Social Network Machine Access Control via Connection Permissions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional social networking systems lack the ability to efficiently manage and regulate access to multiple machines by multiple users, requiring each user to have a dedicated application installed on their client device, which is impractical for controlling or accessing machines like thermostats, drones, and appliances.
Innovation Solution
A social networking system that stores connections between users and machines, allowing users to authorize actions based on permissions tied to direct or indirect connections, enabling multiple users to access and control machines without needing separate applications, with permissions specifying the type and strength of connections for authorized actions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If each user has a dedicated application installed on their client device to control a machine, then the machine can be controlled by multiple users, but the system complexity and inconvenience increase significantly
Solution Approach 1:
The patent merges the machine control functionality into the existing social networking system application. Instead of requiring separate applications for each machine, the system integrates machine access controls, permission management, and interaction regulation within the unified social networking platform, allowing users to control multiple machines through a single application interface
Solution Approach 2:
The social networking system application becomes a universal platform that serves both social networking functions and machine control functions. The system provides multi-functional capabilities including user authentication, permission management, machine access control, and interaction regulation, eliminating the need for dedicated applications for each specific machine
2Reliability
If permissions are strictly limited to direct connections only, then security is improved, but the ability to share machine access with indirect connections is reduced
Solution Approach 1:
The permission system implements dynamic access control where permissions can be selectively assigned to different connection types. The system allows owners to configure whether indirect connections can access specific machines and what actions they can perform, making the security model flexible rather than static. This enables security policies to adapt to different sharing scenarios while maintaining control
Solution Approach 2:
The system applies different permission qualities to different connection types and individual machines. Each machine can have customized permission settings that specify which connection types (direct or indirect) are allowed and what actions they can perform. This localized permission approach allows granular control where security requirements can vary by machine and user relationship
3Ease of operation
If all users connected to the owner can access the machine, then ease of operation is improved, but control and security over specific user actions is lost
Solution Approach 1:
The system segments machine access permissions by action type rather than providing blanket access. Owners can specify which actions (e.g., view, control, modify settings) are permitted for different connection types. This segmentation allows the system to maintain ease of operation for permitted actions while preserving security control by restricting or monitoring specific actions based on user connection strength
Data Source
AI summary
A social networking system includes information identifying a machine (e.g., a robot, a drone, a computer, a thermostat, etc.) and a connection between the machine and an owner of the machine, which is a user of the social networking system capable of authorizing an action by the machine. The owner of the machine associates permissions associated with various actions by the machine, where a permission associated with an action identifies one or more criteria for performing the action. Permissions may specify types of connections between social networking system users and the owner of the machine via the social networking system to allow social networking system users with specific types of connections to the owner of the machine to perform certain actions using the machine. Information describing an action performed by the machine may be communicated to other users of the social networking system via any suitable communication channel.


