Data management device, data management system, data management method and program

The data management device and method protect original data by inheriting its usage authority to the new data generated, preventing unauthorized access and ensuring both data sets are secured.

JP7790745B2Active Publication Date: 2025-12-23NEC SOLUTION INNOVATORS LTD
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
JP2023503964
Authority / Receiving Office
JP · JP
Patent Type
Patents
Current Assignee / Owner
Priority Date
2021-03-04
Filing Date
2022-03-04
Publication Date
2025-12-23
Estimated Expiration
2042-03-04

AI Technical Summary

Technical Problem

Existing data management systems fail to protect original data when authorized users generate new data, as the new data may be accessed by unauthorized users, leaving the original data unprotected.

Method used

A data management device and method that generates and stores second data using the usage authority of first data, ensuring the usage authority of the first data is inherited by the second data, thereby protecting both the first and second data.

Benefits of technology

The solution ensures that the usage authority of the first data is inherited by the second data, preventing unauthorized access and protecting the original data used to generate the new data.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 0007790745000001
    Figure 0007790745000001
  • Figure 0007790745000002
    Figure 0007790745000002
  • Figure 0007790745000003
    Figure 0007790745000003
Patent Text Reader

Abstract

A data management device 1 comprises: a reception unit 11 that receives a request to access first data by a user; a determination unit 12 that determines whether the user can use the first data; an acquisition unit 13 that, if the user can use the first data, acquires the first data and use-rights information relating to use-rights for the first data; a data generation unit 14 that uses the acquired first data to generate second data; a use-rights generation unit 15 that generates use-rights for the second data, including the use-rights for the first data; and a storage unit 16 that stores the second data in association with use-rights information relating to the use-rights for the second data.
Need to check novelty before this filing date? Find Prior Art

Description

[Technical Field]

[0001] The present invention relates to a data management device, a data management system, a data management method, and a program for realizing these. Mu Regarding. [Background technology]

[0002] In recent years, digital content data has been managed via a network. It is common to set passwords or access rights for data to prevent unauthorized use of the data. For example, Patent Document 1 discloses a system that restricts the use of electronic documents by assigning a security policy to the electronic document. The system described in Patent Document 1 is configured to grant usage authorization to a user when a request for usage permission to the electronic document is received from the issuer of the electronic document from a user who does not have usage authorization for the electronic document. [Prior art documents] [Patent documents]

[0003] [Patent Document 1] Japanese Patent Application Laid-Open No. 2012-212356 Summary of the Invention [Problem to be solved by the invention]

[0004] According to Patent Document 1, authorization to use an electronic document can be granted to those authorized to use it. However, with Patent Document 1, there is a risk that the electronic document will become unprotected once an authorized user uses the electronic document. For example, if authorized data is copied or edited to generate new data, even though the new data contains the content of the original data, those who are not authorized to use the original data may be able to access the new data. In such cases, the original data will end up being unprotected.

[0005] An example of an object of the present invention is to provide a data management device, a data management system, a data management method, and a program for realizing them, which protect first data by inheriting the authority to use first data used to generate second data to the authority to use second data. M The purpose is to provide. [Means for solving the problem]

[0006] In order to achieve the above object, a data management device according to one aspect of the present invention comprises: a reception unit that receives a request from a user to access the first data; a determination unit that determines whether the first data is available to the user; an acquisition unit that acquires the first data and usage authority information related to the usage authority of the first data when the first data is available to the user; a data generation unit that generates second data using the acquired first data; a usage authority generation unit that generates a usage authority for the second data including a usage authority for the first data; a storage unit that stores the second data and usage authority information related to the usage authority of the second data in association with each other; The present invention is characterized by comprising:

[0007] In order to achieve the above object, a data management system according to one aspect of the present invention comprises: a reception unit that receives a request from a user to access the first data; a determination unit that determines whether the first data is available to the user; a transmission unit that transmits the first data and usage authority information related to the usage authority of the first data when the first data is available to the user; an acquisition unit that acquires the transmitted first data and the usage authority information; a data generation unit that generates second data using the acquired first data; a usage authority generation unit that generates a usage authority for the second data including a usage authority for the first data; a storage unit that stores the second data and usage authority information related to the usage authority of the second data in association with each other; The present invention is characterized by comprising:

[0008] In order to achieve the above object, a data management method according to one aspect of the present invention comprises: receiving a request from a user to access the first data; the user determining whether the first data is available; a step of transmitting, when the first data is available to the user, the first data and usage authority information relating to the usage authority of the first data; acquiring the transmitted first data and the usage authority information; generating second data using the acquired first data; generating a usage authority for the second data including a usage authority for the first data; storing the second data and usage authority information relating to the usage authority of the second data in association with each other; The present invention is characterized by comprising:

[0009] Furthermore, in order to achieve the above object, in one aspect of the present invention, program teeth, On the computer, receiving a request from a user to access the first data; the user determining whether the first data is available; If the first data is available to the user, the user acquires the first data and usage authority information relating to the usage authority of the first data; generating second data using the acquired first data; generating a usage authority for the second data including a usage authority for the first data; storing the second data and usage authority information relating to the usage authority of the second data in association with each other; Run Ru, It is characterized by: [Effects of the Invention]

