Remote Device Control System with Multi-Level Approval Workflow

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for remotely controlling devices lack adequate oversight, which can lead to critical errors or safety issues, especially as more devices are connected through IoT, necessitating a method to ensure secure and safe command execution.

Innovation Solution

A control system and method that involve sending commands signed by an operator's signature to a server for authentication, assigning criticality and authorization levels, and requiring approval from remote control users based on these levels before executing commands, thereby ensuring only approved commands are carried out.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a single operator can remotely control a device without oversight, then the ease of operation is improved, but the reliability and safety deteriorate due to lack of authorization control

Engineering Contradiction:
Improveease of remote control operationVSAvoidsafety of command execution
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary authorization verification before executing remote commands. The server checks whether the operator is authorized to issue the specific command before allowing execution, preventing unauthorized or unsafe operations from being carried out

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The server acts as an intermediary between the remote operator and the device. It receives commands from operators, verifies authorization levels, and only forwards approved commands to the device, providing a security layer that maintains operational ease while ensuring reliability

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If remote control operations are allowed without approval workflow, then the productivity is improved, but the security deteriorates due to potential inadvertent mistakes or insider attacks

Engineering Contradiction:
Improvespeed of remote control executionVSAvoidsecurity risks from mistakes or attacks
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary security checks and authorization verification before commands are executed. Critical commands require pre-approval from authorized users, ensuring that potentially harmful operations are reviewed and authorized before execution, preventing security incidents while allowing routine operations to proceed efficiently

Inventive Principle:
Principle #10Preliminary action

3Productivity

If all commands are executed immediately without verification, then the productivity is improved, but the reliability deteriorates due to lack of command validation

Engineering Contradiction:
Improveexecution speed of commandsVSAvoidaccuracy of command execution
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The server performs preliminary validation of commands before execution, checking whether the operator has the necessary authorization level and whether the command should be approved. This preliminary check ensures command accuracy without significantly impacting execution speed for authorized operations

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11159535B2Methods for controlling a device and control system
Publication Date: 2021.10.26 ABB (SCHWEIZ) AG
  • US11159535B2 patent drawing
  • US11159535B2 patent drawing
  • US11159535B2 patent drawing

AI summary

A method for controlling a device includes: sending a command signed by an operator's signature to a server; verifying, in the server, that the operator is authenticated to transmit the command; assigning, in the server, a criticality level and an authorization level to the command; depending on the criticality level and the authorization level, sending an approval request relating to the command to at least one control user; approving or denying the approval request by at least a subset of the at least one control user; sending the denied or approved approval request back to the server; determining, in the server, whether the command was approved by sufficiently many control users based on the criticality level and the authorization level; and sending the command to the device for being carried out by the device in case the command was approved by sufficiently many control users, wherein at last one of the at least one control user and the operator is remote from each other.