Authority Division Notification for Multi-Apparatus Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In a system with multiple authority setting target apparatuses, ensuring consistent authority settings across all apparatuses is challenging, as existing methods fail to accurately determine and enforce authority division across different apparatuses with varying authority settings, leading to potential security vulnerabilities if not properly managed.
Innovation Solution
An information processing apparatus and method that acquires and compares authority setting information across multiple apparatuses, notifying administrators when authority division is not properly implemented due to identical settings, allowing for corrective action to ensure consistent and secure authority configurations.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Stability of the object's composition
If authority settings are made identical across multiple apparatuses for consistency, then operational uniformity is improved, but authority division cannot be performed in apparatuses with fewer authority setting items
Solution Approach 1:
The system applies different authority division strategies to different apparatuses based on their specific characteristics. Apparatuses with multiple authority setting items receive divided authority assignments (different authority holders for different items), while apparatuses with fewer items receive unified authority assignments (same authority holder for all items). This local adaptation resolves the contradiction by allowing authority division where possible while maintaining consistency where constraints exist.
Solution Approach 2:
The authority setting system dynamically adjusts its configuration based on the number of authority setting items available in each apparatus. The system evaluates the apparatus capabilities and automatically determines the appropriate authority division strategy, transitioning between unified and divided authority models as needed. This dynamic approach enables the system to maintain both consistency and adaptability across heterogeneous apparatuses.
2Reliability
If authority division is performed in each apparatus independently for security, then security is improved, but authority settings become inconsistent across apparatuses
Solution Approach 1:
The system implements security-appropriate authority division at each apparatus level while adapting to local constraints. Each apparatus receives authority settings optimized for its specific authority setting items, ensuring both security through authority division where available and consistency through unified settings where constraints exist. This localized security approach resolves the contradiction between security and consistency.
Solution Approach 2:
The system provides notifications to users when authority division cannot be performed in certain apparatuses, creating feedback loops that allow administrators to review and adjust settings. This feedback mechanism enables informed decision-making about authority configurations, allowing the system to maintain security while managing consistency across apparatuses with varying capabilities.
3Ease of operation
If unified authority holder is assigned for simplicity, then ease of operation is improved, but security is worsened due to lack of authority division
Solution Approach 1:
The system applies unified authority holder assignment (simple operation) to apparatuses with limited authority setting items while applying divided authority assignment (enhanced security) to apparatuses with multiple authority setting items. This localized approach resolves the contradiction by providing simplicity where constraints exist and security where capabilities allow, optimizing both ease of operation and security based on apparatus-specific characteristics.
Data Source
AI summary
An information processing apparatus includes a processor configured to: acquire authority setting information indicating an authority holder who has an authority for each of plural first authority setting items, for a first apparatus that is one of plural authority setting target apparatuses; acquire plural second authority setting items for which authorities are able to be set, for a second apparatus that is an apparatus other than the first apparatus, among the plural authority setting target apparatuses; and notify a user that authority division is not able to be performed in the second apparatus, in a case where authority holders of the second authority setting items are set to authority holders of the first authority setting items corresponding to the second authority setting items, shown in the authority setting information, and in a case where the respective authority holders of the plural second authority setting items are all the same.


