Librarian Service Automates Local Cloud Credential Generation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing cloud storage systems require cumbersome and time-consuming processes for users to share restricted content with others, involving manual credential generation and administration, which is inefficient and resource-intensive.

Innovation Solution

A system where a librarian service manages local network storage, allowing users to create a local cloud by selecting trusted devices, generating credentials, and providing links for seamless access to shared content, reducing the need for multiple steps and administrative intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If cloud storage systems use manual credential generation and administration for sharing restricted content, then access control security is maintained, but the process becomes cumbersome and time-consuming

Engineering Contradiction:
Improveaccess control securityVSAvoidcontent sharing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system enables users to autonomously generate and manage access credentials for sharing restricted content without requiring administrator intervention. Users can create shareable links and manage permissions independently, eliminating the time-consuming manual credential administration process while maintaining security through controlled access mechanisms.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system pre-generates access credentials and shareable links in advance, allowing users to quickly share restricted content without waiting for administrator approval or manual credential creation. This preliminary preparation of access mechanisms significantly reduces the time required for content sharing while maintaining security through pre-configured permission structures.

Inventive Principle:
Principle #10Preliminary action

2Extent of automation

If cloud storage systems require administrator intervention for credential generation, then centralized control is maintained, but administrative resources and time are consumed

Engineering Contradiction:
Improvecredential generation automationVSAvoidadministrative efficiency
Core Design Contradiction:
Extent of automationVSProductivity

Solution Approach 1:

The system transfers credential generation capabilities from administrators to end users, allowing automatic credential creation and management. This self-service approach eliminates the need for administrator intervention in routine credential generation, freeing administrative resources while maintaining centralized control through system-enforced security policies and permission structures.

Inventive Principle:
Principle #25Self-service

3Reliability

If users manually manage credentials for accessing shared content, then access security is controlled, but user interaction and complexity increase

Engineering Contradiction:
Improveaccess securityVSAvoidcontent access simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system uses shareable links as simplified copies of complex credential structures. Instead of requiring users to manually manage intricate credential sets, the system generates accessible link representations that maintain security through embedded permission data while dramatically simplifying the user interaction required to access shared restricted content.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS11652821B2One step security system in a network storage system
Publication Date: 2023.05.16 APPLE INC
  • US11652821B2 patent drawing
  • US11652821B2 patent drawing
  • US11652821B2 patent drawing

AI summary

This is directed to providing access to content stored on a local cloud. In particular, a device can direct a librarian service overseeing the operation of a local cloud to provide another device with access to content stored on the local cloud. The librarian service can generate credentials for the other device, and provide the credentials to the other device. Using the credentials, the other device can connect directly to the local cloud and access the content. In addition, the local cloud can validate the credentials of the other before providing access to the content. The credentials can include, for example, a key to install or load on the device. The librarian may not require, however, the user to create credentials or register with the librarian before being permitted to access the content on the local cloud.