Execution Information Sharing via Secure Data Exchange Stages
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing data sharing methods are cumbersome, slow, and insecure, making it difficult for smaller entities to access valuable data sets, and traditional methods do not allow scalable sharing or real-time access to updated data.
Innovation Solution
A cloud-based data exchange platform enables secure data sharing through share objects that define access privileges and consumer accounts, allowing data providers to control data access and usage without copying data, and automatically shares execution information with providers while protecting consumer privacy.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If traditional data sharing methods are used, then data can be shared between parties, but the process is cumbersome and slow
Solution Approach 1:
The patent introduces a data exchange platform as an intermediary between data providers and consumers. The platform manages share objects, access credentials, and data transfer processes, eliminating the need for direct complex negotiations and manual setup between parties. This mediator approach streamlines the sharing process and enables faster data access.
Solution Approach 2:
The system performs preliminary actions by pre-configuring share objects with defined access privileges and data permissions before actual data sharing occurs. The data exchange platform pre-establishes the sharing framework, credentials, and access controls, so that when data sharing is needed, the process can begin immediately without manual configuration.
2Reliability
If data is shared using traditional methods, then access is provided, but security is compromised and sensitive information may be exposed
Solution Approach 1:
The patent implements local quality by assigning different access privileges and permissions to different consumers based on their specific needs and trust levels. Each share object can have customized access controls that grant specific permissions to specific consumers, rather than using a one-size-fits-all approach. This enables secure sharing while maintaining operational ease for each user group.
Solution Approach 2:
The data exchange platform acts as a security intermediary that manages credentials and access controls. It verifies consumer identities, manages share object permissions, and controls data access without requiring providers to directly manage security for each consumer. This maintains security while simplifying the user experience.
3Speed
If data is copied for sharing, then access is enabled, but storage requirements increase and data updates cannot be reflected in real-time
Solution Approach 1:
The patent uses intelligent copying where only necessary data subsets are copied to consumers based on their specific access rights and needs, rather than copying entire datasets. The share objects contain references to the original data with permission controls, enabling real-time access to updated data without duplicating the entire dataset in multiple locations.
4Productivity
If manual configuration is required for data sharing, then access control is possible, but the process becomes cumbersome and time-consuming
Solution Approach 1:
The data exchange platform provides self-service capabilities where consumers can independently request access, and the system automatically manages credential generation and share object configuration. Providers define share objects with access privileges once, and the platform automatically handles the distribution and management of access credentials to multiple consumers, eliminating manual configuration for each sharing instance.
Data Source
AI summary
Disclosed is an execution information sharing system that writes execution information to a provider target (and other targets) in a secure manner. Execution information generated by an application may be written to a consumer stage, wherein the application is shared by a provider account of a data exchange with a consumer account that executes the application. A consumer exchange service(ES) of the data exchange may send a request to a copy service of the data exchange to copy the execution information from the consumer stage to the provider stage, wherein the consumer ES is a part of the data exchange and is protected from actions of the consumer account. A copy operation may be executed to copy the execution information from the consumer stage to the provider stage using the copy service of the data exchange. The execution information is ingested from the provider stage to a provider table.