[0010] As described above, according to the present invention, the first data can be protected by having the usage authority of the first data used to generate the second data inherited by the usage authority of the second data. [Brief explanation of the drawings]

[0011] [Figure 1] FIG. 1 is a block diagram showing the configuration of a data management device according to the first embodiment. [Figure 2] FIG. 2 is a block diagram showing a specific configuration of the data management device. [Figure 3] FIG. 3 is a flow diagram showing the operation of the data management device. [Figure 4] FIG. 4 is a diagram for explaining the use of data in the second embodiment. [Figure 5] FIG. 5 is a block diagram showing a specific configuration of the data management system. [Figure 6] FIG. 6 is a flow diagram showing the process of registering data in the data management device. [Figure 7] FIG. 7 is a flow diagram showing the process of registering data in the data management device. [Figure 8] FIG. 8 is a flow diagram showing the process of registering data in the data management device. [Figure 9] FIG. 9 is a block diagram showing an example of a computer that realizes the data management device according to the first and second embodiments of the present invention. DETAILED DESCRIPTION OF THE INVENTION

[0012] (Embodiment 1) 1 is a block diagram showing the configuration of a data management device 1 according to this embodiment. As shown in FIG. 1, the data management device 1 includes a reception unit 11, a determination unit 12, an acquisition unit 13, a data generation unit 14, a usage authority generation unit 15, and a storage unit 16.

[0013] The receiving unit 11 receives a request from a user to access the first data.

[0014] The determination unit 12 determines whether the first data is available to the user.

[0015] If the first data is available to the user, the acquisition unit 13 acquires the first data and usage authority information relating to the usage authority of the first data.

[0016] The data generating unit 14 generates second data using the acquired first data.

[0017] The usage authority generating unit 15 generates a usage authority for the second data including the usage authority for the first data.

[0018] The storage unit 16 stores the second data and usage authority information relating to the usage authority of the second data in association with each other.

[0019] As described above, the data management device 1 of this embodiment can protect the first data by having the usage authority of the first data used to generate the second data inherited by the usage authority of the second data.

[0020] Next, the configuration of the data management device 1 of this embodiment will be described in detail. In this embodiment, it is assumed that user B uses first data (hereinafter, data A) generated by user A to generate second data (hereinafter, data B). More specifically, user A generates data A, which is digital content, using the data management device 1. A usage authority is set for data A. The usage authority is, for example, a user who is allowed to access data A. User B, who has the usage authority for data A, acquires data A using the data management device 1. Then, user B generates data B based on data A using the data management device 1. Data B may be a copy of data A or may be an edited version of data A. In this embodiment, when user B generates data B, the data management device 1 generates the usage authority for data B by including the usage authority set for data A in the usage authority for data B. In other words, the usage authority for data B inherits the usage authority for data A.

[0021] FIG. 2 is a block diagram showing a specific configuration of the data management device 1. As shown in FIG.

[0022] In addition to the components shown in FIG. 1, the data management device 1 includes an authentication unit 17, a decryption unit 18, an encryption unit 19, a deletion unit 20, a data storage unit 21, a key storage unit 22, and a usage authority storage unit 23.

[0023] The data storage unit 21 is a storage device that stores data generated by a user. The data storage unit 21 stores encrypted data.

[0024] The key storage unit 22 is a storage device that stores a decryption key used when decrypting encrypted data.

[0025] The usage authority storage unit 23 is a storage device that stores usage authority information relating to the usage authority set for the generated data. The usage authority information is information relating to users who have the authority to access the data.

[0026] The storage device is, for example, a semiconductor storage device such as a hard disk drive, a flash memory, etc. The data, the usage authority information, and the decryption key may be stored in the same storage device, or may be stored in a storage device external to the data management device 1.

[0027] In the following description, it is assumed that data A generated and encrypted by user A is stored in data storage unit 21, a decryption key for decrypting data A is stored in key storage unit 22, and usage authority information relating to the usage authority for data A is stored in usage authority storage unit 23.

[0028] The authentication unit 17 authenticates the user who generates data. When generating data, the user logs in to the data management device 1. The authentication unit 17 performs the login authentication at this time. In the login authentication, the authentication unit 17 refers to user information stored in a storage device provided in the data management device 1 or in an external storage device, and authenticates whether the user is allowed to use the data management device 1. The authentication method used by the authentication unit 17 is not particularly limited, and may be password authentication or biometric authentication.

[0029] The reception unit 11 receives a request to access data stored in the data storage unit 21. For example, when a user B generates data B using data A stored in the data storage unit 21, once the authentication unit 17 authenticates the user B, the data generation unit 14, which will be described later, executes the program environment generated by the user B, and in that environment, the reception unit 11 accepts the reception of the request to access data A from the user B.

[0030] The determination unit 12 determines whether the user making the access request received by the reception unit 11 has the authority to use the data to be accessed. For example, when the reception unit 11 receives an access request from user B to data A, the determination unit 12 acquires the usage authority information associated with data A from the usage authority storage unit 23. The determination unit 12 determines whether user B is included in the usage authority, and if so, determines that user B has the authority to use data A.

