Query Processing for Secure Group Responses

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In public safety communication systems, electronic digital assistants struggle to ensure that sensitive or confidential data is not received or played back by unauthorized devices within a communication group, even when responding to queries that require group responses.

Innovation Solution

An electronic computing device processes queries and modifies responses to ensure that only authorized devices within a communication group receive the information, either by generating a second response with restricted data removed or encoded, or by altering the output action to prevent unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If the system provides group responses to all communication devices in a communication group, then information sharing efficiency is improved, but data security deteriorates due to unauthorized devices potentially receiving sensitive information

Engineering Contradiction:
Improveinformation sharing efficiencyVSAvoiddata security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system applies different response strategies to different devices within the same communication group based on their authorization status. Authorized devices receive complete group responses with all information, while unauthorized devices receive modified responses with sensitive data removed or encoded. This local differentiation resolves the contradiction by allowing efficient information sharing with authorized devices while maintaining data security against unauthorized devices.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The electronic computing device acts as an intermediary between the query source and communication devices. It intercepts group responses, determines device authorization status, and modifies responses before delivery. This intermediary function enables the system to balance information sharing efficiency with data security by controlling what information reaches which devices.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If the system modifies group responses to restrict access to sensitive data, then data security is improved, but device complexity increases due to additional permission checking and response modification logic

Engineering Contradiction:
Improvedata securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system includes a permission checking module that automatically determines whether communication devices are authorized to receive specific information without requiring manual intervention. The system self-manages the complexity of permission verification and response modification, reducing the perceived complexity for users while maintaining robust security controls.

Inventive Principle:
Principle #25Self-service

3Reliability

If the system checks permission for each communication device before delivering responses, then data security is improved, but processing time increases due to additional verification steps

Engineering Contradiction:
Improvedata securityVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs permission checking as part of the response delivery process, determining device authorization status before modifying and sending responses. By integrating permission verification into the existing response workflow rather than adding separate verification steps, the system minimizes additional processing time while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP3907971A1Method and device for processing a query
Publication Date: 2021.11.10 MOTOROLA SOLUTIONS INC
  • EP3907971A1 patent drawingFigure 1
  • EP3907971A1 patent drawingFigure 2
  • EP3907971A1 patent drawingFigure 3

AI summary

A process and device for processing a query includes receiving, at an electronic computing device, a query for providing a response at a first communication device. The process further includes determining that the response to the query is to be provided as a group response to communication devices in the first communication group, determining that the query includes a restricted data portion, determining whether the first electronic computing device has permission to process the restricted data portion included in the query; responsive to determining that the first electronic computing device does not have permission to process the restricted data portion included in the query, identifying a second electronic computing device that has permission to process the restricted data portion included in the query; and forwarding the query from the first electronic computing device to the second electronic computing device and further causing the second electronic computing device to process the query and generate a group response to be provided to at least one of the communication devices in the first communication group..