Social Network Machine Access Control via Connection Permissions

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional social networking systems lack the ability to efficiently manage and regulate access to multiple machines by multiple users, requiring each user to have a dedicated application installed on their client device, which is impractical for controlling or accessing machines like thermostats, drones, and appliances.

Innovation Solution

A social networking system that stores connections between users and machines, allowing users to authorize actions based on permissions tied to direct or indirect connections, enabling multiple users to access and control machines without needing separate applications, with permissions specifying the type and strength of connections for authorized actions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If each user has a dedicated application installed on their client device to control a machine, then the machine can be controlled by multiple users, but the system complexity and inconvenience increase significantly

Engineering Contradiction:
ImproveMultiple users can access and control the machineVSAvoidEach user requires a separate application installation
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges the machine control functionality into the existing social networking system application. Instead of requiring separate applications for each machine, the system integrates machine access controls, permission management, and interaction regulation within the unified social networking platform, allowing users to control multiple machines through a single application interface

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The social networking system application becomes a universal platform that serves both social networking functions and machine control functions. The system provides multi-functional capabilities including user authentication, permission management, machine access control, and interaction regulation, eliminating the need for dedicated applications for each specific machine

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If permissions are strictly limited to direct connections only, then security is improved, but the ability to share machine access with indirect connections is reduced

Engineering Contradiction:
ImproveSecurity control over machine accessVSAvoidAbility to share machine access with indirect connections
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The permission system implements dynamic access control where permissions can be selectively assigned to different connection types. The system allows owners to configure whether indirect connections can access specific machines and what actions they can perform, making the security model flexible rather than static. This enables security policies to adapt to different sharing scenarios while maintaining control

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system applies different permission qualities to different connection types and individual machines. Each machine can have customized permission settings that specify which connection types (direct or indirect) are allowed and what actions they can perform. This localized permission approach allows granular control where security requirements can vary by machine and user relationship

Inventive Principle:
Principle #3Local quality

3Ease of operation

If all users connected to the owner can access the machine, then ease of operation is improved, but control and security over specific user actions is lost

Engineering Contradiction:
ImproveMultiple users can easily access the machineVSAvoidControl and security over user actions
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system segments machine access permissions by action type rather than providing blanket access. Owners can specify which actions (e.g., view, control, modify settings) are permitted for different connection types. This segmentation allows the system to maintain ease of operation for permitted actions while preserving security control by restricting or monitoring specific actions based on user connection strength

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS9350743B2Controlling operation of a machine and describing actions performed by the machine through a social networking system
Publication Date: 2016.05.24 META PLATFORMS INC
  • US9350743B2 patent drawing
  • US9350743B2 patent drawing
  • US9350743B2 patent drawing

AI summary

A social networking system includes information identifying a machine (e.g., a robot, a drone, a computer, a thermostat, etc.) and a connection between the machine and an owner of the machine, which is a user of the social networking system capable of authorizing an action by the machine. The owner of the machine associates permissions associated with various actions by the machine, where a permission associated with an action identifies one or more criteria for performing the action. Permissions may specify types of connections between social networking system users and the owner of the machine via the social networking system to allow social networking system users with specific types of connections to the owner of the machine to perform certain actions using the machine. Information describing an action performed by the machine may be communicated to other users of the social networking system via any suitable communication channel.