Authority Delegation for Agent Device Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users face inconvenience due to the burden of repeatedly inputting IDs and passwords for authentication when accessing services, which can be alleviated by delegating authority to an agent device that manages access without user intervention.
Innovation Solution
An information processing device and method that includes an acquisition unit for obtaining authority delegation information, a change unit for altering authority levels based on conditions, and a processing unit for performing processes using the authority, allowing the agent device to manage and validate user access without continuous user input.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If user authentication is performed by prompting the user to make operations such as password input, then security and authorization control are ensured, but user convenience deteriorates due to repeated input burden
Solution Approach 1:
The system performs preliminary authentication by obtaining authorization information from the user's terminal device in advance. The authorization information includes identification information and authorized operation information, which are stored and used for subsequent operations without requiring repeated user input, thus resolving the contradiction between security and convenience
Solution Approach 2:
The system creates a copy of the user's authorization credentials in the form of authorization information that contains identification information and authorized operation information. This copy enables the terminal device to perform operations without the user physically present, maintaining security while improving convenience
2Ease of operation
If authority delegation is implemented to an agent device, then user burden is reduced and convenience is improved, but system complexity increases due to authority management requirements
Solution Approach 1:
The system introduces an intermediary authorization information structure that mediates between the user and the agent device. This authorization information contains both identification information and authorized operation information, serving as a compact intermediary representation that simplifies the delegation process while maintaining security, thus resolving the contradiction between convenience and system complexity
Data Source
AI summary
The present technology relates to an information processing device, an information processing method, and a program that allow authority to be delegated without bothering the user. Provided are an acquisition unit that acquires information for receiving delegation of an authority that is predetermined, a change unit that changes a level of the authority when a predetermined condition is satisfied, and a processing unit that performs a process using the authority that is predetermined. The acquisition unit acquires first information, an inquiry is made to a server using the first information to acquire second information from the server, and the authority that is predetermined is delegated by acquiring the second information. The present technology can be applied to, for example, an agent device to which the authority to access predetermined information is delegated from a user.


