Certificate Enchainment for Context-Aware Computing Resource Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for decision-making in business and analytics fail to effectively facilitate the presentation of alternative points of view and handling of diverse organizational structures, limiting the ability to model and simulate various perspectives.

Innovation Solution

A method for securing computing resources through the synthesis of control objects based on access and privilege information, using mediated associations to establish trust among entities, and enchaining certificates for secure computing actions, with encryption and decryption mechanisms to authorize and constrain rights based on entity-specific conditions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If traditional access control systems are used to secure computing resources, then security is maintained, but the system cannot facilitate alternative points of view or diverse organizational structures

Engineering Contradiction:
Improveability to handle alternative points of viewVSAvoidsecurity of computing resources
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system segments access control into multiple independent certificate entities, each representing different organizational structures or points of view. These certificate segments can be independently validated and combined, allowing the system to maintain security while supporting diverse organizational perspectives simultaneously.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces certificate-based mediation as an intermediary layer between security validation and organizational structure representation. Certificates act as mediators that can encode different organizational relationships and points of view while maintaining a unified security validation mechanism through cryptographic verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If complex mediated associations with multiple entities are implemented, then trust relationships are enhanced, but system complexity increases

Engineering Contradiction:
Improvetrust relationships among entitiesVSAvoidcomplexity of certificate enchainment
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system uses cryptographic copying where trust relationships are replicated across multiple certificate entities through cryptographic signatures. Instead of managing complex direct relationships between all entities, each entity holds a copy of trust information in the form of signed certificates, simplifying the overall system structure while maintaining comprehensive trust validation.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent implements nested certificate structures where certificates can contain or reference other certificates in a hierarchical enchainment. This nesting allows complex trust relationships to be organized in manageable layers, with each certificate encapsulating specific trust assertions that can be validated independently or as part of the broader chain.

Inventive Principle:
Principle #7Nested doll (Nesting)

3Measurement precision

If entity-specific encryption and decryption operations are performed, then access control precision is improved, but processing time increases

Engineering Contradiction:
Improveprecision of access controlVSAvoidtime for encryption and decryption
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The system performs preliminary cryptographic setup by pre-establishing certificate chains and encoding access control policies within certificates before actual resource access operations. This preliminary action allows the system to use efficient cryptographic verification operations during runtime rather than performing complex encryption/decryption for each access request, reducing processing time while maintaining precise access control.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11710052B2Securing computing resources through multi-dimensional enchainment of mediated entity relationships
Publication Date: 2023.07.25 GO LOGIC DECISION TIME LLC
  • US11710052B2 patent drawing
  • US11710052B2 patent drawing
  • US11710052B2 patent drawing

AI summary

Synthesizing a control object for a computing event, the control object for securing a computing resource based on a set of access and privilege information provided through a set of mediated associations that are represented by an enchained set of certificates, portions of which are encrypted including entity-specific paths to entity-specific predecessor certificates and partial decryption keys therefor, wherein the control object is applied to secure the computing resource for performing a computing action indicated by a process-type entity identified in the certificate for the control object.