) such as a corporate number or a G Biz ID that indicates a unique ID on the platform (PF) of the external service 6. For example, if user A is an individual user, the service ID may be identification information such as an email address or My Number (registered trademark) that indicates a unique ID on the platform (PF) of the external service 6.
[0041] Based on the provided information 4a, the account and authentication / authorization information creation unit 11 creates an account 4b for user A, which is information including an account ID linked to a service ID. The account and authentication / authorization information creation unit 11 creates and links, for example, authentication information for user A authenticated in advance by a certification authority (CA) and authorization information for user A's user data to the created account 4b, and manages the account 4b by linking it to the created virtual connector (AX) 40.
[0042] The external service authentication information management unit 12 manages various types of authentication information for the external service 6 based on the provided information 4a. If the operation is such that DS user authentication information for user A is issued by the administrator through the user authentication unit 53 in an application procedure determined by the operator (administrator) of data space X50 based on the provided information 4a, the DS user authentication information creation unit 13 carries out the application procedure and manages various types of information related to authentication.
[0043] In addition, in the case where the DS user authentication information creation unit 13 is allowed to create DS user authentication information by itself in distributed authentication, it creates DS user authentication information for user A and issues it to the user authentication unit 53, thereby managing various information related to authentication. The DS user authentication information (third authentication information) managed by the DS user authentication information creation unit 13 is authentication information that identifies user A in data space X50.
[0044] Based on the provided information 4a, if the application procedure established by the operator (administrator) of data space X50 is to have the administrator issue DS connector authentication information for the connector (recipient connector) of data space X50 via the connector authentication unit 54, the DS connector authentication information creation unit 14 carries out the application procedure and manages various information related to authentication.
[0045] In addition, in the case where the DS connector authentication information creation unit 14 is allowed to create DS connector authentication information by itself in distributed authentication, it creates DS connector authentication information for the data space X50 and issues it to the connector authentication unit 54, thereby managing various information related to authentication. The DS connector authentication information (fourth authentication information) managed by the DS connector authentication information creation unit 14 is authentication information that identifies the connector 52 to which the information is provided in the data space X50.
[0046] Furthermore, the authentication information management unit 10 further links the account 4b created by the account / authentication / authorization information creation unit 11 with the DS user authentication information managed by the DS user authentication information creation unit 13 and the DS connector authentication information managed by the DS connector authentication information creation unit 14. Since the authentication information management unit 10 has input thereto necessary information (DS authentication required information) required for user A4's participation or use of the data space X50 selected by the hub function unit 30 (described later), various types of authorization information for the data space X50 of the user data selected by the hub function unit 30 (described later) is created based on the input DS authentication required information, and a virtual connector (AX) 40 is created.
[0047] In the configuration shown in Figure 1, the authentication information management unit 10 creates the virtual connector (AX) 40, the virtual connector (AY) 41, and the virtual connector (BY) 42 so that they can each become the destination connector 52 for each of the pre-existing, mutually different data spaces X50 and Y60.
[0048] On the other hand, the external service cooperation unit 20 acquires the account 4b appropriately mapped with the authentication information management unit 10, acquires user data accumulated in the external service 6 based on the service ID included in the account 4b, and manages the acquired user data by linking it to the account 4b. The external service cooperation unit 20 includes a data acquisition unit 21 and a data management unit 22.
[0049] The data acquisition unit 21 acquires from the external service 6 the user data to be utilized (hereinafter referred to as "target data") selected and specified by user A and to be provided based on the service ID of the account 4b and the specified information 4c specified by user A and acquired via the hub function unit 30 and the authentication information management unit 10.
[0050] The data management unit 22 manages the target data acquired by the data acquisition unit 21 from the external service 6 in a state where it can be collated with the account 4b. The data management unit 22 may also include a database (DB) (not shown) that can store the target data acquired by the data acquisition unit 21. This database (DB) may be provided on the user A side (for example, a server device of user A) or may be provided in an external storage location designated by user A (for example, a cloud used by user A).
[0051] The hub function unit 30 acts as a hub for the data utilization system 1 and performs access control etc. so that user A can use the functions of the entire system with a single account 4b. The hub function unit 30 has an authentication and authorization control unit 31 and a virtual connector routing unit 32.
