Web-Based eDRM Server Offline Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing enterprise digital rights management (eDRM) technologies require installation of specific applications on central servers and client devices, limiting access to protected documents when a connection is unavailable and failing to effectively monitor and enforce access rights without misusing the documents.

Innovation Solution

An eDRM server that enables encryption and access right assignment without requiring specific applications on client devices, allowing offline access and monitoring user actions to enforce access rights, ensuring only authorized users can access and share protected documents, even when disconnected from the central server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If specific applications are installed on central servers and client devices for eDRM, then document protection and access control are enabled, but device complexity and installation requirements increase

Engineering Contradiction:
Improvedocument protectionVSAvoidapplication installation
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the eDRM functionality from requiring client-side applications and concentrates it in a web-based service. The encryption and access control logic are removed from client devices and implemented server-side through web interfaces, allowing document protection without installing software on client devices.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The web-based eDRM system provides universal access to document protection features through standard web browsers. The same system handles encryption, access rights management, and monitoring functions through a unified web interface that works across different devices without requiring device-specific applications.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If eDRM requires connection to central server for access, then centralized control is maintained, but access availability decreases when connection is unavailable

Engineering Contradiction:
Improvecentralized controlVSAvoidaccess availability
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary actions by establishing encryption and access rights before document access. The web service pre-configures security parameters and provides clients with necessary encryption keys and permissions in advance, enabling offline access while maintaining centralized control over the security framework.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary mechanism where the web-based eDRM service acts as a mediator between centralized control requirements and offline access needs. The service provides initial setup and maintains control policies centrally, while clients can operate offline using pre-configured permissions, with the intermediary synchronizing and managing the balance between centralized control and local autonomy.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If access rights are assigned to users, then document sharing is enabled, but monitoring and enforcement of access rights becomes more difficult

Engineering Contradiction:
Improvedocument sharingVSAvoidaccess rights monitoring
Core Design Contradiction:
Ease of operationVSDifficulty of detecting and measuring

Solution Approach 1:

The web-based eDRM system implements feedback mechanisms that automatically monitor and report on document access and usage. The system tracks when documents are accessed, by whom, and what actions are taken, providing continuous feedback to maintain access rights enforcement. This automated monitoring makes it easy to detect and measure compliance with assigned access rights.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10616225B2Controlling access rights of a document using enterprise digital rights management
Publication Date: 2020.04.07 TATA CONSULTANCY SERVICES LTD
  • US10616225B2 patent drawing
  • US10616225B2 patent drawing
  • US10616225B2 patent drawing

AI summary

Systems and methods for controlling access rights of a document using enterprise digital rights managements are described. A document is encrypted for generating a protected document and access rights are assigned to a user upon receiving a request from an owner of the document. The access rights include offline access of the protected document by the user. Upon assigning the access rights, access information of the user is monitored. Based on the access information, the user is locked from accessing the protected document when the access information indicates misuse of the protected document by the user.