[0031] When the determination unit 12 determines that the user has the authority to use the data to be accessed, the acquisition unit 13 acquires the data from the data storage unit 21. The acquisition unit 13 also acquires the authority information associated with the data from the authority storage unit 23. The acquisition unit 13 also acquires a decryption key for decrypting the data from the key storage unit 22. For example, when the determination unit 12 determines that the user B has the authority to use data A, the acquisition unit 13 acquires the data A from the data storage unit 21. The acquisition unit 13 also acquires the authority information associated with data A from the authority storage unit 23. The acquisition unit 13 also acquires a decryption key for decrypting data A from the key storage unit 22.

[0032] The decryption unit 18 decrypts the encrypted data acquired by the acquisition unit 13, using the decryption key acquired by the acquisition unit 13. When the acquisition unit 13 acquires data A, the decryption unit 18 decrypts the data A.

[0033] The data generation unit 14 generates data. The data generation unit 14 places a program previously generated by a user that can use protected data inside the data generation unit 14 and executes it. Then, in the execution environment, the data generation unit 14 generates data in accordance with the user's operations, referencing other data that has already been generated and protected, if necessary. For example, when user B generates data B, the data generation unit 14 executes the program environment generated by user B, and in that environment, generates data B based on data A decrypted by the decryption unit 18 in accordance with user B's operations. Other users cannot access or access the inside of the data generation unit 14, and the internal program is restricted from transferring data to the outside via communication, etc. As a result, generating data in this program environment prevents the decrypted data from being illegally transmitted to other users.

[0034] The encryption unit 19 encrypts the generated data. For example, the encryption unit 19 encrypts data B generated based on data A. The encrypted data and a decryption key for decrypting this data are stored in a data storage unit 21 and a key storage unit 22 by a storage unit 16 described below.

[0035] The usage authority generation unit 15 generates a usage authority for the data generated by the data generation unit 14 in accordance with a user's operation. Specifically, when data B is generated using data A, the usage authority generation unit 15 includes the usage authority set for the used data A in the usage authority to be generated based on the usage authority information for data A acquired by the acquisition unit 13. This allows the usage authority set for the used data A to be inherited by the usage authority for the newly generated data B. As a result, when the newly generated data B is used by another user C, if the user C does not have the usage authority for data A used to generate data B, access by the user C to data B is denied, thereby protecting data A included in data B from user C. The generated usage authority is stored in the usage authority storage unit 23 by the storage unit 16 as usage authority information.

[0036] The storage unit 16 stores the encrypted data in the data storage unit 21. The storage unit 16 also stores usage authority information relating to the generated usage authority in the usage authority storage unit 23. The storage unit 16 also stores a decryption key for the encrypted data in the key storage unit 22.

[0037] The deletion unit 20 deletes the decrypted data. The decrypted data is temporarily stored in RAM or the like. The deletion unit 20 deletes the stored data. For example, when data A is used to generate data B, the deletion unit 20 deletes the decrypted data A. In this way, by not leaving the decrypted data A in the device, the data A can be protected. The timing of deletion may be the timing when data B is encrypted, the timing when data B is stored in the data storage unit 21, or the timing when the data generation unit 14 executes a program internally and the execution is completed.

[0038] Next, the operation of the data management device 1 in this embodiment will be described with reference to Fig. 3. Fig. 3 is a flow diagram showing the operation of the data management device 1. In the following description, Figs. 1 and 2 will be referred to as appropriate. In this embodiment, a data management method is implemented by operating the data management device 1. Therefore, the description of the data management method in this embodiment will be replaced by the description of the operation of the data management device 1 below.

[0039] FIG. 3 is a flow diagram showing the operation when data B is generated in the data management device 1.

[0040] It is assumed that data A generated and encrypted by user A is stored in data storage unit 21. A decryption key for decrypting data A is stored in key storage unit 22. Furthermore, usage authority information relating to the usage authority of data A set in data A is stored in usage authority storage unit 23. Then, it is assumed that user B generates data B by using data A.

[0041] Under this premise, when user B performs a login operation to the data management device 1, the authentication unit 17 performs an authentication determination for user B (S1). If the authentication fails (S1: NO), the data management device 1 ends this process. If the authentication is successful (S1: YES), the data generation unit 14 executes a program environment that can use protected data previously generated by the user (S2). The following process is executed under this program environment. The reception unit 11 receives a request from user B to access data A stored in the data storage unit 21 (S3).

[0042] When the receiving unit 11 receives the access request, the determining unit 12 obtains the usage authority information for the data A from the usage authority storage unit 23 and determines whether or not the user B has the usage authority for the data A (S4). If the user B does not have the usage authority for the data A (S4: NO), the data management device 1 ends this process. If the user B has the usage authority for the data A (S4: YES), the obtaining unit 13 obtains the encrypted data A from the data storage unit 21, obtains the decryption key for decrypting the data A from the key storage unit 22, and obtains the usage authority information related to the usage authority set for the data A from the usage authority storage unit 23 (S5). The decrypting unit 18 decrypts the obtained data A using the obtained decryption key (S6). The decrypting unit 18 temporarily stores the decrypted data in RAM or the like.

