Gateway Access Rights Deduction for Smart Space Networks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing network access management systems require manual entry of access rights for devices and users across multiple networks, leading to inefficiencies and inconsistencies in granting access rights to users across different Smart Spaces owned by the same entity.
Innovation Solution
A method and system where access rights granted to a device in one network are stored in a centralized database, allowing gateways of other networks owned by the same entity to deduce and apply similar access rights to the same device or other devices registered to the same user, based on asset categorization and previous access profiles.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If manual entry of access rights is used for each device in each network, then access control precision can be maintained, but the complexity of operation and time consumption increase significantly
Solution Approach 1:
The system performs preliminary action by automatically generating access rights profiles for devices based on their device type and characteristics before the devices actually need to access networks. The gateway pre-configures access rights by matching device types from the device registry with appropriate access profiles, eliminating the need for manual configuration when devices join networks.
Solution Approach 2:
The system uses copying by creating access rights profiles that can be replicated across multiple networks. Once an access rights profile is established for a device type in one network, it can be copied and applied to similar devices in other networks owned by the same entity, ensuring consistency and reducing repetitive manual configuration work.
2Stability of the object's composition
If centralized database is used to store access rights profiles, then access management consistency across networks is improved, but the system complexity increases
Solution Approach 1:
The gateway device performs multiple functions: it acts as a network access point, maintains a local device registry, communicates with the centralized database, and automatically generates access rights profiles. This multi-functionality reduces the need for separate dedicated access management servers, thereby reducing overall system complexity while maintaining centralized control and consistency across networks.
3Productivity
If access rights are automatically deduced based on device type, then operational efficiency is improved, but measurement precision of access control may be reduced
Solution Approach 1:
The system applies local quality by tailoring access rights profiles to specific device types and their characteristics. Instead of using a one-size-fits-all approach, the gateway matches each device with an access rights profile that is specifically designed for its type (e.g., smartphone, laptop, IoT device), ensuring that each device receives appropriately customized access rights rather than generic permissions.
Data Source
AI summary
Methods, apparatus, and systems for automatically determining the access rights to be granted to a telecommunication device to the assets in a first network as a function of the access rights previously granted to that same device in another network.


