Secure Data Processing Server with Participant Key Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The challenge lies in securely storing and processing raw data from multiple sources while ensuring data owners maintain control over their data, as existing methods fail to provide adequate security and control over data usage and distribution.

Innovation Solution

A system comprising a server with volatile memory and external non-volatile memory, where each data source generates a unique participant key for secure data transmission and encryption, ensuring that only the data owner can decrypt and control the use of their data, with no permanent storage on the server and secure key management through a keychain server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If raw data is exchanged with third parties for combined analysis, then data analysis potential is improved, but data security and owner control deteriorate

Engineering Contradiction:
Improvedata analysis potentialVSAvoiddata security and owner control
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system segments data access rights by implementing participant keys specific to each data source. Each data source receives only the segments of processed data that pertain to its own contributions, preventing exposure to other participants' raw data while still enabling combined analysis across multiple sources.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The server acts as an intermediary that processes raw data without exposing it to third parties. The server performs the combined analysis function while maintaining security by never disclosing raw data to participants, thus mediating between the need for data exchange and the need for security/control.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If data is stored on server for processing, then data accessibility is improved, but data control and security deteriorate

Engineering Contradiction:
Improvedata accessibilityVSAvoiddata control and security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

Instead of giving participants access to raw data and requiring them to maintain security, the system inverts the approach by keeping raw data secured on the server and providing participants with processed results. Control and security are maintained centrally while accessibility is provided through the processed output.

Inventive Principle:
Principle #13The other way round (Inversion)

Solution Approach 2:

The server mediates data storage and processing while participants access only processed results through controlled interfaces. This intermediary arrangement enables ease of operation for participants without compromising security or control, as the server manages all sensitive operations.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If combined analysis of multiple data sources is performed, then analytical value is improved, but system complexity deteriorate

Engineering Contradiction:
Improveanalytical valueVSAvoidsystem complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The server implements a universal processing framework that handles multiple data sources with a single integrated system. Rather than creating separate processing pipelines for each data source combination, the server provides multi-functional capabilities to process and analyze data from any number of sources using the same participant key mechanism and processing logic.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12001348B2System, a server and a method for securely storing and processing raw data from a plurality of different data sources
Publication Date: 2024.06.04 ADVANEO GMBH
  • US12001348B2 patent drawing
  • US12001348B2 patent drawing

AI summary

Described and claimed is a system for securely storing and processing raw data from a plurality of different data sources. The system comprises a server with a processing unit and volatile memory, an external non-volatile memory connected to the server and a plurality of data sources. The server is adapted for encrypting raw data received from each data source of the plurality of data sources and storing the encrypted raw data on the external non-volatile memory, retrieving and decrypting encrypted raw data stored on the at least one external non-volatile memory and processing raw data retrieved from the at least one external non-volatile memory. Further, a corresponding server and a method for securely storing and processing raw data from a plurality of different data sources are described and claimed.