Vehicle Data Access Middleware for Secure Third-Party Integration
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current OBD-II systems are limited in their ability to remotely communicate and store vehicle diagnostics and related information, and they lack secure access and data privacy for third-party applications, making it difficult to utilize vehicle data for services like package delivery and maintenance without compromising security.
Innovation Solution
A computer-implemented method and system that provides secure access to vehicle data and operations through an authorization, authentication, and data broker platform, which receives application information, device information, and access rules, allowing secure access to device data and operations while maintaining data privacy and security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If OBD-II systems are used to remotely communicate and store vehicle diagnostics, then vehicle data accessibility is improved, but data privacy and security are compromised
Solution Approach 1:
The patent introduces a service middleware as an intermediary component that sits between the OBD-II system and third-party applications. This middleware acts as a secure gateway that manages data access permissions, authentication, and authorization, allowing vehicle data to be accessed remotely while maintaining security controls. The middleware filters and manages what data is exposed to applications, preventing direct access to sensitive vehicle systems.
2Adaptability or versatility
If third-party applications are granted access to vehicle data and operations, then service versatility is improved, but system security is worsened
Solution Approach 1:
The patent implements dynamic permission management where access rights are not static but can be adjusted, revoked, or modified based on service requirements and security conditions. The system allows different levels of access for different applications and can dynamically grant or revoke permissions as needed, enabling versatile service support while maintaining security through adaptive access control.
Solution Approach 2:
The patent segments access permissions into different levels and categories, allowing specific applications to access only the data and operations they require for their intended function. This granular permission structure divides vehicle data access into multiple security zones, with each application operating within its authorized segment, thereby supporting service versatility without compromising overall system security.
3Productivity
If vehicle data is stored remotely in the cloud, then data utility for services is improved, but data security and consent management become more complex
Solution Approach 1:
The service middleware serves as an intermediary between the vehicle, cloud storage, and third-party applications, managing consent and security protocols. It handles authentication, authorization, and data protection mechanisms, simplifying the complexity of remote data storage by providing a unified security management layer that coordinates between all parties involved.
Data Source
AI summary
In one or more embodiments, method, system and computer program product for providing secure access to device data and/or device operations by an application are disclosed. The method for providing secure access to one or more devices by an application includes receiving application information for the application; receiving device information for the one or more devices to which the application is requesting access; receiving rules for allowing the application to access the one or more devices, wherein the access to the one or more devices includes device data, one or more device operations or a combination thereof; and allowing the application to access the device based on the rules.


