Shared Data Access Rights Synchronization Across Intranet and Online Storage

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Managing access rights to shared data across different user accounts in intranet and online storage systems is burdensome and not easily synchronized, leading to potential security issues and increased administrative workload.

Innovation Solution

A shared data managing device that pairs user accounts from different systems based on common identifiers and information, allowing access rights to be set and enforced uniformly across both systems, facilitating easier access control.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If access rights are set separately for each system (intranet server and online storage), then each system can be managed independently, but the administrative workload increases and access right synchronization becomes difficult

Engineering Contradiction:
Improveaccess right managementVSAvoidadministrative workload
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent combines access right management for multiple systems (intranet server and online storage) into a unified management approach. By pairing user accounts across systems and establishing correspondence relationships, the system enables centralized access right configuration that automatically applies across all connected systems, eliminating the need for separate management and reducing administrative workload.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent creates a universal access right management mechanism that works across different system types (file servers, database servers, online storage). The paired user account system provides a multi-functional framework where a single access right setting can control permissions across multiple diverse systems, making the management system adaptable and versatile.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If different user accounts are used for intranet and online storage systems, then each system can have its own authentication, but access right synchronization becomes complex and error-prone

Engineering Contradiction:
Improvesystem independenceVSAvoidaccess right synchronization
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent introduces paired user accounts as an intermediary layer between different systems. Each user account in one system is paired with a corresponding account in another system, creating a mediator relationship that enables automatic access right synchronization. This intermediary mechanism translates access rights from one system's user account to another system's paired account, simplifying cross-system permission management.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent performs preliminary pairing of user accounts between systems before access right management is needed. By pre-establishing correspondence relationships between user accounts in different systems, the system prepares the groundwork for automatic access right synchronization, eliminating the need for complex real-time mapping and reducing synchronization complexity.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9313369B2Device and method for managing shared data, and computer-readable storage medium for computer program
Publication Date: 2016.04.12 KONICA MINOLTA INC
  • US9313369B2 patent drawing
  • US9313369B2 patent drawing
  • US9313369B2 patent drawing

AI summary

A shared data managing device is provided which manages shared data by setting an access right on a first user account basis. The first user account has a first identifier and first user information on a first user receiving a first service. The device includes an obtaining portion for obtaining, from a service providing system for a second service, a second identifier of a second user account used for the second service and second user information on a second user; a pairing portion for making a pair of the first identifier and the second identifier of the first user account and the second user account that are common in the first user information and the second user information; and a transmission portion for sending, to the service providing system, the shared data, the pair made, and the access right on a first user account basis.