Document Metadata Access Control via Character Recognition

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing document management systems fail to effectively restrict access to metadata acquired through character recognition of document data, leading to inadequate control over browsing and printing permissions for sensitive information.

Innovation Solution

A document management system comprising an image forming apparatus that specifies and secures metadata to be concealed, an image-processing server that performs character recognition, and a document-management server that applies access restrictions based on security settings, allowing only authorized users to access and view or print sensitive metadata, with an option to cancel masking via a lock button for authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If access restriction is imposed on document data to be managed, then data security is improved, but browsing and printing functionality is restricted

Engineering Contradiction:
Improvedata securityVSAvoidbrowsing and printing functionality
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies different access permission levels to different metadata elements within the same document data. Instead of uniformly restricting or allowing access to all metadata, the system assigns specific permission attributes (browse, print, delete) to individual metadata elements based on their sensitivity and importance, enabling selective access control that maintains security while preserving necessary functionality

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent segments metadata into multiple independent elements, each with its own security attributes. This segmentation allows the system to apply granular access control policies to specific metadata elements rather than treating all metadata as a single unit, thus balancing security requirements with operational needs

Inventive Principle:
Principle #1Segmentation

2Reliability

If metadata is masked for unauthorized users, then data privacy is improved, but information accessibility is reduced

Engineering Contradiction:
Improvedata privacyVSAvoidinformation accessibility
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent implements dynamic masking of metadata elements based on user authentication results. When a user accesses document data, the system dynamically determines which metadata elements should be masked or displayed based on that user's permission attributes. This dynamic approach ensures data privacy for unauthorized users while maintaining information accessibility for authorized users

Inventive Principle:
Principle #15Dynamics

3Manufacturing precision

If detailed security settings are applied to each metadata element, then access control precision is improved, but system complexity increases

Engineering Contradiction:
Improveaccess control precisionVSAvoidsystem complexity
Core Design Contradiction:
Manufacturing precisionVSDevice complexity

Solution Approach 1:

The patent employs a universal permission attribute structure that can be applied to any metadata element regardless of its type or content. Each metadata element uses the same set of permission attributes (browse, print, delete), creating a multi-functional security framework that simplifies system design while enabling detailed access control across diverse metadata types

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10412267B2Document management system
Publication Date: 2019.09.10 KYOCERA DOCUMENT SOLUTIONS INC
  • US10412267B2 patent drawing
  • US10412267B2 patent drawing
  • US10412267B2 patent drawing

AI summary

Provided is a document management system for managing document data by applying access restrictions to each metadata acquired by character recognition of document data to be managed. The mage forming apparatus acquires document data to be managed. The image-processing server performs character recognition of document data and acquires metadata. The image forming apparatus specifies metadata to be concealed in document data. The image forming apparatus receives a security setting, correlates a metadata name to be concealed with the security setting, and transmits the security setting together with document data to the image-processing server. The document-management server, in the case where there is an access request from a user for document data, allows access to the document data based on the security setting by not masking metadata for which there is access authority, and masking metadata for which there is no access authority.