Edge Server Data Filtering for Confidential Machine Information
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The challenge is that machine information, which is highly confidential, cannot be fully utilized for analysis due to concerns about leakage when transmitted to cloud servers, limiting the effectiveness of data analysis and maintenance processes in factories.
Innovation Solution
An edge server is introduced to manage machine information, allowing for restricted output based on confidentiality levels by setting transmission conditions and filtering data, ensuring only permitted information is transmitted to external locations, while maintaining confidentiality through sorting and masking sensitive data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of information
If machine information is transmitted to a cloud server for analysis, then data analysis capability is improved, but information security deteriorates due to potential leakage of confidential machine information
Solution Approach 1:
The patent segments machine information into multiple types (operation information, maintenance information, alarm information, etc.) and applies different transmission policies to each type. Confidential information is separated from non-confidential information, allowing selective transmission to cloud servers while maintaining security for sensitive data.
Solution Approach 2:
The patent introduces an information management server as an intermediary between machines and cloud servers. This mediator manages transmission rights, filters information based on confidentiality levels, and controls what data reaches external cloud servers, thereby enabling analysis while preventing unauthorized leakage.
2Measurement precision
If all machine information is transmitted to external locations for analysis, then analytical accuracy is improved, but confidentiality protection deteriorates
Solution Approach 1:
The patent applies different quality treatments to different parts of the machine information based on their confidentiality characteristics. Non-confidential information is transmitted in full detail for accurate analysis, while confidential information is either excluded or anonymized, ensuring each data type receives appropriate handling for its security requirements.
Solution Approach 2:
The patent changes the transmission parameters of machine information based on confidentiality levels. For different information types, it adjusts transmission frequency, detail level, and destination, allowing accurate analysis of non-sensitive data while protecting sensitive data through parameter-controlled transmission restrictions.
3Object-affected harmful factors
If machine information is kept confidential and not transmitted externally, then information security is improved, but utilization of cloud-based data analysis deteriorates
Solution Approach 1:
The patent transmits only the necessary portion of machine information (non-confidential or anonymized data) to cloud servers for analysis, rather than all information or no information. This partial transmission enables utilization of cloud-based analytical capabilities while maintaining security by excluding sensitive data from external access.
4Object-affected harmful factors
If transmission restrictions are applied to machine information, then information leakage is prevented, but data transmission complexity increases
Solution Approach 1:
The patent implements automatic classification and management of transmission rights for different types of machine information. The system self-manages the complexity of transmission restrictions through automated processes that classify information types and apply appropriate transmission policies without requiring manual intervention for each data point.
Data Source
AI summary
To provide a data management apparatus, a data management method, and a data management program capable of restricting the output of machine information to an external location according to the level of confidentiality of each piece of machine information. An edge server that provides machine information in a factory to an external location includes an execution unit configured to execute an application referring to a database storing the machine information, a setting unit configured to acquire lists of transmission destinations and transmission items defined for each application and set, as transmission conditions, a transmission destination and a transmission item permitted by a user from the lists, a data processing unit configured to sort out transmitted data output from the application according to the transmission conditions, and a transmission and reception unit configured to transmit the transmitted data processed to the external location.