[0043] The data generation unit 14 generates user B based on data A in accordance with the operation of user B (S7). The usage authority generation unit 15 generates and sets the usage authority for data B generated in S7 based on the usage authority information acquired in S5 in accordance with the operation of user B (S8). In detail, the usage authority generation unit 15 sets the usage authority for data B by including the usage authority for data A in the usage authority newly generated for data B.

[0044] Next, the encryption unit 19 encrypts the data B generated in S7 (S9). The storage unit 16 stores the encrypted data B in the data storage unit 21, stores the usage authority information related to the usage authority set in S8 in the usage authority storage unit 23, and stores the decryption key for the encrypted data B in the key storage unit 22 (S10). Then, the deletion unit 20 deletes the data A decrypted and temporarily stored in S6 (S11). By not leaving the decrypted data A within the device, the data A can be protected.

[0045] 3 is an example, and the operation of the data management device 1 can be changed as appropriate. For example, the process of deleting the decrypted data in S11 may be performed immediately after the process of encrypting the data in S9. The order of the process of generating the data in S7 and the process of setting the usage authority in S8 may be reversed. Furthermore, the data generation unit 14 may execute a program environment when generating data B in S7.

[0046] As described above, according to this embodiment, when second data is generated using first data for which a usage authority has been set, the usage authority of the first data can be inherited by the usage authority of the second data, thereby protecting not only the newly generated second data but also the first data used to generate the second data.

[0047] The program according to the embodiment of the present invention may be any program that causes a computer to execute the steps shown in Fig. 3. By installing and executing this program on a computer, the data management device and data management method according to the present embodiment can be realized. In this case, the processor of the computer functions as a reception unit 11, a determination unit 12, an acquisition unit 13, a data generation unit 14, a usage authority generation unit 15, a storage unit 16, an authentication unit 17, a decryption unit 18, an encryption unit 19, and a deletion unit 20, and performs processing.

[0048] The program in this embodiment may be executed by a computer system constructed by a plurality of computers, in which case, for example, each computer may function as any one of the reception unit 11, determination unit 12, acquisition unit 13, data generation unit 14, usage authority generation unit 15, storage unit 16, authentication unit 17, decryption unit 18, encryption unit 19, and deletion unit 20.

[0049] (Embodiment 2) In the first embodiment, a user who generates data A and a user who uses data A to generate data B use the same data management device. In contrast, in the present embodiment, a user who provides data and a user who uses (is provided with) data belong to different organizations and use different data management devices, which is different from the first embodiment. Below, a data management system in which data is used between different organizations is described. An organization is, for example, a company or a department within a company. First, the use of data in this embodiment will be described with reference to FIG. 4. FIG. 4 is a diagram for explaining the use of data in this embodiment.

[0050] In this embodiment, it is assumed that user A belongs to organization A, and user B belongs to organization B. User A generates first data (hereinafter referred to as data A), which is digital content, using data management device 1A within organization A. Data A has usage authority X set thereto. Usage authority X is, for example, a user who is allowed to access data A.

[0051] User B, who has the authority to use data A, accesses data management device 1A from data management device 1B and acquires data A. User B then uses data management device 1B to generate second data (hereinafter referred to as data B) based on data A. Data B may be a copy of data A or an edited version of data A. In this embodiment, when user B generates data B, data management device 1B generates usage authority Y(X) for data B, which includes usage authority X set for data A in usage authority Y generated for data B. In other words, the usage authority for data A is inherited by the usage authority for data B.

[0052] Fig. 5 is a block diagram showing a specific configuration of the data management system. The data management system includes a data management device 1A and a data management device 1B, which are capable of communicating data with each other. Since the data management device 1A and the data management device 1B have the same configuration, the configuration of the data management device 1A is omitted in Fig. 5.

[0053] The data management devices 1A and 1B include a transmitting unit 24 in addition to the configuration of the first embodiment. Note that the same components as those of the first embodiment are given the same reference numerals, and detailed description thereof will be omitted.

[0054] The data storage unit 21 is a storage device that stores encrypted data generated by a user. The key storage unit 22 is a storage device that stores a decryption key used to decrypt encrypted data. The usage authority storage unit 23 is a storage device that stores usage authority information related to usage authority set for generated data.

[0055] In the following explanation, it is assumed that, as explained in FIG. 4, data A is stored in the data storage unit 21 of the data management device 1A, the decryption key for decrypting the data A is stored in the key storage unit 22 of the data management device 1A, and the usage authority information relating to the usage authority set for the data A is stored in the usage authority storage unit 23 of the data management device 1A.

[0056] The reception unit 11 receives a request to access data stored in the data storage unit 21. In this embodiment, when a user B generates data B in the data management device 1B using data A stored in the data management device 1A, upon receiving an access request to data A from user B, the reception unit 11 of the data management device 1B makes an access request to the reception unit 11 of the data management device 1A.

[0057] The authentication unit 17 authenticates the user who generates data. When generating data, the user logs in to the data management device 1. The authentication unit 17 performs login authentication at this time. Furthermore, when the reception unit 11 receives an access request from another data management device, the authentication unit 17 of this embodiment authenticates the user with respect to the other data management device. In this embodiment, when the reception unit 11 of the data management device 1A receives an access request to data A from the reception unit 11 of the data management device 1B, the authentication unit 17 of the data management device 1A authenticates with the data management device 1B whether user B is a user of the data management device 1B.

