Managing Unit for Personal Network Data Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for managing access to data in personal networks lack security and are not suitable for peer-to-peer connections, as they often require manual entry of user identity, are limited to two-device file sharing, or focus on apparatus access rather than data access management.

Innovation Solution

A method that uses a unique identifier, such as a subscriber identification module (SIM) number, to generate an indication of the requesting party and transmit a permission request to the owner's mobile terminal, allowing secure access management in personal networks, including peer-to-peer networks and virtual private networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual entry of user identity is used during subscription, then user information can be collected, but the information can be tampered with and security is reduced

Engineering Contradiction:
ImprovesecurityVSAvoidmanual entry requirement
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system automatically extracts subscriber identification module number information from the access request without requiring manual entry or verification. The managing unit autonomously processes the identification information and generates indications for permission requests, eliminating the need for manual user input while maintaining security through automated authentication.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical information entry with automated electronic extraction of identification information from the access request. The managing unit automatically reads and processes the subscriber identification module number, substituting the manual verification process with an automated electronic system that enhances security and reliability.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Adaptability or versatility

If permission inquiry is sent to mobile terminal for file sharing, then access control is implemented, but the system is limited to two-device file sharing only

Engineering Contradiction:
Improveaccess control capabilityVSAvoidconnection limitation
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The managing unit serves multiple functions: it manages access control for multiple devices, extracts identification information from various access requests, generates indications for permission requests, and communicates with both requesting devices and data owners. This multi-functional approach enables the system to handle diverse access scenarios beyond simple two-device file sharing.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The managing unit acts as an intermediary between requesting devices and data owners, coordinating access control for multiple devices. It receives access requests, extracts identification information, generates appropriate indications, and communicates permission requests to data owners, enabling complex multi-device access management without requiring direct peer-to-peer communication between all devices.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If access control focuses on apparatus access rather than data access management, then existing network monitoring is simplified, but data access management for personal networks cannot be effectively managed

Engineering Contradiction:
Improveaccess control simplicityVSAvoiddata access management capability
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The system dynamically adapts its behavior based on the type of access request received. When a data access request is detected, the managing unit extracts subscriber identification module number information and generates specific indications for permission requests tailored to data access control. This dynamic response enables effective data access management while maintaining operational simplicity through automated processing.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent changes the parameter of information extraction from generic apparatus identification to specific subscriber identification module number extraction. This parameter change enables the system to distinguish between different types of access requests and generate appropriate permission indications, thereby achieving effective data access management while maintaining ease of operation through automated processing.

Inventive Principle:
Principle #35Parameter changes

4Reliability

If unique identifier extraction is automated from access request, then security is enhanced and manual tampering is prevented, but the system complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidinformation extraction process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The managing unit autonomously extracts and processes subscriber identification module number information from access requests without requiring external intervention. The system self-services the identification process, automatically generating indications and managing permission requests, which enhances security while keeping the complexity management-contained within the managing unit itself.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent extracts the critical identification information (subscriber identification module number) directly from the access request at the managing unit. By taking out this key information for processing, the system enhances security through automated verification while managing complexity by processing only the essential identification data rather than entire request payloads.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentEP2096828B1Method and management unit for managing access to data on a personal network
Publication Date: 2012.08.22 VODAFONE HOLDING GMBH
  • EP2096828B1 patent drawingFigure 1
  • EP2096828B1 patent drawingFigure 2

AI summary

The present invention relates to a method for managing access to data on a personal network (6), wherein an access request is received at a managing unit (3) for the personal network (6) from a requesting device (11, 51) of a requesting party (User A). The method is characterized in that the managing unit (3) extracts identification information (SIM) of the requesting party (User A) from the access request, generates an indication of the requesting party (User A) and transmits a permission request including the indication of the requesting party (User A) to a mobile terminal (52) associated to the owner (User B) of the data (2) which is to be accessed. The invention further relates to a management unit for use in the inventive method.