IoT Data Protection via Centralized Storage and Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users of IoT devices lack control and visibility over their personal data, which is often collected and stored by manufacturers without clear user consent or control, leading to potential misuse and loss of data overview.

Innovation Solution

A method where IoT device data is recorded and stored in a central data storage within an IP network, with the IoT device authenticating using an identification number and receiving a memory area for data storage, allowing users to access and manage their data through a communicative connection, including the use of a SIM card for authentication and temporary access keys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If IoT device data is stored directly in manufacturer's cloud application, then data processing and evaluation can be performed, but users lose control and visibility over their personal data

Engineering Contradiction:
Improveuser control over dataVSAvoiddata storage architecture
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent introduces a user terminal as an intermediary between the IoT device and the cloud application. The user terminal receives data from the IoT device, stores it locally, and selectively forwards it to the cloud application. This intermediary structure gives users direct control over their data while maintaining the ability to utilize cloud-based processing and evaluation services when desired.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of information

If data is distributed across various Internet services, then data can be stored and processed, but users cannot obtain an overview of their personal data

Engineering Contradiction:
Improvedata overview visibilityVSAvoiddata processing efficiency
Core Design Contradiction:
Loss of informationVSProductivity

Solution Approach 1:

The patent merges data from multiple IoT devices and sources into a single user terminal storage location. This consolidation provides users with a comprehensive overview of all their personal data in one place, while still allowing selective transmission to various cloud services for processing, thus maintaining data processing efficiency without sacrificing visibility.

Inventive Principle:
Principle #5Merging (Combining)

3Adaptability or versatility

If manufacturer controls all data storage and processing, then isolated solutions can be formed, but users cannot access or manage their data independently

Engineering Contradiction:
Improvedata access flexibilityVSAvoiddata security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the data storage and control architecture into multiple independent components: IoT device, user terminal, and cloud application. Each component has specific responsibilities and can operate independently. The user terminal acts as the user's secure data hub, providing both local security and the flexibility to selectively share data with cloud services, thus achieving both security and adaptability.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP3793228B1Method and assembly for protecting IoT device data for a user during the use of one or more IoT devices
Publication Date: 2022.08.10 DEUTSCHE TELEKOM AG
  • EP3793228B1 patent drawingFigure 1
  • EP3793228B1 patent drawingFigure 2

AI summary

The invention relates to a method for protecting IoT device data of a user (120), in which the IoT device data of at least one IoT device (141, 142, 151, 152, 153) of at least one first provider is captured and stored in a central data storage device (100) provided by a mobile communication network implemented as a transmission network, wherein the at least one IoT device (141, 142, 151, 152, 153) provides an identification number to the central data storage device (100) for authentication of the at least one IoT device and thus for authorization to store the IoT device data, and the central data storage device (100) checks the identification number and, after verification of the identification number, allocates a storage area (101-1, 101-2, 102-1, 102-2, 102-3) for storing the IoT device data. The present invention further relates to a corresponding arrangement.