Nested Party Authorization Data Model for Service Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current authorization models struggle to manage complex nested party relationships in service provider ecosystems, leading to difficulties in authorizing indirectly related parties and ensuring secure access to services across multiple levels of nested business models.
Innovation Solution
A P2P.2P authorization model is introduced, utilizing a data model that describes nested party relationships to manage computer-based authorizations, where the authorization of a third party is nested within and dependent upon the authorization of a second party, which is itself authorized by a first party, enabling secure access and communication between computers.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If traditional authorization models are used to manage service access, then simple direct party relationships can be handled, but complex nested party relationships cannot be properly authorized
Solution Approach 1:
The patent implements nested party relationships by allowing a party to be both a consumer and provider in hierarchical structures. The data model represents nested relationships where a third party's authorization is nested within the second party's authorization, which is itself nested within the first party's authorization. This enables multi-level service access authorization while maintaining a unified authorization framework.
2Ease of operation
If authorization is granted to indirectly related parties, then service accessibility is improved, but authorization control becomes difficult
Solution Approach 1:
The patent segments authorization control into distinct hierarchical levels, where each party relationship is evaluated independently. The data model separates third party authorizations from second party authorizations, allowing granular control over indirect access. This segmentation enables service accessibility for indirectly related parties while maintaining reliable authorization control through structured validation at each level.
Solution Approach 2:
The patent introduces the data model as an intermediary layer between service providers and indirectly related parties. This intermediary structure validates authorization chains by checking whether third parties are properly authorized through second parties, who are themselves authorized by first parties. The intermediary data model ensures reliable authorization control while enabling service accessibility.
3Ease of manufacture
If a unified authorization model is used, then implementation simplicity is maintained, but handling of multi-level nested relationships becomes problematic
Solution Approach 1:
The patent creates a universal data model that handles both direct and nested party relationships through the same authorization framework. The model uses consistent data structures and validation logic regardless of relationship depth, allowing the system to handle multi-level nested relationships without requiring separate authorization mechanisms. This universality maintains implementation simplicity while providing adaptability to complex relationship structures.
Data Source
AI summary
A method for using a data model to enable authorization and communication between computers including a first computer configured to provide a service, a second computer in communication with the first computer, and a third computer in communication with one or both of the first computer and the second computer. The method includes storing the data model, wherein the data model describes nested party relationships among a first party having access to the first computer, a second party having access to the second computer, and a third party having access to the third computer, wherein the data model describes the third party as a third set of attributes specifying authorizations of the third party with respect to only the second party, the third set of attributes being nested within and dependent upon a second set of attributes specifying authorizations of the second party with respect to the first party.


