Reputation Database for Access Control Reliability
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current data systems lack the ability to maintain and track an individual's or organization's historical reputation and security life cycle, leading to gaps in security models and the absence of reliable mechanisms for assessing access decisions based on changing reputations.
Innovation Solution
A system and method for collecting and maintaining historical party reputation data, assessing access decisions, and making informed access control decisions based on reputation changes, utilizing a reputation modification and decision-making system with a reputation analyzer, protected asset analyzer, and risk assessor to determine access to protected assets.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional data systems and directory services are used to manage access, then basic access control is provided, but historical reputation data and security life cycle tracking are not maintained
Solution Approach 1:
The system performs preliminary actions by continuously collecting and maintaining historical reputation data about individuals and organizations before access decisions are made. The reputation database pre-stores pedigree information, security clearance history, and trustworthiness metrics so that when an access request occurs, the system can immediately evaluate the requester's historical reputation without needing to query multiple external sources at the moment of access decision.
Solution Approach 2:
The patent introduces a reputation database as an intermediary component between the access control system and the individuals being authenticated. This intermediary stores and manages historical reputation data, acting as a mediator that provides comprehensive security assessment information to the access control decision-making process, thereby preventing information loss about historical security behavior.
2Productivity
If access decisions are made based on current reputation only, then quick access control is achieved, but changes in reputation over time are not assessed
Solution Approach 1:
The system implements feedback mechanisms by continuously monitoring changes in an individual's reputation over time. When reputation data changes (such as security clearance changes, new certifications, or security incidents), the system receives feedback and automatically reassesses access decisions. This ensures that access control remains reliable by incorporating the most current reputation information while maintaining efficient decision-making through the pre-established reputation database.
Solution Approach 2:
The access control system transitions from a static evaluation based on fixed credentials to a dynamic evaluation that continuously adapts to changing reputation data. The system dynamically updates access decisions based on temporal changes in an individual's security clearance, trustworthiness metrics, and pedigree information, allowing access control reliability to evolve with the individual's changing reputation while maintaining operational efficiency.
3Measurement precision
If comprehensive historical data is collected and maintained, then accurate reputation assessment is possible, but system complexity increases
Solution Approach 1:
The patent merges multiple data sources and evaluation criteria into a single integrated reputation database. Instead of maintaining separate systems for security clearance, certification history, pedigree information, and trustworthiness metrics, the system combines these diverse data elements into one unified database structure. This consolidation enables accurate reputation assessment by providing comprehensive historical data while reducing system complexity by eliminating the need for multiple separate data management systems.
4Adaptability or versatility
If security clearance is granted temporarily without historical tracking, then entry flexibility is maintained, but security life cycle gaps occur when individuals leave and rejoin
Solution Approach 1:
The system ensures continuity of useful action by maintaining uninterrupted tracking of an individual's security life cycle through the reputation database. Even when individuals leave the enterprise temporarily or change roles, their historical security clearance information, pedigree data, and reputation metrics remain continuously stored and updated. When they rejoin or request access, the system can immediately resume accurate security assessment based on their complete historical record, eliminating security life cycle gaps while maintaining access flexibility through rapid re-evaluation.
Data Source
AI summary
A system and method for creates, maintains and monitors individuals, organizations and artifacts relating to the same over time with respect to pedigree and reputation, security and reliability. One aspect of the present invention provides for a method and a system for collecting and maintaining historical party reputation data. Another aspect of the present invention provides for a method and a system for assessing an access decision to the historical party reputation data to a person after the person's reputation has changed.