[0058] The determination unit 12 determines whether the user making the access request accepted by the acceptance unit 11 has the authority to use the data to be accessed. In this embodiment, when the determination unit 12 of the data management device 1A accepts an access request to data A from the data management device 1B, it acquires the usage authority information associated with data A from the usage authority storage unit 23 of the data management device 1A. The determination unit 12 of the data management device 1A determines whether user B is included in the usage authority, and if so, determines that user B has the authority to use data A.

[0059] When the determination unit 12 determines that the user has the right to use the data to be accessed, the acquisition unit 13 acquires the data from the data storage unit 21. The acquisition unit 13 also acquires the right of use information associated with the data from the right of use storage unit 23. The acquisition unit 13 also acquires a decryption key for decrypting the data from the key storage unit 22. In this embodiment, when the determination unit 12 of the data management device 1A determines that the user B has the right of use of data A, the acquisition unit 13 of the data management device 1A acquires the data A from the data storage unit 21, acquires the right of use information related to the right of use of data A from the right of use storage unit 23, and acquires the decryption key for data A from the key storage unit 22.

[0060] The transmitter 24 transmits the various data acquired by the acquirer 13 to another data management device that has made an access request. In this embodiment, the transmitter 24 of the data management device 1A transmits the data A, a decryption key for decrypting the data A, and usage authority information related to the usage authority set for the data A to the data management device 1B.

[0061] Furthermore, the acquiring unit 13 of this embodiment acquires data transmitted by the transmitting unit 24 of another data management device. In this embodiment, the acquiring unit 13 of the data management device 1B acquires the data A, the decryption key for decrypting the data A, and the usage authority information related to the usage authority set for the data A, which have been transmitted by the transmitting unit 24 of the data management device 1A.

[0062] The decryption unit 18 decrypts the data transmitted by the transmission unit 24 of the other data management device and acquired by the acquisition unit 13 using the decryption key transmitted by the transmission unit 24 of the other data management device and acquired by the acquisition unit 13.

[0063] The data generation unit 14 generates data. The data generation unit 14 executes a program environment that is generated in advance by a user and that allows the use of protected data. The data generation unit 14 then generates data in accordance with a user's operation in the executed environment. In this embodiment, the data generation unit 14 generates data B based on data A decrypted by the decryption unit 18 in accordance with a user B's operation in a program environment that user B has generated and executed.

[0064] The encryption unit 19 encrypts the generated data.

[0065] The usage authority generation unit 15 generates a usage authority for the data generated by the data generation unit 14 in accordance with a user's operation. In this embodiment, the usage authority generation unit 15 includes the usage authority set for the used data A in the usage authority for data B to be generated based on the usage authority information for data A acquired by the acquisition unit 13. This allows the usage authority set for the data A to be used to be inherited by the usage authority for newly generated data B. As a result, when the newly generated data B is used by yet another user C, if the user C does not have the usage authority for data A used to generate data B, access by user C to data B is denied, and data A can be protected from user C.

[0066] The storage unit 16 stores the generated encrypted data in the data storage unit 21. The storage unit 16 also stores usage authority information related to the generated usage authority in the usage authority storage unit 23. The storage unit 16 also stores the decryption key in the key storage unit 22.

[0067] The deletion unit 20 deletes the decrypted data.

[0068] Next, the operation of the data management devices 1A and 1B in this embodiment will be described with reference to FIGS. 6 to 8. FIGS. 6 to 8 are flow charts showing the operation of the data management devices 1A and 1B. In the following description, FIGS. 4 and 5 will be referred to as appropriate. In this embodiment, a data management method is implemented by operating the data management devices 1A and 1B. Therefore, the description of the data management method in this embodiment will be replaced by the description of the operation of the data management devices 1A and 1B below. In the following description, it is assumed that user A generates data A in data management device 1A, and user B generates data B in data management device 1B, as described in FIG. 4.

[0069] FIG. 6 is a flow diagram of the process of registering data A in the data management device 1A. When user A logs in to the data management device 1A, the authentication unit 17 determines whether or not user A is authenticated (S21). If the authentication fails (S21: NO), the data management device 1A terminates this process. If the authentication is successful (S21: YES), the data generation unit 14 executes a program environment in which the protected data generated by user A can be used (S22), and generates data A in this environment in accordance with the operation of user A (S23). The usage authority generation unit 15 generates and sets usage authority for the data A generated in S23 in accordance with the operation of user A (S24). Subsequently, the encryption unit 19 encrypts the data A generated in S23 (S25). The memory unit 16 stores the encrypted data A in the data memory unit 21, stores the usage authority information related to the usage authority set in S24 in the usage authority memory unit 23, and stores the decryption key for the data A encrypted in S25 in the key memory unit 22 (S26).

[0070] 7 and 8 are flow diagrams showing the process of registering data B in the data management device 1B. Figures 7 and 8 are flow diagrams showing the operations of the data management devices 1A and 1B, respectively.