[0052] The authentication and authorization control unit 31 functions as a known authentication gateway and authorization gateway. The authentication and authorization control unit 31 references various authentication information and authorization information linked to the account 4b of user A in the authentication information management unit 10, controls access to the data utilization system 1 by user A, and executes appropriate use control of each function.
[0053] The authentication and authorization control unit 31 authenticates user A based on, for example, user A's account 4b, and presents the user data acquired by the external service cooperation unit 20 to the authenticated user A. As an example of a presentation method, a method of displaying a presentation selection screen will be described below, but the presentation can also be performed by audio output or the like, and is not limited to this.
[0054] FIG. 3 is a diagram showing an example of a user data presentation and selection screen of the data utilization system 1. As shown in FIG. 3, a presentation selection screen 80 displayed on a window 89 on the display of the terminal device 4 used by user A includes, for example, a selection field 81 having a selection check box 81a, a data display field 82 displaying user data, which is the information to be provided, and a DS display field 83 displaying the data space of the destination. Note that the window 89 is provided with various buttons for reflecting the intention of user A, such as a decision button 85, a cancel button 86, and a back button 87.
[0055] Each cell of the data display column 82 and the DS display column 83 is configured to allow menu selection using, for example, a pull-down or pop-up method, and is configured to allow the displayed user data and data space to be appropriately selected and switched. Furthermore, the user data and data space displayed in the data display column 82 and the DS display column 83 are those that are previously linked to the account 4b.
[0056] User A checks the presentation selection screen 80 and uses an input device such as a mouse to check the selection check box 81a in the selection column 81 corresponding to the row 84 of the data display column 82 and DS display column 83 that display the user data and data space that User A wishes to select as target data. If the selection is correct, User A presses the OK button 85 in the window 89.
[0057] As a result, user A selects the user data that will be the target data linked to account 4b and the data space to which it will be provided. Information regarding the target data selection of user data based on selection information indicating the selection result by user A or information regarding the target data linkage between user data and data space is input to the virtual connector routing unit 32 as specification information 4c.
[0058] Based on the specification information 4c, the virtual connector routing unit 32 routes the user data in the data management unit 22, which is the target data linked to the account 4b, to a virtual connector (AX) 40 created to work in conjunction with the destination connector 52 connected to the selected data space X50, in order to provide the data as target data to the destination connector 52.
[0059] That is, the virtual connector routing unit 32 identifies a virtual connector (AX) 40 that can be connected to the data space X50 selected by user A and that can be used by user A. Then, it executes various processes such as providing target data via the data space X50 and receiving data that user A wants to acquire.
[0060] The virtual connector (AX) 40 converts the provided target data into a format usable in the data space X50 and virtually connects it to the data space X50 as a destination connector 52. Then, the virtual connector (AX) 40 functions as the destination connector 52 to provide the converted target data so that it can be used by, for example, the terminal device 71 of user C and the terminal device 72 of user D that use the data space X50.
[0061] That is, the virtual connector (AX) 40 has a function that enables various data exchanges that conform to the specifications of the destination connector 52. The virtual connector (AX) 40 has a data conversion unit 43, a data catalog creation unit 44, an additional information setting unit 45, a data transmission / reception unit 46, and a data catalog search unit 47.
[0062] The data conversion unit 43 converts the target data provided by the hub function unit 30 into various formats that can be used in the data space X50 so that the data can be distributed on the data space X50. Note that the target data converted by the data conversion unit 43 is stored and kept in a predetermined data storage location of the data utilization system 1 configured to be separated one-to-one with the virtual connector (AX) 40, or in an external storage location designated by user A, for example, in order to maintain data sovereignty.
[0063] The data catalog creation unit 44 creates a data catalog that can be registered and provided in logical association with the data space X50, based on the meta information (metadata) of the target data provided by the hub function unit 30 and the standards of the data space X50. Here, the standards of the data space X50 include various standards, specifications, policies, etc. of the data space X50.
