Cross-Suite Data Synchronization via Identity Notification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In petrotechnical suite architectures, data from one application suite is isolated and segregated from data from another application suite, preventing users from freely using data between suites and requiring physical site visits for data transfer, which compromises security.

Innovation Solution

A system and method that use a data partition or storage network as an access point to inter-operate data between different application suites securely, syncing data resources and permissions to allow authorized access while preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If data is isolated and segregated between application suites for security reasons, then security is improved, but data accessibility and operational efficiency deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoiddata accessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system segments user identities and data access permissions by application suite, creating distinct identity contexts for each suite while maintaining secure isolation. Users are assigned specific identities within each suite boundary, allowing controlled access without compromising overall security architecture.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A notification-based intermediary mechanism is introduced between isolated application suites. When a user is authenticated in one suite, a notification is generated and transmitted to other suites, automatically creating corresponding user identities and establishing cross-suite access rights without direct data exposure between suites.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If physical site visits are required for data transfer between suites, then security is maintained, but productivity and time efficiency deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoiddata transfer efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent replaces the mechanical process of physical data transfer (site visits, manual file exchange) with an automated electronic notification system. The notification mechanism electronically propagates user identity information across suites, eliminating the need for physical intervention while maintaining security through controlled identity management rather than direct data sharing.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

User identities and access permissions are pre-established through the notification mechanism before any data access operations occur. When a user is authenticated in one suite, their identity is proactively registered in other suites in advance, enabling seamless cross-suite data operations without requiring subsequent physical visits for authentication or data transfer.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If different user identities are generated for each application suite, then security and data isolation are improved, but system complexity and identity management overhead increase

Engineering Contradiction:
Improvedata isolationVSAvoididentity management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The notification mechanism serves multiple functions simultaneously: it transmits user identity information, automatically creates user identities in target suites, establishes access permissions, and maintains synchronization across suites. This universal mechanism reduces identity management complexity despite maintaining distinct identities per suite.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system implements self-service identity management where the notification mechanism automatically handles identity creation, permission assignment, and synchronization across suites without requiring manual administrative intervention. The system autonomously manages the complexity of multi-suite identity coordination through automated notification processing.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS12306923B2Securely sharing data across isolated application suites
Publication Date: 2025.05.20 SCHLUMBERGER TECH CORP
  • US12306923B2 patent drawing
  • US12306923B2 patent drawing
  • US12306923B2 patent drawing

AI summary

Methods, computing systems, and computer-readable media for synchronizing data across a first application suite and an isolated second application suite. The method includes generating a first identity for a user to access data from a first application suite; generating a notification that the first identity has been created, causing a second application suite to generate a second different user identity to access data from the second application suite; authenticating a user based on authentication information and the first user identity; receiving, from the first application suite, a first resource from the user; storing the received first resource on the first application suite; synchronizing the first resource from the first application suite to the second application suite; synchronizing a second resource, stored on the second application suite, from the second application suite to the first application suite; and providing the second resource to the user via the first application suite.