[0071] When user B logs in to data management device 1B, authentication unit 17 of data management device 1B determines whether to authenticate user B (S31). If authentication fails (S31: NO), data management device 1B ends this process. If authentication is successful (S31: YES), data generation unit 14 executes a program environment that can use protected data previously generated by the user (S32). The following processing in data management device 1B is executed under this program environment. Reception unit 11 of data management device 1B accepts a request for access to data A from user B, and further sends an access request to reception unit 11 of data management device 1A (S33).

[0072] When the reception unit 11 of the data management device 1A receives the access request (S34), the authentication unit 17 of the data management device 1A authenticates the user B with the data management device 1B (S35). For example, the authentication unit 17 of the data management device 1A communicates with a directory server in the organization B to authenticate the user B. When the authentication is complete, the determination unit 12 of the data management device 1A determines whether the user B has the right to use the data A (S36). At this time, if the user B does not have the right to use the data A, the determination unit 12 of the data management device 1A notifies the data management device 1B.

[0073] If user B has the authority to use data A, acquisition unit 13 of data management device 1A acquires encrypted data A from data storage unit 21, acquires a decryption key for decrypting data A from key storage unit 22, and acquires usage authority information related to the usage authority set for data A from usage authority storage unit 23 (S37). Then, transmission unit 24 of data management device 1A transmits the encrypted data A, the usage authority information related to the usage authority set for data A, and the decryption key to data management device 1B (S38).

[0074] The acquisition unit 13 of the data management device 1B acquires the transmitted encrypted data A, the usage authority information related to the usage authority set for the data A, and the decryption key (S39). The decryption unit 18 of the data management device 1B decrypts the acquired data A using the acquired decryption key (S40). The decryption unit 18 temporarily stores the decrypted data in RAM or the like.

[0075] The data generation unit 14 of the data management device 1B generates user B based on data A in accordance with the operation of user B (S41). The usage authority generation unit 15 of the data management device 1B generates and sets the usage authority for data B generated in S41 based on the usage authority information acquired in S39 in accordance with the operation of user B (S42). Subsequently, the encryption unit 19 of the data management device 1B encrypts data B generated in S30 (S43). The storage unit 16 of the data management device 1B stores the encrypted data B in the data storage unit 21, stores the usage authority information related to the usage authority set in S42 in the usage authority storage unit 23, and stores the decryption key for the encrypted data B in the key storage unit 22 (S44). Then, the deletion unit 20 deletes data A decrypted and temporarily stored in S40 (S45). By not leaving the decrypted data A in the device, it is possible to protect data A.

[0076] 6 to 8 are merely examples, and the operation of the data management device 1 can be modified as appropriate. For example, after the encryption process in S43, the storage process in S44 may not be performed, and the process may proceed to the data transmission process in S38, in which the data is transferred to the data generation unit 14 of another data management device, such as the data management device 1A. Furthermore, the process of deleting the decrypted data in S45 may be performed immediately after the data encryption process in S43. Furthermore, the order of the data generation process in S41 and the process of setting the usage authority in S42 may be reversed. Furthermore, the first and second embodiments may be combined as appropriate.

[0077] As described above, according to this embodiment, when second data is generated using first data for which a usage authority has been set, the usage authority of the first data can be inherited by the usage authority of the second data, thereby protecting not only the newly generated second data but also the first data used to generate the second data.

[0078] The program according to the embodiment of the present invention may be any program that causes a computer to execute the steps shown in Figures 6 to 8. By installing and executing this program on a computer, the data management device and data management method according to the present embodiment can be realized. In this case, the processor of the computer functions as a reception unit 11, a determination unit 12, an acquisition unit 13, a data generation unit 14, a usage authority generation unit 15, a storage unit 16, an authentication unit 17, a decryption unit 18, an encryption unit 19, a deletion unit 20, and a transmission unit 24, and performs processing.

[0079] The program in this embodiment may be executed by a computer system constructed by a plurality of computers, in which case, for example, each computer may function as any one of the reception unit 11, determination unit 12, acquisition unit 13, data generation unit 14, usage authority generation unit 15, storage unit 16, authentication unit 17, decryption unit 18, encryption unit 19, deletion unit 20, and transmission unit 24.

[0080] A computer that realizes the data management device by executing the programs according to the first and second embodiments will now be described with reference to Fig. 9. Fig. 9 is a block diagram showing an example of a computer that realizes the data management device according to the first and second embodiments of the present invention.

[0081] 9, the computer 110 includes a CPU 111, a main memory 112, a storage device 113, an input interface 114, a display controller 115, a data reader / writer 116, and a communication interface 117. These components are connected to each other via a bus 121 so as to be able to communicate data with each other. Note that the computer 110 may include a GPU (Graphics Processing Unit) or an FPGA (Field-Programmable Gate Array) in addition to or instead of the CPU 111.

[0082] The CPU 111 loads the programs (codes) of this embodiment stored in the storage device 113 into the main memory 112 and executes them in a predetermined order to perform various calculations. The main memory 112 is typically a volatile storage device such as a DRAM (Dynamic Random Access Memory). The programs of this embodiment are provided in a state stored in a computer-readable recording medium 120. The programs of this embodiment may also be distributed over the Internet connected via the communication interface 117.

