Client Permission Deletion via Error Signal Feedback
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In information processing systems, when a client apparatus is reassigned from one tenant to another, existing systems fail to efficiently remove the previous tenant's permission, leading to potential unauthorized access by users from the removed tenant.
Innovation Solution
The system transmits an error signal to the client apparatus when permission is invalid, causing it to delete the corresponding permission information, thereby preventing unauthorized access without requiring user intervention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If permission information is removed by a management unit, then the service access control is improved, but the permission information remains in the client apparatus and may be used for unauthorized access
Solution Approach 1:
The service providing apparatus sends feedback information (error signal) to the client apparatus when permission validation fails. This feedback mechanism triggers the client apparatus to delete its stored permission information, ensuring that removed permissions are completely cleared from the client side and cannot be used for unauthorized access.
Solution Approach 2:
The system performs preliminary action by having the client apparatus delete its permission information in advance, before any unauthorized access can occur. The error signal sent from the service providing apparatus to the client apparatus triggers immediate deletion of the permission information, preventing future unauthorized use.
2Object-generated harmful factors
If the user manually removes permission information, then the unauthorized access is prevented, but the operation becomes troublesome and complex
Solution Approach 1:
The client apparatus performs self-service by automatically deleting its own permission information in response to the error signal from the service providing apparatus. This eliminates the need for manual user intervention to remove permission information, making the process automatic and trouble-free while still preventing unauthorized access.
3Ease of operation
If permission information is stored in the client apparatus, then the authentication is simplified, but the permission cannot be completely removed and may cause security issues
Solution Approach 1:
The service providing apparatus uses feedback (error signal) to communicate permission status to the client apparatus. When permission is removed, the error signal triggers the client apparatus to delete its stored permission information, ensuring complete removal while maintaining the simplicity of the authentication process for valid permissions.
Solution Approach 2:
The system performs preliminary action by having the client apparatus delete permission information in advance when it receives the error signal, before any potential unauthorized access can occur. This ensures complete permission removal while maintaining authentication simplicity for valid permissions.
Data Source
AI summary
An information processing system includes a client apparatus, and an information processing apparatus that provides a service to the client apparatus in response to a request signal. The information processing apparatus includes a first memory and a first processor coupled to the first memory and configured to transmit an error signal to the client apparatus in a case where permission to use the service is not valid with respect to the request signal. The client apparatus includes a second memory and a second processor coupled to the second memory and configured to delete, in response to the error signal, permission information stored in the client apparatus and indicating that the service is available.


