Medical Apparatus Definition File Update Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing medical information systems face security risks due to the ability of external servers to freely update definition files intended for authorized servers, potentially leading to unauthorized modifications.

Innovation Solution

A medical information system configuration where the medical apparatus includes a client-side definition file storage unit and an updating unit that only allows authorized servers to update the definition file by acquiring and updating it from the server-side definition file, while rejecting any connection requests from external servers, ensuring secure and controlled data uploading.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the server side is permitted to freely update the definition file, then the authorized server can update the definition file, but external servers different from the authorized server can also rewrite the definition file without permission

Engineering Contradiction:
Improvedefinition file update capabilityVSAvoidunauthorized modification risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a client-side definition file storage unit as an intermediary between the server and the medical apparatus. This intermediary stores a local copy of the definition file and uses it to verify server identity and control uploading modes, preventing unauthorized servers from modifying the definition file while allowing authorized servers to update it.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements preliminary action by storing the definition file locally in the medical apparatus before actual data uploading occurs. This pre-stored definition file serves as a reference to verify server authorization and control the uploading process, ensuring that unauthorized modifications are prevented before they can affect data security.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the medical apparatus holds a definition file that defines a mode of uploading, then the uploading process can be controlled, but the server side cannot freely update the definition file

Engineering Contradiction:
Improveuploading mode controlVSAvoiddefinition file update flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamics by making the definition file update mechanism conditional rather than static. The server can update the definition file, but only when the medical apparatus initiates a connection request. This dynamic control mechanism balances reliability (controlled updates) with adaptability (flexible updates when needed).

Inventive Principle:
Principle #15Dynamics

3Ease of operation

If the communication control unit accepts connection requests from the server, then the server can push the definition file, but security is compromised as external servers can also connect

Engineering Contradiction:
Improvedefinition file distributionVSAvoidsecurity vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent applies inversion by reversing the traditional client-server interaction model. Instead of the server pushing the definition file to the medical apparatus, the medical apparatus initiates connection requests to the server to fetch the definition file. This inversion ensures that only authorized servers can respond to these requests, eliminating security vulnerabilities while maintaining ease of operation.

Inventive Principle:
Principle #13The other way round (Inversion)

Data Source

PatentEP3489965B1Medical information system, medical apparatus, method, and program
Publication Date: 2021.05.26 TOYOTA JIDOSHA KK
  • EP3489965B1 patent drawingFigure 1
  • EP3489965B1 patent drawingFigure 2
  • EP3489965B1 patent drawingFigure 3

AI summary

The communication control unit of the external communication apparatus requests a communication connection to the server. When a communication connection with the server is established, the communication control unit acquires the server side definition file from the server. The updating unit of the external communication apparatus updates the client side definition file with the server side definition file acquired by the communication control unit. The communication control unit of the external communication apparatus is configured to upload the medical apparatus side data to the server based on the client side definition file. Further, the communication control unit of the external communication apparatus is configured to reject a connection request from the server.