[0083] Specific examples of the storage device 113 include a hard disk drive and a semiconductor storage device such as a flash memory. The input interface 114 mediates data transmission between the CPU 111 and input devices 118 such as a keyboard and a mouse. The display controller 115 is connected to a display device 119 and controls the display on the display device 119.

[0084] The data reader / writer 116 mediates data transmission between the CPU 111 and the recording medium 120, reads programs from the recording medium 120, and writes processing results from the computer 110 to the recording medium 120. The communication interface 117 mediates data transmission between the CPU 111 and other computers.

[0085] Specific examples of the recording medium 120 include general-purpose semiconductor storage devices such as CF (Compact Flash (registered trademark)) and SD (Secure Digital), magnetic recording media such as flexible disks, or optical recording media such as CD-ROMs (Compact Disk Read Only Memory).

[0086] The data management device in this embodiment can be realized by using hardware corresponding to each part, rather than a computer on which a program is installed. Furthermore, the data management device may be realized in part by a program and in the remaining part by hardware.

[0087] Some or all of the above-described embodiments can be expressed by (Supplementary Note 1) to (Supplementary Note 16) described below, but are not limited to the following descriptions.

[0088] (Appendix 1) a reception unit that receives a request from a user to access the first data; a determination unit that determines whether the first data is available to the user; an acquisition unit that acquires the first data and usage authority information related to the usage authority of the first data when the first data is available to the user; a data generation unit that generates second data using the acquired first data; a usage authority generation unit that generates a usage authority for the second data including a usage authority for the first data; a storage unit that stores the second data and usage authority information related to the usage authority of the second data in association with each other; A data management device comprising:

[0089] (Appendix 2) 10. The data management device according to claim 1, the first data is encrypted; a decoding unit that decodes the acquired first data; Equipped with the data generation unit generates the second data by using the decrypted first data; an encryption unit that encrypts the second data; Furthermore, The storage unit stores the encrypted second data. Data management device.

[0090] (Appendix 3) 3. The data management device according to claim 2, a deletion unit that deletes the decrypted first data when the second data is generated; A data management device comprising:

[0091] (Appendix 4) 4. A data management device according to any one of claims 1 to 3, The data generation unit Executing a previously generated program environment and generating the second data under the program environment. Data management device.

[0092] (Appendix 5) a reception unit that receives a request from a user to access the first data; a determination unit that determines whether the first data is available to the user; a transmission unit that transmits the first data and usage authority information related to the usage authority of the first data when the first data is available to the user; an acquisition unit that acquires the transmitted first data and the usage authority information; a data generation unit that generates second data using the acquired first data; a usage authority generation unit that generates a usage authority for the second data including a usage authority for the first data; a storage unit that stores the second data and usage authority information related to the usage authority of the second data in association with each other; A data management system comprising:

[0093] (Appendix 6) 6. The data management system of claim 5, comprising: the first data is encrypted; a decoding unit that decodes the acquired first data; Equipped with the data generation unit generates the second data by using the decrypted first data; an encryption unit that encrypts second data generated using the decrypted first data; Furthermore, The storage unit stores the encrypted second data. Data management system.

[0094] (Appendix 7) 7. The data management system of claim 6, comprising: a deletion unit that deletes the decrypted first data when the second data is generated; A data management system comprising:

[0095] (Appendix 8) 8. The data management system of claim 5, further comprising: The data generation unit Executing a previously generated program environment and generating the second data under the program environment. Data management system.

[0096] (Appendix 9) receiving a request from a user to access the first data; the user determining whether the first data is available; a step of transmitting, when the first data is available to the user, the first data and usage authority information relating to the usage authority of the first data; acquiring the transmitted first data and the usage authority information; generating second data using the acquired first data; generating a usage authority for the second data including a usage authority for the first data; storing the second data and usage authority information relating to the usage authority of the second data in association with each other; A data management method comprising:

[0097] (Appendix 10) 10. The data management method according to claim 9, further comprising: the first data is encrypted; Decrypting the obtained first data; Equipped with In the step of generating the second data, the second data is generated using the decrypted first data; encrypting second data generated using the decrypted first data; Furthermore, In the step of storing the second data, the encrypted second data is stored. Data management methods.

[0098] (Appendix 11) 11. The data management method of claim 10, further comprising: deleting the decrypted first data once the second data has been generated; A data management method comprising:

[0099] (Appendix 12) 12. A data management method according to any one of Supplementary Note 9 to Supplementary Note 11, In the step of generating the second data, Executing a previously generated program environment and generating the second data under the program environment. Data management methods.

[0100] (Appendix 13) On the computer, receiving a request from a user to access the first data; the user determining whether the first data is available; If the first data is available to the user, the user acquires the first data and usage authority information relating to the usage authority of the first data; generating second data using the acquired first data; generating a usage authority for the second data including a usage authority for the first data; storing the second data and usage authority information relating to the usage authority of the second data in association with each other; Run Rup Logura Hmm.

[0101] (Appendix 14) As described in Appendix 13 program And, the first data is encrypted; before The computer Decrypting the obtained first data; Execute height, In the step of generating the second data, the second data is generated using the decrypted first data; The computer, encrypting the second data; Execute height, In the step of storing the second data, the encrypted second data is stored. program .

