Federated Display System for Secure Information Routing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In federated interactions, existing technologies fail to effectively control and secure sensitive information from being inadvertently viewed by unauthorized users when presenting content from a mobile device to a larger ambient display, as they lack robust authorization and security measures to restrict access.

Innovation Solution

A system that determines the authorization of users in proximity to the display using sensors and identifiers, selectively blocks sensitive information from being output on the ambient display, and redirects it to a secondary device for authorized recipients, ensuring secure information dissemination while allowing intended viewers to access the content through local, controlled devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If content is displayed on a larger ambient display for better visibility, then viewing comfort is improved, but security of sensitive information deteriorates

Engineering Contradiction:
Improveviewing comfortVSAvoidinformation security
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system segments the information display by creating two separate output channels: a public display channel (ambient display) and a private display channel (mobile device). Sensitive information is routed only to the private channel while non-sensitive information appears on both channels, thus maintaining viewing comfort for non-sensitive content while protecting sensitive information security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Different quality levels of information display are applied to different locations/devices. The ambient display receives non-sensitive information with full visibility, while the mobile device receives sensitive information with restricted visibility. This local differentiation allows the system to optimize viewing comfort where appropriate while maintaining security where required.

Inventive Principle:
Principle #3Local quality

2Ease of operation

If all information is displayed on the ambient display for convenience, then ease of access is improved, but information security deteriorates

Engineering Contradiction:
Improveease of accessVSAvoidinformation security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system dynamically adjusts information distribution based on real-time authorization checks. When an unauthorized user approaches the ambient display, the system automatically redirects sensitive information to the mobile device. This dynamic response maintains ease of access for authorized users while ensuring information security when unauthorized users are detected.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The mobile device serves as an intermediary for sensitive information display. Instead of directly displaying sensitive information on the ambient display, the system uses the mobile device as an intermediate channel that provides localized, secure viewing. This intermediary approach maintains ease of access through the ambient display for non-sensitive content while ensuring security for sensitive content through the mobile device intermediary.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If sensitive information is blocked on the ambient display, then information security is improved, but viewing completeness deteriorates

Engineering Contradiction:
Improveinformation securityVSAvoidviewing completeness
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The system merges the ambient display and mobile device into a unified federated interaction system. By combining these two display channels, the system can block sensitive information on the ambient display (improving security) while simultaneously providing complete information viewing on the mobile device (maintaining viewing completeness). The merged system ensures that no information is lost, only relocated to an appropriate display channel.

Inventive Principle:
Principle #5Merging (Combining)

4Reliability

If authorization checks are implemented for display access, then information security is improved, but system complexity deteriorates

Engineering Contradiction:
Improveinformation securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system implements self-service authorization checks by automatically detecting user presence through sensors and identifiers, and autonomously determining authorization status without requiring manual intervention. The system self-manages the complex authorization logic, routing information appropriately based on detected user credentials. This self-service approach improves information security while minimizing the perceived complexity for end users.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS7673347B2Information control in federated interaction
Publication Date: 2010.03.02 SAP SE
  • US7673347B2 patent drawing
  • US7673347B2 patent drawing
  • US7673347B2 patent drawing

AI summary

Techniques are described for protecting information in a convenient and useful way. A user transmits information from a mobile device to an ambient display, so that other users may receive the information from the ambient display. A display controller detects a presence of a potentially unauthorized user relative to the ambient display, and modifies the outputting of the information at the ambient display so as to hide portions of the information that should not be seen by the potentially unauthorized user. The information, including the hidden portion, is nonetheless output, using one of a plurality of output channels of one or more secondary devices, either to the user and/or the other users. In this way, authorized users may continue to receive the information, and, moreover, may input an indication as to whether an extent of the hidden portion is sufficient to provide adequate security with regard to the information.