Vehicle Data Access Middleware for Secure Third-Party Integration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current OBD-II systems are limited in their ability to remotely communicate and store vehicle diagnostics and related information, and they lack secure access and data privacy for third-party applications, making it difficult to utilize vehicle data for services like package delivery and maintenance without compromising security.

Innovation Solution

A computer-implemented method and system that provides secure access to vehicle data and operations through an authorization, authentication, and data broker platform, which receives application information, device information, and access rules, allowing secure access to device data and operations while maintaining data privacy and security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If OBD-II systems are used to remotely communicate and store vehicle diagnostics, then vehicle data accessibility is improved, but data privacy and security are compromised

Engineering Contradiction:
Improvevehicle data accessibilityVSAvoiddata privacy and security
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a service middleware as an intermediary component that sits between the OBD-II system and third-party applications. This middleware acts as a secure gateway that manages data access permissions, authentication, and authorization, allowing vehicle data to be accessed remotely while maintaining security controls. The middleware filters and manages what data is exposed to applications, preventing direct access to sensitive vehicle systems.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If third-party applications are granted access to vehicle data and operations, then service versatility is improved, but system security is worsened

Engineering Contradiction:
Improveservice versatilityVSAvoidsystem security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements dynamic permission management where access rights are not static but can be adjusted, revoked, or modified based on service requirements and security conditions. The system allows different levels of access for different applications and can dynamically grant or revoke permissions as needed, enabling versatile service support while maintaining security through adaptive access control.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent segments access permissions into different levels and categories, allowing specific applications to access only the data and operations they require for their intended function. This granular permission structure divides vehicle data access into multiple security zones, with each application operating within its authorized segment, thereby supporting service versatility without compromising overall system security.

Inventive Principle:
Principle #1Segmentation

3Productivity

If vehicle data is stored remotely in the cloud, then data utility for services is improved, but data security and consent management become more complex

Engineering Contradiction:
Improvedata utility for servicesVSAvoiddata security and consent management
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The service middleware serves as an intermediary between the vehicle, cloud storage, and third-party applications, managing consent and security protocols. It handles authentication, authorization, and data protection mechanisms, simplifying the complexity of remote data storage by providing a unified security management layer that coordinates between all parties involved.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12100248B2Method and system for providing secure access to device operations and stored data to consumer applications
Publication Date: 2024.09.24 AERIS COMM INC
  • US12100248B2 patent drawing
  • US12100248B2 patent drawing
  • US12100248B2 patent drawing

AI summary

In one or more embodiments, method, system and computer program product for providing secure access to device data and/or device operations by an application are disclosed. The method for providing secure access to one or more devices by an application includes receiving application information for the application; receiving device information for the one or more devices to which the application is requesting access; receiving rules for allowing the application to access the one or more devices, wherein the access to the one or more devices includes device data, one or more device operations or a combination thereof; and allowing the application to access the device based on the rules.