[0102] (Appendix 15) As described in Appendix 14 program And, The computer, deleting the decrypted first data once the second data has been generated; Run Program .

[0103] (Appendix 16) Any one of Supplementary Notes 13 to 15 programAnd, In the step of generating the second data, Executing a previously generated program environment and generating the second data under the program environment. program .

[0104] Although the present disclosure has been described above with reference to the embodiments, the present disclosure is not limited to the above-described embodiments. Various modifications that can be understood by those skilled in the art can be made to the configuration and details of the present disclosure within the scope of the present disclosure.

[0105] This application claims priority based on Japanese Patent Application No. 2021-034757, filed on March 4, 2021, the disclosure of which is incorporated herein in its entirety. [Industrial Applicability]

[0106] INDUSTRIAL APPLICABILITY The present invention is useful when generating second data using first data for which a usage authority is set, and when taking over the usage authority of the first data and protecting the first data. [Explanation of symbols]

[0107] 1, 1A, 1B Data management device 11 Reception 12 Judgment section 13 Acquisition Department 14 Data Generation Unit 15. Authorization Generation Unit 16 Memory section 17 Authentication Section 18 Decoding section 19 Encryption section 20 Deleted section 21 Data storage unit 22 Key storage section 23 Usage authority memory unit 24 Transmitter 110 Computer 111 CPU 112 main memory 113 Storage device 114 Input Interface 115 Display Controller 116 Data Reader / Writer 117 Communication Interface 118 Input Devices 119 Display Device 120 Recording Media 121 Bus

Claims

1. a receiving unit that receives a request from a user to access the first data; a determination unit that determines whether the first data is available to the user; an acquisition unit that acquires the first data and usage authority information related to the usage authority of the first data when the first data is available to the user; a data generating unit that generates second data using the acquired first data in accordance with an operation by the user; a usage authority generation unit that generates a usage authority for the second data including a usage authority for the first data; a storage unit that stores the second data and usage authority information related to the usage authority of the second data in association with each other; Equipped with the data generation unit is restricted from transferring data to an external device, and generates the second data using a program stored in the data generation unit. Data management device.

2. 2. The data management device according to claim 1, the first data is encrypted; a decoding unit that decodes the acquired first data; Equipped with the data generation unit generates the second data by using the decrypted first data; an encryption unit that encrypts the second data; Furthermore, The storage unit stores the encrypted second data. Data management device.

3. 3. The data management device according to claim 2, a deletion unit that deletes the decrypted first data when the second data is generated; A data management device comprising:

4. a receiving unit that receives a request from a user to access the first data; a determination unit that determines whether the first data is available to the user; a transmission unit that transmits the first data and usage authority information related to the usage authority of the first data when the first data is available to the user; an acquisition unit that acquires the transmitted first data and the usage authority information; a data generating unit that generates second data using the acquired first data in accordance with an operation by the user; a usage authority generation unit that generates a usage authority for the second data including a usage authority for the first data; a storage unit that stores the second data and usage authority information related to the usage authority of the second data in association with each other; Equipped with the data generation unit is restricted from transferring data to an external device, and generates the second data using a program stored in the data generation unit. Data management system.

5. 5. The data management system according to claim 4, the first data is encrypted; a decoding unit that decodes the acquired first data; Equipped with the data generation unit generates the second data by using the decrypted first data; an encryption unit that encrypts second data generated using the decrypted first data; Furthermore, The storage unit stores the encrypted second data. Data management system.

6. 6. The data management system according to claim 5, a deletion unit that deletes the decrypted first data when the second data is generated; A data management system comprising:

7. 1. A computer-implemented method comprising: receiving a request from a user to access the first data; The user determines whether the first data is available. If the user is able to use the first data, the user transmits the first data and usage authority information relating to the usage authority of the first data; Acquire the transmitted first data and the usage authority information generating second data using the acquired first data in accordance with the user's operation; generating a use authority for the second data including the use authority for the first data; storing the second data and usage authority information relating to the usage authority of the second data in association with each other; In generating the second data, transfer of data to an external device is restricted, and the second data is generated using a program stored in the computer. Data management methods.

8. 8. The data management method according to claim 7, the first data is encrypted; Decrypting the obtained first data; generating the second data using the decrypted first data; encrypting second data generated using the decrypted first data; storing the encrypted second data; Data management methods.

9. 9. The data management method according to claim 8, When the second data is generated, deleting the decrypted first data. Data management methods.

10. On the computer, Accepting a request from a user to access the first data; determining whether the user can use the first data; If the user is permitted to use the first data, the first data and usage authority information relating to the usage authority of the first data are acquired; generating second data using the acquired first data in accordance with the user's operation; generating a use authority for the second data including a use authority for the first data; storing the second data and usage authority information relating to the usage authority of the second data in association with each other; In generating the second data, transfer of data to and from the outside is restricted, and the second data is generated using a program stored in the computer. program.

11. The program according to claim 10, the first data is encrypted; The computer, Decrypting the obtained first data; generating the second data using the decrypted first data; encrypting the second data; storing the encrypted second data; program.

12. The program according to claim 11, The computer, When the second data is generated, the decrypted first data is deleted. program.

Citation Information

Patent Citations

  • Document protection system by authentication control

    JP2012212356A