WO2002080084A2 - Procede de gestion de donnees - Google Patents

Procede de gestion de donnees Download PDF

Info

Publication number
WO2002080084A2
WO2002080084A2 PCT/IB2001/002905 IB0102905W WO02080084A2 WO 2002080084 A2 WO2002080084 A2 WO 2002080084A2 IB 0102905 W IB0102905 W IB 0102905W WO 02080084 A2 WO02080084 A2 WO 02080084A2
Authority
WO
WIPO (PCT)
Prior art keywords
characters
data
access
subsets
subset
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/IB2001/002905
Other languages
English (en)
Other versions
WO2002080084A3 (fr
Inventor
Sarbjit Sembhi
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ONE ZONE NETWORKS
Original Assignee
ONE ZONE NETWORKS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ONE ZONE NETWORKS filed Critical ONE ZONE NETWORKS
Priority to EA200300470A priority Critical patent/EA200300470A1/ru
Priority to AU2001297734A priority patent/AU2001297734A1/en
Publication of WO2002080084A2 publication Critical patent/WO2002080084A2/fr
Anticipated expiration legal-status Critical
Publication of WO2002080084A3 publication Critical patent/WO2002080084A3/fr
Ceased legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2111Location-sensitive, e.g. geographical location, GPS
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2141Access rights, e.g. capability lists, access control lists, access tables, access matrices

