Blockchain Access Control via Cryptocurrency Authorization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Managing access control in distributed computing environments is challenging due to the need for synchronizing access control permissions across multiple systems, leading to inconsistencies and overhead, especially in cloud computing where resources are distributed and lack centralized administration.
Innovation Solution
A blockchain-based access control method using digitally signed records and a cryptocurrency system, where access permissions are defined as tradeable units of value validated by miner software components, allowing secure and decentralized authorization without requiring trust between consumers and providers.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If role-based access control is used to simplify access control management, then access control management is simplified, but synchronizing access control data across distributed systems becomes complex and prone to inconsistencies
Solution Approach 1:
The patent introduces a blockchain as an intermediary mechanism to manage access control data distribution. Instead of direct peer-to-peer synchronization between distributed systems, the blockchain serves as a shared ledger that mediates access control information storage and retrieval, eliminating the need for complex direct synchronization protocols between multiple systems.
Solution Approach 2:
The blockchain infrastructure provides universal access control functionality across all distributed systems. A single blockchain-based access control mechanism serves multiple systems simultaneously, allowing any system to read and write access control data to the shared blockchain without requiring system-specific synchronization logic.
2Reliability
If centralized access control is used, then access control consistency is maintained, but trust between consumers and providers is required and scalability is limited
Solution Approach 1:
The blockchain enables self-service access control where consumers and providers independently manage their own access rights without requiring trust in a central authority. Each participant can autonomously read, write, and manage their access control entries on the blockchain, eliminating the need for centralized trust while maintaining consistency through the distributed ledger.
Solution Approach 2:
The blockchain acts as a trustless intermediary that ensures access control consistency without requiring participants to trust each other or a central authority. The distributed ledger and consensus mechanism provide cryptographic guarantees that access control data is consistent across all systems without needing centralized verification.
3Reliability
If access control data is synchronized across multiple systems, then access control is maintained, but network overhead and synchronization delays increase
Solution Approach 1:
The patent merges access control data storage and retrieval operations into a single blockchain infrastructure. Instead of maintaining separate access control databases in each distributed system and synchronizing them, all access control data is consolidated on the shared blockchain, eliminating multiple synchronization operations and reducing network overhead.
Solution Approach 2:
The blockchain provides continuous availability of access control data through its distributed nature. Once data is written to the blockchain, it is immediately available to all nodes in the network without requiring additional synchronization steps, ensuring continuous access control functionality without delays.
Data Source
AI summary
A computer implemented method of access control for a restricted resource of a resource provider in a network connected computer system, wherein a blockchain data structure accessible via the network stores digitally signed records validated by network connected miner software components, the method including: identifying an access control role definition for access to the resource, the role including a specification of access permissions; defining a cryptocurrency for indicating authorization to access the resource, the cryptocurrency being formed of tradeable units of value associated with records in the blockchain and wherein transfer of the cryptocurrency between records in the blockchain is validated by the miners; receiving a request from an authenticated resource consumer for authorization to access the resource; and submitting a blockchain transaction to the miner components to transfer a quantity of cryptocurrency to a consumer record in the blockchain, the transaction including an identification of the role, such that the consumer record identifies that the consumer is authorized to access the resource in accordance with the role definition.


