Relay Apparatus Centralizes Access Authority Distribution

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face complexity and inconvenience in granting access authority to multiple communication devices, as they need to perform user authentication and authorization operations separately for each device using a web browser, especially when the same access token is distributed across devices.

Innovation Solution

A relay apparatus that detects requests for access authority, sends authorization requests to a server, receives and saves responses, and generates and sends authorization relay responses to communication devices, allowing for centralized authorization management without the need for repeated user interactions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the authorization server distributes the same access token to multiple communication apparatuses using the conventional technique, then the access authority can be granted to multiple devices, but the user must carry out user authentication and operations for granting access authority the same number of times as there are communication apparatuses, making the operations complicated

Engineering Contradiction:
Improveaccess authority distributionVSAvoiduser authentication operations
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The relay apparatus acts as an intermediary between multiple communication apparatuses and the authorization server. It receives authorization requests from multiple devices, obtains a single authorization response from the server, and distributes this response to all requesting devices. This mediator approach eliminates the need for users to perform repeated authentication operations for each device while still granting access authority to multiple apparatuses.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent combines multiple authorization requests from different communication apparatuses into a single authorization transaction with the server. Instead of processing each device's authorization request separately, the relay apparatus merges these requests and obtains one unified authorization response that serves all devices, thereby reducing the number of user operations required.

Inventive Principle:
Principle #5Merging (Combining)

2Reliability

If the user carries out user authentication and operations for granting access authority for each communication apparatus separately, then the access authority is securely granted to each device, but the operations become complicated and time-consuming

Engineering Contradiction:
Improveaccess authority grantingVSAvoidauthorization process time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The relay apparatus performs preliminary actions by pre-obtaining the authorization response from the server before individual communication apparatuses need to access resources. Once the authorization is obtained in advance, it can be quickly distributed to multiple devices without requiring repeated authentication processes, thereby reducing the time loss while maintaining secure access authority granting.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The relay apparatus serves as a mediator that handles the time-consuming authentication and authorization operations centrally. By intercepting and processing authorization requests before they reach individual devices, it eliminates repeated authentication delays while ensuring each device receives proper access authority through the saved authorization response.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If the same access token is distributed to multiple communication apparatuses, then resource sharing is enabled across devices, but the user must perform repeated authorization operations which increases operational complexity

Engineering Contradiction:
Improvemulti-device resource accessVSAvoidauthorization process complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The relay apparatus creates and distributes copies of the single authorization response to multiple communication apparatuses. Instead of requiring each device to undergo the complex authorization process independently, the system generates one authorization response and distributes copies to all requesting devices, enabling multi-device resource access while reducing authorization process complexity.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The relay apparatus provides a universal authorization service that handles requests from multiple different communication apparatuses through a single standardized process. This multi-functional approach allows the system to serve multiple devices with diverse requirements through one unified authorization mechanism, reducing overall process complexity while maintaining adaptability.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9554278B2Relay apparatus, relay method, relay system, and non-transitory computer-readable storage medium
Publication Date: 2017.01.24 CANON KK
  • US9554278B2 patent drawing
  • US9554278B2 patent drawing
  • US9554278B2 patent drawing

AI summary

A relay apparatus detects a request, sent from a communication apparatus, to grant an access authority for a desired resource, sends, in the case where the request to grant the access authority has been detected, an authorization request requesting the granting of the access authority to a server, receives an authorization response, which is a response to the authorization request, from the server, saves the authorization response, generates an authorization relay response based on the authorization response, and sends the authorization relay response to the communication apparatus, wherein in the case where a request to grant the access authority sent from another communication apparatus different from the communication apparatus has been detected, the relay apparatus sends the authorization relay response in response to the request to the other communication apparatus based on the saved authorization response.