[0064] The virtual connector (AX) 40 collects and stores all data catalogs on the data space X50 using the data catalog collection unit 51. Here, a data catalog refers to a collection of various data, including the target data, that is systematically organized to facilitate search and use by visualizing detailed information about the data (such as the type, structure, content, attributes, location, and method of use of the data) in the form of a catalog (list).
[0065] The incidental information setting unit 45 creates incidental information including the usage conditions and contract / authorization policies for each of the target data users C and D based on the authorization information of user A from the authentication information management unit 10, and sets the information in the destination connector 52. The incidental information set by the incidental information setting unit 45 determines the usage policies for user C and user D of the target data provided to the data space X50 via the destination connector 52.
[0066] The data transmitter / receiver 46 transmits target data provided from the hub function unit 30 to the destination connector 52, and receives various data obtained from the data space X50 via the destination connector 52. The data transmitter / receiver 46 can also transmit and receive data to and from other connectors on the data space X50.
[0067] The data catalog search unit 47 searches all data catalogs in the data space X50 that have been collected and held by the data catalog collection unit 51, and finds various data, data resources, etc. that User A desires. Then, the data catalog search unit 47 acquires the various data and data resources that it has found so that they can be used, based on the contract terms associated with User A's account 4b that is managed by the authentication information management unit 10.
[0068] By functioning as described above, the data utilization system 1 of this embodiment can provide user data stored in the external services 6 (7, 8) as target data via the data space X50, etc., so that it can be used by the terminal device 71 of user C, the terminal device 72 of user D, the terminal device 73 of user E, etc. This makes it possible to effectively utilize the user data stored in the external services 6 (7, 8).
[0069] [Hardware configuration of data utilization system] FIG. 4 is a block diagram showing a schematic hardware configuration of a computer that realizes the data utilization method in the data utilization system 1.
[0070] The data utilization method implemented by the above-mentioned data utilization system 1 is a method that enables data transactions between user A, who provides user data, and users C, D, and E, who use the user data, via data space X50 and data space Y60.
[0071] The data utilization method includes a step of inputting, by an authentication information management unit 10, an account 4b that identifies user A and a service ID that identifies user A in an external service 6 that user A uses as a user, and linking the account 4b with the service ID. The method also includes a step of, by an external service cooperation unit 20, acquiring user data accumulated in the external service 6 based on the service ID, and managing the acquired user data by linking it with the account 4b.
[0072] The process also includes a step in which the hub function unit 30 authenticates user A based on account 4b, presents the acquired user data to the authenticated user A, for example, via a presentation selection screen 80, and provides the selected user data as target data to the destination connector 25 connected to the selected data space X50 based on the selection information of the data space X50 connected via the destination connector 52 that provides the user data and the user data.
[0073] It also includes a process in which the virtual connector (AX) 40 converts the target data into a format that can be used in the data space X50, connects it to the data space X50 as the destination connector 52, and provides the converted target data so that it can be used by user C's terminal device 71 and user D's terminal device 72.
[0074] As shown in Figure 4, the data utilization system 1 is realized by a hardware configuration including, for example, a CPU (Central Processing Unit) 101, a RAM (Random Access Memory) 102, a ROM (Read Only Memory) 103, an HDD (Hard Disk Drive) 104, an SSD (Solid State Drive) 105, and a memory card 106, and further including a GPU (Graphics Processing Unit) 110.
[0075] The data utilization system 1 also includes, for example, an input I / F (Interface) 107, an output I / F (Interface) 108, and a communication I / F (Interface) 109. These hardware components 101 to 110 are connected to one another by a system bus 100.
[0076] In addition, the input I / F 107 is connected to an input device 111 including various input devices such as a keyboard, a mouse, a trackball, a joystick, and a touch panel, and various sensors such as an optical sensor, a temperature sensor, an acoustic sensor, and an image sensor including a camera.
[0077] In addition, the output I / F 108 is connected to an output device 112 including output equipment such as a display, a speaker, a lamp, a printer, etc. The communication I / F 209 communicates with an external device 214, which is collectively referred to as an external device including an external device such as a terminal device or a server device, a cloud, and a data space X50, via a communication network 213 such as the Internet.
