Dynamic Field-Level Access Control in Shared Documents

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Collaborative writing and editing of shared documents face challenges such as access control, ownership, and reconciliation of modifications, particularly in environments where multiple users need to work together, as existing technologies rely on static field-level access control lists that do not adapt to changing user roles and contributions.

Innovation Solution

Implementing dynamic field-level access control by subdividing shared documents into sections controlled by individual users or roles, where each field is initially unowned and ownership is assigned to the first user to edit it, allowing for customizable access control lists to manage permissions for editing, viewing, and code access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If static field-level access control lists are used, then ownership and permissions are clearly defined, but the system cannot adapt to changing user roles and contributions

Engineering Contradiction:
Improveadaptability to changing user rolesVSAvoidaccess control management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements dynamic access control lists where permissions are automatically adjusted based on user actions. When a user contributes content to a field, their access rights are automatically enhanced without manual intervention. This transforms the static ACL model into a dynamic one that adapts to changing user roles and contributions in real-time

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system automatically grants enhanced permissions to users based on their contributions to fields. When a user adds content to a field, the system self-service style updates their access rights without requiring administrator intervention or complex manual permission management, thereby reducing administrative complexity while improving adaptability

Inventive Principle:
Principle #25Self-service

2Productivity

If any user can edit any field initially, then collaboration is maximized, but control and ownership become ambiguous

Engineering Contradiction:
Improvecollaborative editing efficiencyVSAvoidownership clarity
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies different access control characteristics to different fields within the same document. Each field can have its own ACL based on who contributed to it, allowing simultaneous open collaboration in some fields while maintaining clear ownership and restricted access in others. This local differentiation resolves the contradiction between open collaboration and clear ownership

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The document is segmented into multiple fields, each with independent access control lists. This segmentation allows the system to provide both open collaboration (users can edit any field initially) and clear ownership (each field develops its own ACL based on contributions) simultaneously at the field level rather than document level

Inventive Principle:
Principle #1Segmentation

3Adaptability or versatility

If dynamic ACLs are implemented, then adaptability to user contributions improves, but system complexity increases

Engineering Contradiction:
Improvedynamic permission assignmentVSAvoidaccess control system complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The dynamic ACL system operates through self-service mechanisms where user contributions automatically trigger permission updates. The system monitors field edits and automatically adjusts ACLs based on contribution patterns, eliminating the need for complex manual permission management interfaces or administrator intervention, thereby reducing perceived complexity while maintaining high adaptability

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements feedback loops where user contributions to fields are continuously monitored and used to automatically adjust permissions. This feedback mechanism creates a self-regulating system that adapts to user roles and contributions dynamically without requiring complex external control logic, managing system complexity through automated responsive behavior

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS7930316B2Method, system, and computer program product for dynamic field-level access control in shared documents
Publication Date: 2011.04.19 KYNDRYL INC
  • US7930316B2 patent drawing
  • US7930316B2 patent drawing
  • US7930316B2 patent drawing

AI summary

A method, system, and computer program product for dynamic field-level access control in shared documents. The method comprises: providing a field in a shared document, wherein the field is not owned by a user and can be edited by any user; and assigning sole ownership of the field to a user who first edits the field, wherein the owner of the field controls access to the field using at least one access control list.