Data Space Intermediary for Secure Installation Data Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing big-data systems face challenges in accessing and utilizing installation-specific data due to limitations in data availability, complexity, and accessibility, leading to suboptimal implementation and mistrust among companies.

Innovation Solution

A device and procedure for controlled data provision, involving a receiving device for project-specific data, a processing device for object identification and data modeling, a rule-based device for specifying data utilization, and an interface device for data integration in a usable format, ensuring secure, standardized, and transparent data access and usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If data is made widely accessible for big-data applications, then data availability and application capabilities are improved, but data security and control are worsened

Engineering Contradiction:
Improvedata availabilityVSAvoiddata security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a data space intermediary system that mediates between data providers and data users. This intermediary layer enables data access without direct exposure, maintaining security through controlled interfaces and authentication mechanisms while still allowing broad data utilization for various applications.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The data access system is segmented into multiple layers including authentication layer, authorization layer, and data delivery layer. This segmentation allows different levels of control and security measures to be applied at each layer, enabling widespread data access while maintaining granular security control.

Inventive Principle:
Principle #1Segmentation

2Reliability

If custom data access agreements are negotiated between companies, then data security and ownership control are improved, but access complexity and time consumption are worsened

Engineering Contradiction:
Improvedata ownership controlVSAvoidaccess complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a universal data space framework that provides standardized access mechanisms applicable across different companies and data types. This universal system eliminates the need for custom negotiations by providing pre-established, multi-functional access protocols that work across diverse scenarios.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

Data access rights and permissions are predetermined and configured in advance through standardized templates and policies. This preliminary action eliminates the need for real-time negotiations, as the framework already contains pre-agreedupon terms and conditions for data access.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If comprehensive data access is provided without standardization, then data utility for applications is improved, but integration complexity and cost are worsened

Engineering Contradiction:
Improvedata utilityVSAvoidintegration complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent standardizes data parameters, formats, and interfaces within the data space framework. By defining consistent parameter structures and data schemas, the system enables comprehensive data access while reducing integration complexity through uniformity across different data sources and applications.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS10776328B2Device and operating procedure for the controlled provision of installation-specific data for one or more data users
Publication Date: 2020.09.15 SIEMENS AG
  • US10776328B2 patent drawing

AI summary

A device and an operating procedure for the controlled provision of installation-specific data for one or more data users, is provided. The device has a receiving device for receiving project-specific data of a technical installation, a processing device for the identification of particular objects and for mapping the project-specific data to at least one data model, a rule-based device for specifying the type and the extent of the utilization of the data deposited in at least a part of the data model, with the aid of rules, and an interface device for the integration into a device, processing installation-specific data which is designed by means of the specified type and extent of the provision in such a manner as to provide the data deposited in the data model in a data format and/or in a description language usable for the one or the several data users.