Timed Data Filtering for Secure Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional requestor systems face security vulnerabilities and compliance issues when accessing secured data from multiple sources with different access policies, leading to potential data breaches and inaccurate classification recommendations.
Innovation Solution
An access control system that receives requests for secured data, provides access to the data source, selects portions of the data based on lenses with filter criteria or modification instructions, generates adjusted data, and controls access through timed interfaces to prevent unauthorized access and data retention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If a conventional requestor system retains data provided to it, then the system can maintain data for future use, but this creates security vulnerabilities that could be exploited by malicious actors
Solution Approach 1:
The patent extracts the data retention function from the requestor system and transfers it to the data provider system. The requestor system no longer retains data locally, but instead accesses data temporarily through the data provider's system. This extraction eliminates the security vulnerability while preserving the needed data access capability.
Solution Approach 2:
The data provider system acts as an intermediary between the requestor system and the actual data sources. The requestor system makes requests through the data provider, which retrieves data temporarily and returns only the necessary information. This intermediary approach eliminates direct data retention by the requestor while maintaining functional data access.
2Quantity of substance
If a conventional requestor system accesses multiple sources of data with various access policies, then the system can gather comprehensive information, but this creates compliance issues and may prevent accurate classification
Solution Approach 1:
The data provider system receives feedback about access policies from multiple data sources and uses this information to filter and select appropriate data for the requestor system. This feedback mechanism ensures compliance with access policies while maintaining data completeness for accurate classification.
Solution Approach 2:
The patent segments the data access function by separating the requestor system from direct data sources. The data provider system handles the complex task of accessing multiple sources and filtering data according to policies, while the requestor system receives only the necessary segmented data portions. This segmentation maintains compliance without sacrificing data comprehensiveness.
3Reliability
If a conventional requestor system generates classification recommendations based on limited data due to access policy constraints, then the system can comply with access policies, but the classification accuracy deteriorates
Solution Approach 1:
The data provider system performs preliminary action by pre-filtering and selecting appropriate data portions based on access policies before providing data to the requestor system. This preliminary action ensures compliance while preserving the necessary data quality and quantity for accurate classification recommendations.
Solution Approach 2:
The patent changes the parameter of data presentation by transforming raw data from multiple sources into filtered and formatted portions that comply with access policies. The data provider system adjusts data parameters (format, granularity, selection criteria) to meet policy requirements while maintaining the essential information needed for accurate classification.
Data Source
AI summary
According to certain implementations, an access control system controls access to secured data that is stored on a secured source. A requestor system may request information representing the secured data. The access control system receives the secured data from the secured source, and selects a portion of the secured data based on a lens including a filter criteria or a modification instruction. Adjusted data may be generated based on a modification of the selected portion of data, where the modification is based on the lens. The access control system provides the adjusted data to the requestor system via an access interface. In some cases, upon completion of a time period, the access control system prevents the requestor system from accessing the adjusted data, by disabling the access interface used to access the adjusted data. The adjusted data may be deleted from the access control system.


