Distributed Ledger Data Segmentation and Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In distributed trust computing networks like blockchain, there is a need to control access to data files on a per-segment basis, ensuring that authorized entities can only access the specific data entries or segments they need to know, while maintaining data security and authenticity.
Innovation Solution
The system categorizes data file content and stores it in category-specific blocks within a distributed ledger, generating access credentials that allow entities to access only authorized portions of the data, using pointers to locate and retrieve specific blocks and segments, and compiles the data into a redacted file format for authorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If all data files are stored in a distributed trust computing network for authentication and verification, then data security and authenticity are enhanced, but access control becomes complex when different entities need different portions of the data
Solution Approach 1:
The patent divides data files into separate data entries or segments, each stored in the distributed ledger with individual access controls. This allows different entities to access only the specific segments they need, simplifying access control while maintaining data authenticity through the distributed ledger structure.
2Adaptability or versatility
If a data file holder allows multiple entities to access different portions of data, then data utility is improved, but the risk of unauthorized access to confidential information increases
Solution Approach 1:
The patent implements differentiated access control where each data segment has specific access permissions assigned to particular entities. This ensures that each entity can only access the specific portions of data they are authorized to view, improving data utility while preventing unauthorized access to confidential information through the cryptographic enforcement of access rights.
3Measurement precision
If granular access control is implemented on a per-data-entry basis, then access precision is improved, but system complexity and overhead increase
Solution Approach 1:
The patent leverages the inherent cryptographic and consensus mechanisms of the distributed trust computing network to automatically enforce access control policies. The system self-manages authentication and authorization through digital signatures and smart contracts, reducing the need for complex external access control infrastructure while maintaining precise per-data-entry access control.
Data Source
AI summary
Systems, computer program products, and methods are provided for categorizing data entries or segments from data files and storing the categorized data within category-specific blocks of a distributed ledger within a distributed trust computing network. Access credentials are generated that link/point to the those category-specific blocks containing data entries/segments that the credential holder is authorized to access. As such, the present invention insures that authorized entities (i.e., credential holders) that are accessing the distributed trust network for the purpose of verifying/authenticating data contained therein only have access to that portion/segment of the data file (e.g., specific data entries or the like) that they are authorized to access. In other words, the present invention, limits the authorized entity to only accessing data from the data file on a need-to-know basis.


