Secured Vital Sign Data Group Streams via ACL WebSocket

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Wearable sensor devices face challenges in transmitting multiple streams of physiological data securely and efficiently while adhering to HIPAA privacy and security requirements, necessitating a cost-effective and efficient solution for authenticated and authorized data transmission.

Innovation Solution

A method and system that authenticate and authorize client devices using Access Control List (ACL) Groups, establishing a WebSocket connection for secure data transmission, ensuring compliance with HIPAA standards by creating a unique URL and utilizing standard Internet protocols like HTTPS and WSS for encrypted data transfer.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple data streams are transmitted over separate connections, then data transmission reliability is improved, but device complexity and cost increase

Engineering Contradiction:
Improvedata transmission reliabilityVSAvoidconnection management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges multiple data stream connections into a single WebSocket connection that multiplexes multiple streams. This allows multiple physiological data streams to be transmitted over one authenticated and authorized connection, reducing connection management complexity while maintaining reliable data transmission through the secured WebSocket protocol.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent segments data access control into ACL groups that can be independently assigned to different data streams within the single WebSocket connection. This enables fine-grained authorization control for multiple streams without requiring separate connections, resolving the contradiction between reliability and complexity.

Inventive Principle:
Principle #1Segmentation

2Reliability

If comprehensive authentication and authorization procedures are implemented, then HIPAA compliance is improved, but transmission efficiency deteriorates

Engineering Contradiction:
ImproveHIPAA complianceVSAvoiddata transmission efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent performs authentication and authorization actions preliminarily before establishing the WebSocket connection. The server authenticates the client and assigns ACL groups in advance, so that once the connection is established, data streams can be transmitted efficiently without repeated authentication overhead, thus maintaining both HIPAA compliance and transmission efficiency.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces ACL groups as an intermediary mechanism between authentication and data stream access. This intermediary structure allows efficient authorization of multiple data streams within a single WebSocket connection, enabling HIPAA-compliant data transmission without the efficiency penalties of repeated comprehensive authentication procedures.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Device complexity

If a single secured connection is used for multiple data streams, then device complexity is reduced, but data transmission security deteriorates

Engineering Contradiction:
Improveconnection management simplicityVSAvoiddata security vulnerability
Core Design Contradiction:
Device complexityVSObject-affected harmful factors

Solution Approach 1:

The patent segments data access control into ACL groups that can be independently assigned to different data streams within the single WebSocket connection. This enables fine-grained authorization control for multiple streams without requiring separate connections, resolving the contradiction between reliability and complexity.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces ACL groups as an intermediary mechanism between authentication and data stream access. This intermediary structure allows efficient authorization of multiple data streams within a single WebSocket connection, enabling HIPAA-compliant data transmission without the efficiency penalties of repeated comprehensive authentication procedures.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11811768B2Secured vital sign data group streams
Publication Date: 2023.11.07 VITAL CONNECT INC
  • US11811768B2 patent drawing
  • US11811768B2 patent drawing
  • US11811768B2 patent drawing

AI summary

A method and system for securely transmitting a plurality of data streams between a client device and a server that are in communication via standard Internet protocols are disclosed. The method comprises authenticating the client device by the server to create a Session ID and authorizing the client device to access the plurality of data streams by the server using at least one ACL Group, wherein a WebSocket connection is created between the client device and the server once the client device is both authenticated and authorized. The system comprises a client device and a server in communication with the client device via standard Internet protocols, wherein the server authenticates the client device to create a session, authorizes the client device to access the plurality of data streams using at least one ACL Group, wherein a WebSocket connection is created once the client device is both authenticated and authorized.