Privacy Protecting Transaction Engine for Cloud Networks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Cloud provider networks face challenges in protecting user privacy, particularly in handling sensitive information such as IP addresses and user agent headers, as existing solutions often require direct access to this data for targeted advertising and fraud detection, compromising user anonymity.
Innovation Solution
A privacy protecting transaction engine is implemented within the cloud provider network to scan incoming data for private information, either deleting it, generating a secret identification key for anonymization, timing out the key, or passing it through, ensuring that sensitive data is not shared with customer clouds, thereby maintaining user anonymity.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If direct access to private information (IP addresses, user agent headers) is allowed for targeted advertising and fraud detection, then operational effectiveness is improved, but user privacy protection deteriorates
Solution Approach 1:
The patent introduces a privacy-protecting transaction engine as an intermediary component between incoming requests and customer clouds. This engine scans requests for private information, redacts sensitive data before forwarding to customer clouds, and maintains separate fraud detection capabilities. The intermediary preserves fraud detection reliability while preventing direct exposure of user privacy to customer clouds, thus resolving the technical contradiction.
2Object-affected harmful factors
If private information is redacted and anonymized before processing, then user privacy protection is improved, but targeted advertising effectiveness deteriorates
Solution Approach 1:
The patent segments the processing system into distinct functional components: a privacy-protecting transaction engine that handles redaction and anonymization, and separate fraud detection and targeted advertising modules that receive anonymized data. This segmentation allows each module to operate with appropriate data granularity - the transaction engine protects privacy while downstream modules maintain effectiveness through anonymized identifiers and patterns, resolving the contradiction between privacy protection and advertising effectiveness.
3Object-affected harmful factors
If a privacy protecting transaction engine is implemented to scan and redact private information, then user privacy protection is improved, but system complexity increases
Solution Approach 1:
The privacy-protecting transaction engine is designed as a universal, multi-functional component that performs multiple operations: scanning for private information, redacting sensitive data, generating anonymized identifiers, and coordinating with fraud detection and advertising modules. By consolidating these functions into a single universal engine rather than separate specialized components, the patent reduces overall system complexity while maintaining comprehensive privacy protection.
Data Source
AI summary
A privacy protecting transaction engine for a cloud provider network is described. According to some embodiments, a computer-implemented method includes receiving a request from a customer of a cloud provider network to create a customer cloud in the cloud provider network, generating the customer cloud in the cloud provider network, receiving a first request at the cloud provider network for the customer cloud that includes private information of an end customer of the customer of the cloud provider network, removing the private information from the first request by a privacy protecting transaction engine of the cloud provider network to generate a second request, and sending the second request to the customer cloud for servicing.


