Blockchain Segmentation for Secure Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing blockchain technologies face limitations in securely managing access and separating private and public information within distributed networks, lacking effective mechanisms for centralized control and authentication.

Innovation Solution

A system utilizing private, public, and hybrid blockchains to manage secure access by issuing authentication credentials and setting limits, allowing for the separation of private and public information within a distributed network, enabling centralized control over access and communication across different security requirements.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a public blockchain is used for information sharing, then transparency and verification are improved, but security and privacy of sensitive information deteriorate

Engineering Contradiction:
ImproveverificationVSAvoidprivacy risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent segments the blockchain into public and private portions, allowing different types of information to be stored in appropriate locations. Sensitive information is kept in the private portion while non-sensitive information is published to the public portion for verification, thus resolving the contradiction between transparency and privacy protection.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces authentication credentials and access control mechanisms as intermediaries between users and the blockchain data. These intermediaries verify user identities and enforce access policies, allowing public verification of transactions while protecting sensitive information from unauthorized access.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If centralized control mechanisms are implemented for secure access, then security and access control are improved, but system complexity and deployment difficulty worsen

Engineering Contradiction:
Improvesecure accessVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements universal authentication credentials that can be used across multiple blockchain networks and applications. This multi-functional approach allows a single authentication system to provide secure access control across diverse scenarios, reducing overall system complexity while maintaining strong security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent changes the parameter of access control from traditional permission-based models to credential-based models with configurable policies. This allows flexible security requirements to be met through parameter adjustments in authentication credentials and access policies rather than complex system architecture changes.

Inventive Principle:
Principle #35Parameter changes

3Object-affected harmful factors

If private information is separated from public information, then privacy and security are improved, but system complexity and information management difficulty worsen

Engineering Contradiction:
Improveprivacy protectionVSAvoidinformation management complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent segments information into private and public portions that are stored and managed separately in the blockchain. This segmentation allows automatic classification and handling of different information types, reducing the manual management burden while maintaining strong privacy protection for sensitive data.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates copies of information with different access permissions - sensitive information is copied only to the private portion while non-sensitive information is copied to the public portion. This copying mechanism automates information distribution and access control, simplifying management while protecting privacy.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS10129238B2System for control of secure access and communication with different process data networks with separate security features
Publication Date: 2018.11.13 BANK OF AMERICA CORP
  • US10129238B2 patent drawing
  • US10129238B2 patent drawing
  • US10129238B2 patent drawing

AI summary

A distributed block chain network having at least a private block chain portion, and in some cases a public block chain portion, allows users to take actions (e.g., accessing, viewing, storing, disseminating, validating, or the like) with respect to event information associated with events. In some aspects of the invention the distributed block chain network with the private block chain portion may be utilized to verify events and separate the private information associated with the events from the public information associated with the events. As such, the present invention provides systems for centralized control of secure access to process data networks by utilizing a private block chain; and moreover, provide systems for control of secure access and communication with different process data networks with different security requirements by utilizing one or more block chains with private block chain portions and/or public block chain portions.