Definitions

  • the present invention relates to the management of data. More particularly, the present invention relates to the management of access to data and display of that data using database techniques.
  • a drawback to password protection is the one- dimensional nature of this data access control technique.
  • a user will either have the password and thus be able to access the data at any time from any access device or they will not have the password and thus, cannot access the data at all. Many instances will exist, however, in which access to data may be permissible at one time or location but not another.
  • a parent may wish to limit a child's ability to browse the internet during certain times but not others or may allow access on one access device but not others .
  • Another technique used to limit access to electronic data is the use of encryption.
  • an electronic key is needed to decrypt the data. Once possessing the electronic key, access to the data would not be restricted temporally or by location.
  • different encryption techniques such as asymmetric, symmetric, and key escrow encryption techniques have been developed. Each of these techniques requires different encryption engines.
  • Another drawback to encryption is that the system resources required for encrypting data and the preparation needed, e . g. , distributing the decryption keys, warrants its use only in circumstances where security of the data is needed. Encryption is also not effective in managing access to .large databases of data, e . g. , the internet, where an entity wishes to restrict access to data they do not control.
  • identifying information is provided to a seller and is stored in a profile database to be used in connection with subsequent purchases and communications with the seller and seller's call center .
  • a drawback to these techniques is that they require the consumer to enter the identifying information at least one time for each seller.
  • the newly developed advertising methods still suffer from certain drawbacks.
  • the requirement of a triggering event means that the only customers who will receive* an advertisement are those who actively indicate interest in a product or service.
  • An advertiser will not, however, be able to passively advertise to demographically desirable consumers using the foregoing methods.
  • the advertiser is charged each time the same advertisement is provided to the same user.
  • the present methods generally link an access device, e . g. , a computer, to a user profile by the computer's ISP and thus presume that a computer is being used by the same consumer who provided a profile.
  • an access device e . g. , a computer
  • the present methods generally link an access device, e . g. , a computer, to a user profile by the computer's ISP and thus presume that a computer is being used by the same consumer who provided a profile.
  • an access device e . g. , a computer
  • the present invention satisfies, to a great extent, the foregoing and other needs not currently satisfied by existing access control and display techniques.
  • This result is achieved, in an exemplary embodiment, by a method of determining an entity's access privileges to electronic data by accessing a first electronic database table having information represented therein by a first set of characters.
  • the first set of characters includes a plurality of subsets of characters each of the subsets of characters being a code representing an access factor.
  • the access privileges are determined using the first set of characters .
  • a method of determining whether to provide information to an entity wherein a first electronic database table having information represented therein by a first set of characters is accessed.
  • the first set of characters includes a plurality of subsets of characters. At least one of the subsets of characters is a code representing a geographic area within the geographic area represented by at least one other subset of characters. Further, all geographic areas worldwide can be specified, to the refinement of the postal code, by the first set of characters.
  • the first set of characters are compared to data associated with the entity and the information is provided to the entity based upon said comparison.
  • a method of determining an entity's access privileges to electronic data is provided.
  • a first electronic database table having information represented therein by a plurality of sets of characters is accessed.
  • the first set of characters includes a plurality of subsets of characters each of the subsets of characters being a code representing an access factor.
  • a second set of characters includes a plurality of subsets of characters each of the subsets of characters representing access control data.
  • the access privileges are determined using the plurality of sets of characters.
  • the electronic data is then accessed from a second database table and displayed on a display device, in accordance with display information stored in a third database table when it is determined, following said determining step, that access to said electronic data is permitted.
  • FIG. 1 is a block diagram of a communication system in accordance with a preferred embodiment of the present invention.
  • FIG. 2 is a sample gateway web page in accordance with a preferred embodiment of the present invention.
  • FIG. 3 is a representation of a database table structure of a preferred embodiment of the present invention.
  • FIG. 4 is a chart depicting a format for storing area data in the database tables of FIG 3.
  • FIG. 1 there is shown a block diagram of a generic communication system 20. As depicted, there are three participants in the communication system 20, a user 22, a gateway provider 24, and a content provider 26, all in communication via the Internet 28 .
  • the user 22 is capable of communicating directly with the content provider 26 as in a conventional system not employing the present invention.
  • the user 22 and content provider 26 can, however, communicate through the gateway provider 24 in order to allow either, or both, to control access of the other to electronic data.
  • Communication can be accomplished using any known transmission protocol including, but not limited to, TCP/IP.
  • the electronic data to which access is controlled can be content stored within the database 30 of the server 32 of the content provider 26 that the user wishes to access.
  • the electronic data can be information stored within the user's computer 22 that the content provider 26 wishes to access, e . g, the content provider can be acting as a user.
  • the content provider 26 or user 22 may also be seeking access to information of the other party that is resident within the database 34 of the gateway server 36.
  • the control of access can be imposed by the content provider 26 or the user 22 over their own data, or by some third party, such as the gateway provider, over the data of either or both.
  • a reason for controlling access to data can include a user's desire to filter out entirely, or during limited times, or in limited locations, the receipt by themselves or another of certain content, e . g. , a parent's desire to limit a child's access to only age appropriate web sites during permissible times.
  • Another example might include a teacher's desire to set subject matter limits on a student's access to on-line databases during certain times of the day .
  • a still further example might include a customer's desire to receive advertisements only for certain products and services, during certain times of the day or through certain medium. For example, a customer may be willing to receive certain advertisements over a WAP phone, to offset the cost of that service, but does not wish to receive these same advertisements on their interactive television.
  • each user of the gateway will have registered and provided profile data that includes, at a minimum, their role, requirement and local area.
  • This profile information can be used as a beginning point for determining the data to be provided to the user.
  • Additional profile data can be provided by the user, or by a third party having authority to control the data provided to the user, to limit or expand the data displayed to the user through the gateway.
