Data Exchange Access Control via Segmentation and Mediator
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current data management systems face limitations in data availability and accessibility for data science applications and machine learning techniques, which restrict their ability to provide insights and perform functions effectively due to insufficient data volume and diversity.
Innovation Solution
A cloud-based data warehouse system that utilizes a SQL-based relational database and a multi-tenant architecture for scalable and secure data storage and sharing, enabling controlled and private sharing of data among entities through an exchange management module, allowing for flexible data access and analysis while maintaining access controls and security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Quantity of substance
If data is made more accessible and available for analysis, then data science applications and machine learning techniques can provide better insights and perform functions more effectively, but data security and access control become more challenging to maintain
Solution Approach 1:
The patent segments data access into different scopes (public, private, shared) and implements separate access control mechanisms for each scope. The exchange management module maintains separate access control lists and permission sets for different data visibility levels, allowing the system to provide broad data availability while maintaining security through targeted access control at each segmentation level.
Solution Approach 2:
The exchange management module serves as an intermediary between data providers and consumers, mediating access control and data sharing decisions. This intermediary layer enables the system to facilitate data availability and accessibility while maintaining security by centralizing access control policies and validation mechanisms.
2Adaptability or versatility
If a multi-tenant architecture is implemented for scalable data storage and sharing, then data availability and accessibility are improved, but system complexity increases
Solution Approach 1:
The patent implements a universal data exchange platform that serves multiple tenants and supports various data sharing scenarios (public, private, shared) through a unified architecture. The exchange management module provides multi-functional capabilities including access control, data validation, and sharing coordination, reducing overall system complexity despite supporting diverse use cases.
Solution Approach 2:
The system manages complexity by parameterizing access control policies and sharing configurations rather than implementing complex hard-coded logic for each scenario. Access control parameters such as visibility scope, permission levels, and data filters are configured through parameter changes, enabling scalability while maintaining manageable system complexity.
Data Source
AI summary
A method includes creating, by a first provider, a first listing referencing first shared data and comprising first access controls, wherein access to the first shared data by a second provider is filtered based on the first access controls, creating, by the second provider, a second listing referencing second shared data and the first shared data filtered based on the first access controls, and adding the second listing to a catalog in a data exchange, the catalog comprising metadata describing the second shared data.


