Programmable Display User Privilege Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing programmable displays for remote viewing and interaction with manufacturing devices lack adequate security measures, as they transmit all displayed information to client computers without considering user privileges, potentially exposing sensitive tacit knowledge.

Innovation Solution

A programmable display with a user management unit that identifies users and generates interface screens based on their privileges, allowing secure access control by establishing connections only with authorized devices and limiting access to prevent simultaneous access by users with different privileges.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If all displayed information is transmitted to client computers without restriction, then remote viewing and interaction functionality is achieved, but security level of displayed content deteriorates

Engineering Contradiction:
Improveremote viewing functionalityVSAvoidsecurity level
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the displayed information into multiple security levels (first security level and second security level). The display device transmits different security level content to different client devices based on authentication results. This segmentation allows remote viewing functionality while protecting sensitive information by ensuring only authorized clients receive appropriate security level content.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies local quality by assigning different security attributes to different regions or types of displayed information. High security level information (such as tacit knowledge) is restricted to specific display contexts, while lower security level information can be transmitted to client devices. This ensures that sensitive content maintains its security protection even when remote viewing is enabled.

Inventive Principle:
Principle #3Local quality

2Adaptability or versatility

If multiple users with different privileges can access simultaneously, then system versatility is improved, but security control deteriorates

Engineering Contradiction:
Improveuser access flexibilityVSAvoidsecurity control
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements dynamic security control by adjusting the security level of displayed content based on the current user's authentication credentials. When a user logs in, the display device dynamically determines what security level content to transmit based on that user's privileges. This dynamic adjustment allows multiple users with different privileges to access the system simultaneously while maintaining appropriate security control for each user session.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system uses feedback from authentication results to control information transmission. After each user authentication, the display device receives feedback about the user's security level and adjusts the transmitted content accordingly. This feedback mechanism ensures that even when multiple users access the system simultaneously, each receives only content appropriate to their authorized security level.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10063553B2Programmable display
Publication Date: 2018.08.28 OMRON CORP
  • US10063553B2 patent drawing
  • US10063553B2 patent drawing
  • US10063553B2 patent drawing

AI summary

A programmable display for connection to a control device includes: a user management unit configured to identify a user accessing the programmable display; a generation unit configured to generate an interface screen containing information from the control device in accordance with privileges assigned the user identified by the user management unit; a display unit configured to output the interface screen; a connection management unit configured to, in response to a request for access from a user on an external device, establish a connection with the external device on the basis of identification of the user by the user management unit, and to send the interface screen to an external device with which a connection is established; and the user management unit prohibits simultaneous access to the programmable display by a plurality of users each having different privileges assigned.