Delegate Account Document Access Control via Entity Identifiers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The ease of creation and sharing of electronic documents increases the need for secure and efficient document management systems that can manage multiple entities' access to these documents, as existing solutions lack robust security and convenient sharing mechanisms.
Innovation Solution
A method and system that utilize a combination of relational and non-relational database storage to store documents and entity identifiers, allowing for granular control of document management functions based on entity types, enabling secure sharing and differentiated access levels among delegates.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If electronic documents are easily duplicated and shared, then document accessibility and convenience are improved, but security control and access management deteriorate
Solution Approach 1:
The system segments document access control by creating distinct delegate accounts with specific entity identifiers, each granted targeted subsets of document management functions based on their role and requirements, rather than providing uniform access to all documents
Solution Approach 2:
The system implements local quality by associating different delegate accounts with different subsets of document management functions for different document sets, allowing each delegate to have customized access rights tailored to their specific needs and responsibilities
2Extent of automation
If document management functions are centralized, then system control is improved, but access granularity and entity-specific control deteriorate
Solution Approach 1:
The system implements dynamic access control by automatically granting specific subsets of document management functions to delegate accounts based on their associated entity identifiers and recorded associations, rather than using static uniform permissions
Solution Approach 2:
The system introduces entity identifiers as intermediaries between the centralized document management system and individual delegates, enabling automated determination of appropriate access rights based on the delegate's entity type and associations with specific document sets
3Productivity
If multiple delegates are granted full access to all documents, then collaboration efficiency is improved, but security risk and access control complexity deteriorate
Solution Approach 1:
The system creates universal delegate accounts that can be associated with multiple entity identifiers and granted access to multiple different sets of documents with different permission levels, allowing a single delegate account to have versatile access rights across various document collections
Data Source
AI summary
Methods and systems for sharing electronic documents are described herein. The example method includes storing the electronic documents in a relational database storage; storing entity identifiers in the relational database storage, each entity identifier representing an entity type; recording in a non-relational database storage associations between the electronic documents and at least one entity identifier, each association comprising a relationship between a set of electronic documents and the at least one entity identifier; associating a delegate account with the at least one entity identifier; and based on an association recorded in the non-relational database storage for the at least one entity identifier, granting the delegate account a subset of document management functions available for the set of documents.


