Software Asset Access Control via Segmented License Codes

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Third-party hosting of program assets complicates access control, as providers are reluctant to share sensitive customer information with external hosting companies, making it challenging to authorize access to program assets effectively.

Innovation Solution

A system that associates a license code with program assets and a master code, allowing providers to generate validation codes for customers, enabling independent access control without sharing sensitive information, using cryptographic functions like SHA or MD hash functions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If third-party hosting is used to deploy program assets, then operating expenses are reduced and market reach is expanded, but access control becomes complicated and sensitive information must be shared

Engineering Contradiction:
Improvemarket reachVSAvoidaccess control complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system segments access control information into two parts: public license codes that can be shared with the hosting company, and private master codes that remain with the asset provider. This segmentation allows the hosting company to perform basic access verification while the provider maintains control over sensitive authorization logic.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary verification mechanism where the hosting company acts as a mediator that can validate access requests using public license codes without needing access to private customer information. This intermediary layer enables third-party hosting while preserving provider control.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If customer information is shared with external hosting company, then proper access authorization can be implemented, but sensitive information security is compromised

Engineering Contradiction:
Improveaccess authorizationVSAvoidinformation security risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system extracts the essential verification function from the complete customer information set. Instead of sharing all customer data, only the necessary license code elements are extracted and shared with the hosting company, while sensitive information remains privately held by the asset provider.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent transforms customer information into different parameter forms: public license codes for verification and private master codes for control. This parameter transformation allows the hosting company to verify access without accessing the original sensitive customer information.

Inventive Principle:
Principle #35Parameter changes

3Object-affected harmful factors

If asset providers maintain independent access control, then information security is maintained, but marketing and website operation become complicated

Engineering Contradiction:
Improveinformation securityVSAvoidwebsite operation
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent creates a universal license code system that serves multiple functions: it enables the hosting company to manage access, allows providers to maintain security, and facilitates independent marketing. This multi-functional code structure eliminates the need for providers to directly manage website access control.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Applied Scientific Principles

This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.

Function Achieved in This Case

Facilitates independent marketing of program assets by providers while ensuring secure access control, reducing the need for sharing sensitive information and simplifying website operations.

Implementation Method 1

the pre-defined function includes a cryptographic hash function, such as a Secure Hash Algorithm (SHA) hash function and/or a Message Digest (MD) hash function

Methodology Applied
Scientific EffectCryptographic hash function:

Data Source

PatentUS8856867B1Technique for controlling access to program assets
Publication Date: 2014.10.07 INTUIT INC
  • US8856867B1 patent drawing
  • US8856867B1 patent drawing
  • US8856867B1 patent drawing

AI summary

A system that controls access to program assets, such as software programs or modules, is described. During operation, this system associates a first license code with a first group of program assets and associates a first master code with the first license code, where the first group of program assets includes one or more program assets associated with a first provider, and the first license code identifies the first master code. Then, the system provides the first license code, the first master code, and a pre-defined function to the first provider, and hosts the first group of program assets on a website. Note that the first master code and the pre-defined function allow the first provider to generate a first validation code for a customer. Moreover, the first validation code and the first license code, at least in part, allow the customer to access the first group of program assets hosted on the website, thereby facilitating independent marketing of the first group of program assets by the first provider.