Authority Delegation for Agent Device Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face inconvenience due to the burden of repeatedly inputting IDs and passwords for authentication when accessing services, which can be alleviated by delegating authority to an agent device that manages access without user intervention.

Innovation Solution

An information processing device and method that includes an acquisition unit for obtaining authority delegation information, a change unit for altering authority levels based on conditions, and a processing unit for performing processes using the authority, allowing the agent device to manage and validate user access without continuous user input.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If user authentication is performed by prompting the user to make operations such as password input, then security and authorization control are ensured, but user convenience deteriorates due to repeated input burden

Engineering Contradiction:
Improveauthentication securityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary authentication by obtaining authorization information from the user's terminal device in advance. The authorization information includes identification information and authorized operation information, which are stored and used for subsequent operations without requiring repeated user input, thus resolving the contradiction between security and convenience

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system creates a copy of the user's authorization credentials in the form of authorization information that contains identification information and authorized operation information. This copy enables the terminal device to perform operations without the user physically present, maintaining security while improving convenience

Inventive Principle:
Principle #26Copying

2Ease of operation

If authority delegation is implemented to an agent device, then user burden is reduced and convenience is improved, but system complexity increases due to authority management requirements

Engineering Contradiction:
Improveuser convenienceVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system introduces an intermediary authorization information structure that mediates between the user and the agent device. This authorization information contains both identification information and authorized operation information, serving as a compact intermediary representation that simplifies the delegation process while maintaining security, thus resolving the contradiction between convenience and system complexity

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11436348B2Method and system of passing and applying delegations of authority
Publication Date: 2022.09.06 SONY GROUP CORP
  • US11436348B2 patent drawing
  • US11436348B2 patent drawing
  • US11436348B2 patent drawing

AI summary

The present technology relates to an information processing device, an information processing method, and a program that allow authority to be delegated without bothering the user. Provided are an acquisition unit that acquires information for receiving delegation of an authority that is predetermined, a change unit that changes a level of the authority when a predetermined condition is satisfied, and a processing unit that performs a process using the authority that is predetermined. The acquisition unit acquires first information, an inquiry is made to a server using the first information to acquire second information from the server, and the authority that is predetermined is delegated by acquiring the second information. The present technology can be applied to, for example, an agent device to which the authority to access predetermined information is delegated from a user.