Configuration Data Segmentation for Secure User Updates
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In voice communication systems, users are unable to update configuration data on their own communication terminals, leading to increased operational management costs and delays due to reliance on system providers for even minor changes, and user-configured settings are often overwritten during provisioning processing.
Innovation Solution
A data configuration system and method that allows users to update configuration data through a remote configuration device, enabling secure and efficient data management by separating the update process from the provisioning server, allowing users to modify individual variable data without overwriting user changes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the system provider manages all configuration data updates through the provisioning server, then system security is maintained, but configuration changes take time and increase operational management costs
Solution Approach 1:
The patent segments configuration data into two categories: common data managed by the provisioning server and individual variable data that can be updated locally. This segmentation allows users to update their own terminal configurations without affecting system security, while the provisioning server maintains control over common configuration data.
Solution Approach 2:
The patent introduces a configuration management unit as an intermediary component in the terminal device that mediates between user configuration requests and the provisioning server. This intermediary enables local configuration updates while maintaining system security architecture.
2Reliability
If the provisioning server updates all configuration data during provisioning processing, then complete configuration control is achieved, but user-modified settings are overwritten
Solution Approach 1:
The patent divides configuration data into common data (managed by provisioning server) and individual variable data (modifiable by users). During provisioning processing, only common data is updated from the server, while individual variable data stored in the terminal is preserved, preventing overwriting of user settings.
Solution Approach 2:
The patent implements different update behaviors for different types of configuration data: common data receives centralized updates from the provisioning server, while individual variable data maintains local quality by being updated only when explicitly modified by the user, not during routine provisioning.
3Productivity
If users are permitted to update configuration data directly, then rapid configuration changes are enabled, but system security may be compromised
Solution Approach 1:
The patent segments configuration authority between the provisioning server (common data) and terminal users (individual variable data). Users can rapidly update their own terminal configurations without compromising system security, as they only access their designated data portion.
Solution Approach 2:
The patent enables users to perform self-service configuration updates for their individual variable data without requiring system provider intervention. The terminal device's configuration management unit handles local updates autonomously, improving productivity while maintaining security boundaries.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
[Problem] To smoothly update configuration data comprising: fixed data set to a server by an administrator; and data rewritable by a user at a terminal. [Solution] A terminal device having a storage unit that stores configuration data, and a first and a second provisioning server are connected over a network. The terminal device includes an operation unit for rewriting variable data, which is a part of the plurality of configuration data. The first provisioning server stores all the configuration data. The second provisioning server stores fixed data, which is the plurality of configuration data excluding the variable data. The terminal device accesses the first provisioning server in an initial state in order to obtain all the configuration data and store the same in the storage unit. The configured terminal device accesses the second provisioning server in order to obtain the fixed configuration data.