Technical Module Functional Rights for Secure Control Integration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The current methods for integrating technical modules into engineering systems lack a reliable and secure way to assign functional rights, leading to potential security risks due to inconsistent and non-restrictive access controls, especially when critical system parts are involved.

Innovation Solution

The method involves storing functional rights within the technical module before integration, with a security check determining the minimum necessary rights based on user roles, ensuring permanent assignment and authentication to prevent unauthorized access and ensure secure operation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If functional rights are assigned hastily and without optimal security considerations to enable quick module integration, then integration speed is improved, but IT security deteriorates due to insufficient access control restrictions

Engineering Contradiction:
Improveintegration speedVSAvoidIT security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies preliminary action by determining the minimum scope of functional rights through a security audit before the module is integrated into the technical system. The security audit is performed in advance to establish appropriate access rights based on predefined user roles, ensuring that security considerations are addressed before integration rather than during or after the process. This resolves the contradiction by preparing security configurations in advance, enabling both quick integration and maintained security standards.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If functional rights are assigned restrictively to enhance IT security, then security is improved, but integration complexity increases due to the need for detailed security audits and role definitions

Engineering Contradiction:
ImproveIT securityVSAvoidintegration complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies universality by implementing a standardized security audit procedure and predefined user roles that can be universally applied across different modules and integration scenarios. Instead of creating custom security configurations for each module, the system uses a universal framework of security audits and role-based access control that works consistently across all integrations. This reduces integration complexity while maintaining restrictive security requirements.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent applies parameter changes by dynamically determining the scope of functional rights based on the results of the security audit and predefined user roles. Rather than using fixed, overly restrictive rights for all modules, the system adjusts the functional rights parameters according to the specific requirements identified in the security audit. This allows restrictive security to be implemented in a tailored manner that reduces unnecessary complexity.

Inventive Principle:
Principle #35Parameter changes

3Adaptability or versatility

If different functional rights are assigned to the same module in different projects to meet specific project requirements, then adaptability is improved, but security consistency deteriorates due to lack of standardized access control

Engineering Contradiction:
Improveproject-specific adaptabilityVSAvoidsecurity consistency
Core Design Contradiction:
Adaptability or versatilityVSStability of the object's composition

Solution Approach 1:

The patent applies local quality by allowing functional rights to be specifically tailored to local project requirements through the security audit process and role-based assignments. Each module integration can have its functional rights customized according to the specific needs of that project context, while still following the overall standardized security framework. This enables project-specific adaptability while maintaining security consistency through the universal audit and role definition process.

Inventive Principle:
Principle #3Local quality

Data Source

PatentEP3657285B1Integration of technical modules in a hierarchically higher control level
Publication Date: 2023.05.10 SIEMENS AG

AI summary

A technical module for a technical system is proposed, comprising at least one technical function and designed for integration into a higher-level control system. This technical module is characterized by the fact that it contains functional rights pertaining to at least one technical function.