Cloud Digital Key Sharing with Server-Mediated Validation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional methods for sharing digital keys to access assets pose security risks when users are not present to manage access, as direct key sharing can lead to unauthorized access and lack of control over access duration.
Innovation Solution
A cloud-based system that allows users to share digital keys securely through an access management system, where a server facilitates key-sharing requests, manages access duration, and ensures validation and revocation of access credentials, using a processor and control circuitry in access control devices to grant and revoke access based on validated digital keys.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a user shares a digital key directly with another user, then the other user can access the asset, but security risks increase and control over access duration is lost
Solution Approach 1:
The patent introduces a server as an intermediary between the first user and second user for key sharing. The server receives key-sharing requests, manages digital key distribution, and controls access duration. This intermediary system enables secure key sharing without direct user-to-user key transmission, maintaining security while facilitating access.
Solution Approach 2:
The system performs preliminary actions by establishing access duration and validity periods before the second user actually accesses the asset. The server pre-configures access parameters, validates digital keys beforehand, and sets expiration times, ensuring security controls are in place before access occurs.
2Adaptability or versatility
If a user shares a digital key when away from the asset, then access can be granted remotely, but control and validation capability is reduced
Solution Approach 1:
The system enables self-service remote access where the first user can initiate key-sharing requests and the second user can receive and use digital keys without physical presence. The server automatically manages key distribution, validation, and expiration, reducing the need for manual intervention while maintaining control.
Solution Approach 2:
The server implements feedback mechanisms by monitoring access events, tracking digital key usage, and notifying users of access status. The system provides feedback on whether access was successful, when keys expire, and maintains logs of access events, enabling remote users to understand system status without being physically present.
3Duration of action of moving object
If digital key access duration is extended, then usability is improved, but security control is weakened
Solution Approach 1:
The system implements dynamic access duration control where the server can adjust access validity periods based on user needs, asset type, and security requirements. Access duration is not fixed but can be modified through the server, allowing flexible extension or reduction of access time while maintaining centralized security control.
Solution Approach 2:
The system uses periodic action by implementing access keys with expiration times and validity periods. Digital keys are automatically revoked after specified durations, requiring re-validation for extended access. This periodic re-validation maintains security control while allowing necessary access duration extensions.
Data Source
AI summary
A system for managing an access to an asset is provided. A digital key to the asset is generated and synchronized between a first user device of a first user and an access control device that controls the access to the asset. A key-sharing request is initiated by the first user device to grant a second user the access to the asset. Based on the key-sharing request, an application server communicates the digital key to a second user device of the second user. When the second user device is within a detection range of the access control device, the access control device receives the digital key from the second user device, validates the digital key, and grants the second user the access to the asset for an access duration defined in the key-sharing request.


