Web-Based eDRM Server Offline Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing enterprise digital rights management (eDRM) technologies require installation of specific applications on central servers and client devices, limiting access to protected documents when a connection is unavailable and failing to effectively monitor and enforce access rights without misusing the documents.
Innovation Solution
An eDRM server that enables encryption and access right assignment without requiring specific applications on client devices, allowing offline access and monitoring user actions to enforce access rights, ensuring only authorized users can access and share protected documents, even when disconnected from the central server.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If specific applications are installed on central servers and client devices for eDRM, then document protection and access control are enabled, but device complexity and installation requirements increase
Solution Approach 1:
The patent extracts the eDRM functionality from requiring client-side applications and concentrates it in a web-based service. The encryption and access control logic are removed from client devices and implemented server-side through web interfaces, allowing document protection without installing software on client devices.
Solution Approach 2:
The web-based eDRM system provides universal access to document protection features through standard web browsers. The same system handles encryption, access rights management, and monitoring functions through a unified web interface that works across different devices without requiring device-specific applications.
2Reliability
If eDRM requires connection to central server for access, then centralized control is maintained, but access availability decreases when connection is unavailable
Solution Approach 1:
The system performs preliminary actions by establishing encryption and access rights before document access. The web service pre-configures security parameters and provides clients with necessary encryption keys and permissions in advance, enabling offline access while maintaining centralized control over the security framework.
Solution Approach 2:
The patent introduces an intermediary mechanism where the web-based eDRM service acts as a mediator between centralized control requirements and offline access needs. The service provides initial setup and maintains control policies centrally, while clients can operate offline using pre-configured permissions, with the intermediary synchronizing and managing the balance between centralized control and local autonomy.
3Ease of operation
If access rights are assigned to users, then document sharing is enabled, but monitoring and enforcement of access rights becomes more difficult
Solution Approach 1:
The web-based eDRM system implements feedback mechanisms that automatically monitor and report on document access and usage. The system tracks when documents are accessed, by whom, and what actions are taken, providing continuous feedback to maintain access rights enforcement. This automated monitoring makes it easy to detect and measure compliance with assigned access rights.
Data Source
AI summary
Systems and methods for controlling access rights of a document using enterprise digital rights managements are described. A document is encrypted for generating a protected document and access rights are assigned to a user upon receiving a request from an owner of the document. The access rights include offline access of the protected document by the user. Upon assigning the access rights, access information of the user is monitored. Based on the access information, the user is locked from accessing the protected document when the access information indicates misuse of the protected document by the user.


