Cloud Digital Key Sharing with Server-Mediated Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional methods for sharing digital keys to access assets pose security risks when users are not present to manage access, as direct key sharing can lead to unauthorized access and lack of control over access duration.

Innovation Solution

A cloud-based system that allows users to share digital keys securely through an access management system, where a server facilitates key-sharing requests, manages access duration, and ensures validation and revocation of access credentials, using a processor and control circuitry in access control devices to grant and revoke access based on validated digital keys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a user shares a digital key directly with another user, then the other user can access the asset, but security risks increase and control over access duration is lost

Engineering Contradiction:
Improveaccess sharingVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a server as an intermediary between the first user and second user for key sharing. The server receives key-sharing requests, manages digital key distribution, and controls access duration. This intermediary system enables secure key sharing without direct user-to-user key transmission, maintaining security while facilitating access.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary actions by establishing access duration and validity periods before the second user actually accesses the asset. The server pre-configures access parameters, validates digital keys beforehand, and sets expiration times, ensuring security controls are in place before access occurs.

Inventive Principle:
Principle #10Preliminary action

2Adaptability or versatility

If a user shares a digital key when away from the asset, then access can be granted remotely, but control and validation capability is reduced

Engineering Contradiction:
Improveremote accessVSAvoidaccess management system
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The system enables self-service remote access where the first user can initiate key-sharing requests and the second user can receive and use digital keys without physical presence. The server automatically manages key distribution, validation, and expiration, reducing the need for manual intervention while maintaining control.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The server implements feedback mechanisms by monitoring access events, tracking digital key usage, and notifying users of access status. The system provides feedback on whether access was successful, when keys expire, and maintains logs of access events, enabling remote users to understand system status without being physically present.

Inventive Principle:
Principle #23Feedback

3Duration of action of moving object

If digital key access duration is extended, then usability is improved, but security control is weakened

Engineering Contradiction:
Improveaccess durationVSAvoidaccess control
Core Design Contradiction:
Duration of action of moving objectVSReliability

Solution Approach 1:

The system implements dynamic access duration control where the server can adjust access validity periods based on user needs, asset type, and security requirements. Access duration is not fixed but can be modified through the server, allowing flexible extension or reduction of access time while maintaining centralized security control.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system uses periodic action by implementing access keys with expiration times and validity periods. Digital keys are automatically revoked after specified durations, requiring re-validation for extended access. This periodic re-validation maintains security control while allowing necessary access duration extensions.

Inventive Principle:
Principle #19Periodic action

Data Source

PatentUS12184628B2Cloud-based sharing of digital keys
Publication Date: 2024.12.31 EVQ TECH PTE LTD
  • US12184628B2 patent drawing
  • US12184628B2 patent drawing
  • US12184628B2 patent drawing

AI summary

A system for managing an access to an asset is provided. A digital key to the asset is generated and synchronized between a first user device of a first user and an access control device that controls the access to the asset. A key-sharing request is initiated by the first user device to grant a second user the access to the asset. Based on the key-sharing request, an application server communicates the digital key to a second user device of the second user. When the second user device is within a detection range of the access control device, the access control device receives the digital key from the second user device, validates the digital key, and grants the second user the access to the asset for an access duration defined in the key-sharing request.