[0078] The authentication information management unit 10, external service linkage unit 20, hub function unit 30, and virtual connector (AX) 40 of the above-mentioned data utilization system 1, as well as each of their functions, are realized by the CPU 101 reading out various functional operation programs stored in at least one of the RAM 102 to memory card 106, expanding them on the working area of the RAM 102, and executing the read programs.
[0079] Although the embodiments of the present invention have been described above, these embodiments are presented as examples and are not intended to limit the scope of the invention. This novel embodiment can be embodied in various other forms, and various omissions, substitutions, and modifications can be made without departing from the spirit of the invention. These embodiments and their modifications are included within the scope and spirit of the invention, and are also included in the inventions and their equivalents as defined in the claims. [Explanation of symbols]
[0080] 1. Data utilization system 2~5 Terminal devices 6~8 External Services 10 Authentication Information Management Department 20. External Service Collaboration Department 30 Hub Function Unit 40 Virtual Connector (AX) 41 Virtual Connector (AY) 42 Virtual Connector (BY) 50 Data Space X 60 Data Space Y 71~73 Terminal equipment
Claims
1. A data utilization system that enables data transactions between a first user who provides user data and a second user who uses the user data via a data distribution platform, an authentication information management unit that receives first authentication information that identifies the first user and second authentication information that identifies the first user in an external service used by the first user, and associates the first authentication information with the second authentication information; an external service linking unit that acquires user data stored in the external service based on the second authentication information and manages the acquired user data in association with the first authentication information; a hub function unit that authenticates the first user based on the first authentication information, presents the acquired user data to the authenticated first user, and provides the selected user data to the destination connector connected to the selected data distribution infrastructure based on selection information of the data distribution infrastructure connected via the user data and a destination connector that provides the user data; a virtual connector that converts the provided user data into a format that can be used by the data distribution platform, connects to the data distribution platform as a connector of the provided user, and provides the converted user data to the second user so that it can be used; A data utilization system equipped with the above.
2. The authentication information management unit further associates the associated first authentication information and second authentication information with third authentication information that identifies the first user in the selected data distribution infrastructure and fourth authentication information that identifies the connector to which the information is to be provided. The data utilization system according to claim 1.
3. The authentication information management unit inputs necessary information required for the first user to use the selected data distribution infrastructure, creates authorization information for the selected user data in the data distribution infrastructure based on the input necessary information, and creates the virtual connector.
3. The data utilization system according to claim 1 or 2.
4. The authentication information management unit creates the virtual connector so that it can become a connector of the destination for each of the pre-existing data distribution platforms that are different from each other. The data utilization system according to claim 1.
5. The virtual connector sets supplementary information including the terms of use and contract / authorization policy for the second user of the provided user data in the destination connector based on the authorization information. The data utilization system according to claim 3.
6. The virtual connector creates a data catalog that can be provided to the data distribution platform based on the metadata of the provided user data and the standards of the data distribution platform. The data utilization system according to claim 1.
7. A data utilization method executed by a computer in a data utilization system that enables data transactions between a first user who provides user data and a second user who uses the user data via a data distribution infrastructure, comprising: inputting first authentication information that identifies the first user and second authentication information that identifies the first user in an external service used by the first user, and associating the first authentication information with the second authentication information; acquiring user data stored in the external service based on the second authentication information, and managing the acquired user data in association with the first authentication information; authenticating the first user based on the first authentication information, presenting the acquired user data to the authenticated first user, and providing the selected user data to the destination connector connected to the selected data distribution infrastructure based on selection information of the data distribution infrastructure connected via the user data and a destination connector that provides the user data; converting the provided user data into a format usable by the data distribution platform, connecting the data distribution platform as a connector of the destination, and providing the converted user data to the second user so that the second user can use the data; How to utilize data.
Citation Information
Patent Citations
Authentication cooperation system, authentication cooperation method, authorization server, and program
JP2017107343A
Information processing system, information processing method, and program
JP2024017895A
Management apparatus, management method, and management program
JP2024106287A
Server device, system, method of controlling server device, and program
JP2024134612A
Coordination provision device, data distribution provision device, and coordination provision method
WO2024105860A1