Data Distribution via Unique Disclosure Permission Tokens
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current data distribution techniques require users to perform complex tasks, involving multiple devices and operations, making it burdensome to securely share data between data owners and consumers, especially when different consumers require different personal information.
Innovation Solution
A method where the first terminal equipment acquires data requested by a consumer, generates unique disclosure permission information, stores it in a management apparatus, and outputs it along with access information, allowing the second terminal equipment to directly acquire and send this information to the management apparatus for secure data distribution.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users encrypt personal information for each data consumer and use multiple devices to manage data disclosure, then data security is improved, but user operation complexity increases significantly
Solution Approach 1:
The patent introduces a personal information managing server as an intermediary between the user terminal and mobile terminal. This server handles the complex encryption and decryption operations, storing encrypted personal information and managing the association between users and data consumers. The user only needs to perform simple association operations between terminals, while the intermediary server handles the security-critical encryption tasks, thus resolving the contradiction between security and ease of operation.
Solution Approach 2:
The system performs preliminary encryption of personal information before it needs to be disclosed. The personal information is encrypted in advance and stored in the managing server, so that when a data consumer needs the information, the decryption and delivery process is simplified. This preliminary action eliminates the need for users to perform complex encryption operations at the moment of data sharing.
2Reliability
If users manually encrypt and manage personal information for different data consumers, then data disclosure control is improved, but time consumption and operational burden increase
Solution Approach 1:
The system enables automated data disclosure management where the personal information managing server automatically handles encryption, storage, and controlled delivery of personal information. Once the user associates their terminal with a mobile terminal, the system automatically manages the encryption and decryption processes without requiring manual intervention for each data consumer. This self-service mechanism maintains strict disclosure control while eliminating the time-consuming manual encryption operations.
Solution Approach 2:
The personal information managing server provides universal functionality by handling data disclosure control for multiple different data consumers through a single system. Instead of requiring separate manual encryption processes for each consumer, the server universally manages all encryption and decryption operations, allowing the user to share data with multiple consumers through a standardized, automated process that reduces time consumption.
3Reliability
If a centralized personal information managing server stores encrypted data, then data security is improved, but system complexity increases
Solution Approach 1:
The system segments the data management functionality across multiple components: the user terminal for association operations, the mobile terminal for data consumption, and the personal information managing server for encryption and storage. This segmentation allows the centralized server to handle security-critical functions while keeping the terminal devices relatively simple. The segmentation distributes system complexity across specialized components rather than concentrating it in one place.
Solution Approach 2:
The personal information managing server acts as an intermediary that simplifies the overall system architecture by centralizing the complex encryption and decryption operations. Rather than requiring complex encryption logic in each terminal device, the intermediary server handles all cryptographic operations, allowing the terminals to remain simple while maintaining high security standards through centralized management.
Data Source
AI summary
In order for data to be easily and securely distributed, a data distribution method includes: causing (S1) first terminal equipment (1) of an owner to acquire a data item requested by a consumer; generating (S2), in a case where the owner has permitted disclosure of data, disclosure permission information which means that the owner has permitted disclosure of the data to the consumer and which is unique in a management apparatus (3) managing the data; storing (S3) the disclosure permission information in storage (4) capable of being read by the management apparatus (3), with the disclosure permission information being associated with the data item; outputting (S4), from the first terminal equipment (1), the disclosure permission information and access information for access to the management apparatus so that second terminal equipment (2) of the consumer can acquire the disclosure permission information and the access information directly from the first terminal equipment (1); sending (S5) the disclosure permission information from the second terminal equipment (2) to the management apparatus (3); and returning (S6), from the management apparatus (3) to the second terminal equipment (2), the data concerning the data item associated with the disclosure permission information sent.


