Centralized Privacy Server for Mobile Terminal Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for controlling access to user information in mobile terminals are inconsistent due to separate access control systems in both the network and the terminal, leading to duplicate entries, lack of uniformity in service quality, and potential liability issues for operators.

Innovation Solution

A centralized system where a network-based privacy server stores access conditions, and a terminal-based security module receives and manages these conditions, ensuring uniform access control and reducing network overload by caching access permissions for subsequent requests.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If separate access control systems are implemented in both the network and the terminal, then access control functionality is provided, but duplicate entries of access conditions occur and service uniformity deteriorates

Engineering Contradiction:
Improveaccess control functionalityVSAvoidduplicate entries of access conditions
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The invention extracts the access conditions from the terminal's local database and centralizes them in the network's privacy server. The terminal retains only a security module that references the centralized conditions, eliminating duplicate storage while maintaining access control functionality.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The invention merges the access control functionality into a single centralized system in the network, combining the privacy server and access conditions into one authoritative source. This consolidation eliminates the need for separate local copies in terminals, ensuring service uniformity across different manufacturers.

Inventive Principle:
Principle #5Merging (Combining)

2Reliability

If separate access control systems are implemented in both the network and the terminal, then access control is provided, but service quality uniformity deteriorates

Engineering Contradiction:
Improveaccess controlVSAvoidservice quality uniformity
Core Design Contradiction:
ReliabilityVSStability of the object's composition

Solution Approach 1:

The invention creates a universal access control system in the network that serves all terminals regardless of manufacturer. The centralized privacy server provides multi-functional access control for different information types (location, contacts, availability) across diverse terminal implementations, ensuring consistent service quality.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If access conditions are stored in both network and terminal, then access control is maintained, but network load increases due to lack of caching

Engineering Contradiction:
Improveaccess control maintenanceVSAvoidnetwork load
Core Design Contradiction:
ReliabilityVSLoss of energy

Solution Approach 1:

The invention performs preliminary action by having the terminal's security module cache or reference the access conditions from the network before actual access requests occur. This preliminary retrieval reduces subsequent network traffic for access control operations, lowering overall network load while maintaining reliable access control.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8316419B2System for controlled access to information contained in a terminal
Publication Date: 2012.11.20 ORANGE SA
  • US8316419B2 patent drawing
  • US8316419B2 patent drawing

AI summary

A system for controlled access to information contained in a terminal (10) of a user of a telecommunications network (R). The system includes, in the terminal (10), an information server (11) adapted to supply said information; and in the network (R), a privacy server (20) in which conditions for access to said information defined by the user in said privacy server (20) are stored. The system further comprises a security module (12) in the terminal (10) adapted to receive said access conditions from the privacy server (20) at the time of a request to access said information. Application to mobile telephone networks.