Access Key Control for Software Execution Safety
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Software vendors face challenges in deploying correction programs to customers due to data inconsistencies and lack of technical expertise, leading to further issues when customers attempt to use these programs without proper knowledge, impacting other systems.
Innovation Solution
A method using digitally signed access keys with defined vendor access parameters, validated using a public key private key pair, to control the execution of software programs on customer systems, ensuring only authorized users with necessary expertise can execute the programs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If vendors deploy specialized correction programs to fix specific customer issues, then the program can address data inconsistencies for that customer, but the customer may misuse the program without proper technical expertise causing further data inconsistencies and impacting other systems
Solution Approach 1:
An access key serves as an intermediary between the correction program and the customer system. The access key contains embedded guidance instructions that mediate the interaction, providing step-by-step direction to the customer while maintaining program security and preventing misuse.
Solution Approach 2:
Guidance instructions are prepared in advance and embedded within the access key before the customer receives it. These preliminary instructions prepare the customer by providing necessary technical guidance before they attempt to execute the correction program, ensuring they have the knowledge to use it safely.
2Reliability
If vendors create customized correction programs for each customer's specific issue, then the program can precisely address that customer's data problems, but the vendor cannot control whether the customer will use it correctly or apply it to the wrong data
Solution Approach 1:
The access key serves multiple functions simultaneously: it acts as an authentication credential, contains embedded guidance instructions, and provides control mechanisms. This multi-functional approach allows the vendor to maintain simplicity while achieving comprehensive control over program execution.
Solution Approach 2:
The access key acts as an intermediary control mechanism that the vendor can configure with specific parameters and instructions. This mediator enables the vendor to control program execution without directly managing the customer's system environment, reducing overall system complexity.
3Productivity
If customers are allowed to execute correction programs without restrictions, then they can quickly fix their data issues, but they may run the program on unintended data causing harmful side effects
Solution Approach 1:
The access key contains pre-configured control parameters and guidance instructions that are prepared in advance by the vendor. These preliminary settings ensure that when the customer executes the program, the correct data is targeted and appropriate precautions are already in place, enabling fast execution without compromising safety.
Solution Approach 2:
The access key mechanism provides feedback control by requiring the customer to follow guided instructions and verify data selection before execution. This feedback loop ensures that the correction program only operates on intended data, preventing harmful side effects while maintaining efficient execution.
Data Source
AI summary
Systems, methods, and computer-readable media for controlling the execution of a deployed software program to a customer system are disclosed herein. A vendor may deploy a software program to the customer system. The software program may comprise an access key, the access key comprising a digital signature and access parameters. The digital signature may utilize a public key private key pair. The customer may run the software program by validating the access key on the customer system. Validating the access key may comprise verifying the digital signature and verifying the access parameters. Once the access key has been validated, the customer may execute the software program on the customer system.


