Web Access Control via Browsing Session Co-occurrence

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing web access control systems rely on manually composed binary white and blacklists, which are inflexible and require human input for updates, making it difficult to control access to specific types of content, such as news sites, without pre-existing lists.

Innovation Solution

A method using session co-occurrence data from consenting users' browsing records to determine similarity between content addresses, allowing for automatic control of access without manual input, enabling personalized and dynamic web access control that adapts to changes in web content and user preferences.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If manually composed white and blacklists are used for web access control, then access control can be implemented, but the system lacks flexibility and requires continuous human input for updates

Engineering Contradiction:
Improveflexibility of access controlVSAvoidmanual input requirements
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The system automatically updates access control lists by analyzing browsing session data from multiple users. The processor identifies patterns in co-occurrence of website addresses and automatically adds new addresses to appropriate lists without requiring manual human input, making the system self-updating and adaptive

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system continuously collects browsing session records from users and uses this feedback to dynamically update the white and blacklists. The processor analyzes new browsing data regularly and adjusts the access control lists based on identified patterns, creating a closed-loop system that adapts over time

Inventive Principle:
Principle #23Feedback

2Adaptability or versatility

If binary white and blacklists are used, then simple access control is achieved, but the system cannot control access to specific types of content without pre-existing lists

Engineering Contradiction:
Improvecontent-specific access controlVSAvoidinformation about content categories
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The system transitions from one-dimensional binary lists (block/allow) to a multi-dimensional approach by analyzing co-occurrence patterns across multiple browsing sessions. This reveals hidden dimensions of content categorization based on how websites are accessed together, enabling content-specific control without pre-defined categories

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Solution Approach 2:

The system performs preliminary analysis of browsing session data to identify patterns and relationships between websites before access control decisions are needed. By pre-processing the browsing data and building similarity relationships in advance, the system can quickly make informed access control decisions for new content

Inventive Principle:
Principle #10Preliminary action

3Reliability

If the access control system uses pre-defined lists, then implementation is straightforward, but the system cannot adapt to changes in web content over time

Engineering Contradiction:
Improveadaptability to web content changesVSAvoidmanual update effort
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system automatically monitors and analyzes browsing session data to detect changes in web content patterns. The processor self-updates the access control lists by identifying new co-occurrence patterns, eliminating the need for manual updates and ensuring continuous adaptability to web content changes

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system continuously collects and analyzes browsing session data in an ongoing manner. Rather than periodic manual updates, the system maintains continuous operation to detect and respond to changes in web content patterns, ensuring the access control lists remain current and relevant

Inventive Principle:
Principle #20Continuity of useful action

Data Source

PatentUS10154041B2Website access control
Publication Date: 2018.12.11 MICROSOFT TECHNOLOGY LICENSING LLC
  • US10154041B2 patent drawing
  • US10154041B2 patent drawing
  • US10154041B2 patent drawing

AI summary

A method of controlling access to content such as web sites on the intranet or interne is described. For example, the method comprises receiving an address of content to be accessed and obtaining similarity of the address to previously labeled addresses of other content items. The similarity is based on co-occurrence of addresses of content items in records of browsing sessions from many consenting users. For example, a browsing session record comprises addresses of content items accessed by a user in a time period during which the user is actively accessing content. A co-occurrence of addresses of content items is the existence of the addresses in the same browsing session record. Access to the content is then controlled on the basis of the similarity.