  • the user 22 of FIG. 1 can be any entity seeking access to electronic data.
  • the user 22 can be an individual browsing the Internet via a personal computer, a call center seeking profile information for a caller, a system for providing advertising on multiple media seeking profile information for a targeted advertisement, or an employee seeking to access files on a corporate intranet .
  • the gateway provider 24 of the present invention utilizes a fundamentally different paradigm for storing and manipulating electronic data. Because of this, an entity is capable of providing a high level of specificity through the gateway provider 24 with regard to who may access electronic data, where, when and why, what electronic data may be accessed, and how the electronic data may be accessed.
  • the gateway will allow a user to add security to an object by changing the to create a "lock" on the data. The user can then create as many keys as they want to by changing the profile information of other users .
  • FIG. 2 An exemplary gateway web page 36 in accordance with a preferred embodiment of the present invention is depicted in FIG. 2.
  • the web page 36 is comprised of three frames; the title frame 38, the navigation frame 40, and the detail frame 42.
  • the title frame 38 and a home page, not shown, is provided on the user's display device.
  • the user may then click on any of the smaller icons 46, the icon titles 48, or the group page icon 50 to navigate from the home page. Clicking on the home page icon 44 returns the user to the home page.
  • the navigation bar 40 After selecting one of the icons 48 in the title frame 38, the navigation bar 40 will appear and provide a list of headers 52 associated with the selected icon of the title frame 38. Each header 52 also have various levels of hidden subheaders, not shown, which would be presented when the user clicks on one of the headers 52. In addition, a default detail frame home page for the selected icon will be displayed. In the exemplar of FIG. 2, the user has selected the subjects icon 54, which brought up the navigation bar 40 containing education related headers 52.
  • the detail frame 42 will be refreshed to display information relevant to that header 52 or subheader.
  • the user has selected the "English" subheader 56 which opened the "English" detail frame 42.
  • the user is first presented with a selection of headers 58 along with a default subheader frame 60. If a different header 58 is selected a different subheader frame 60 associated with that header is presented. Below the subheader frame 60, title bars 62 and descriptive text 64 are provided. By clicking on a title bar 62, the user is directed to the electronic data they wish to access, e . g. , a web site related to the selected topic.
  • the user has selected the "READING" header 66 which then provided all appropriate title bars 62 for that user relating to reading .
  • Educational information is merely one example of the information that may be accessed through the exemplary gateway of FIG. 2.
  • the icon titles 48 of the title frame 38 include such other topics as "interests,” “fun & games,” “shop,” and “sports. "
  • Tips and techniques 68 - provides useful tips to the user relating to the subject matter of the subheader frame 60 ;
  • revisions and testing 70 - provides links to materials to help test knowledge of the subject of the subheader frame 60;
  • discussion 72 allows users to have on-line discussions with other users interested in the same subject matter
  • top of page 76 - returns the user to the top of the detail frame.
  • additional icons are for use in connection with an education gateway of a preferred embodiment of the invention. These additional icons would be different in other embodiments of the gateway for use in other environments. For example, for a gateway relating to government grants, additional icons may be provided to link to electronic versions of forms used in applying for grants. In addition, for different user roles or requirements the additional icons may also be different.
  • a review icons 78 for allowing users to write reviews of the linked data or web sites and to read other users reviews.
  • the reviews are stored in a central gateway database, rather than in memory on the users computer, and can be made available to anyone utilizing the gateway. To prevent inappropriate reviews from being provided to other users, newly created reviews are locked out
  • a review icon 78 may be replaced or supplemented with a different icon providing a different functionality.
  • the group box icon 50 can be used to provide a direct link to the web site of any desired entity, e . g. , the local education board. Usually, the group box icon 50 will link the user to the web site of the entity related to the access point or the controller of the access point.
  • the group box icon 50 for an education web site might be the local education board.
  • the group box icon 50 may be different or may bring a user to a different web page depending on who the user is or where the group box icon 50 is accessed.
  • the group box icon 50 may be that of the local authority if the gateway is accessed from school but that of an employer if accessed from -work.
  • the group box icon 50 can also be set up to direct a user to the local authority's educational services web page if accessed from school or the local authority's general services web page if accessed from home.
  • these additional links may be local learning resources such as a library or museum, books or other resources for sale, or internet applications like diary or calendar events.
  • Electronic data can be sorted and provided to a user, through the gateway, according to the user's age and/or role, e . g. , teacher, parent, employer, administrator, purchaser, seller, etc.
  • a user's age and/or role profile information would be tied to their log-in password so that when that user logs in to the gateway that user will only be provided with those icons, headers, data, etc., appropriate for, relevant to, and/or permitted for that user. It is ⁇ anticipated that in the exemplary embodiment of FIG. 2, which will be used in conjunction with the education system in the U.K. , at least the following age and role categories will be provided for: age 3 to 5, age 5 to 7 , age 7 to 11, age 11 to 14, age 14 to 16, age 16 to 18, parents, teachers, and administrators.
  • the hierarchical sorting of the data allows children under eleven to navigate to any desired content, which is made available through the gateway, within three clicks. It should be readily apparent from the foregoing description that organization of data within the gateway can permit a user to navigate to any desired content in five or less mouse clicks without the need for the user to compose their own search query.
  • the gateway of the present invention is provided using a novel database table structure which will now be described with reference to FIG. 3.
  • the tables include, but are not limited to, a category table 82, a listing table 84, an address table 86, and an entity_control_profile table '88.
  • the functioning of the foregoing tables can be best understood when considered in connection with the exemplary gateway session described above in connection with FIG. 2.
  • the category table 82 stores all of the categorization data 90 , e . g. , headers, subheaders, icons, icon titles, and alt tags for icons, contained in any of the title frame 38, navigation frame 40, or detail frame 42 of the gateway.
  • the address table 86 contains all of the data, or links to data, 92 that may be provided to any user, e . g. , data to be provided may be stored directly within the address table or links to other web sites may be stored therein.
  • the listing table 84 operating in conjunction with the entity_control_profile table 88, filters the data in the category table 82 and address table 86 so that only selected portions of the data will be supplied to a particular entity profiled in the entity_control_profile table 88.
  • the listing table 84 stores listing properties 94 for the data stored in the category table 82 and address table 86. That is, the data 94 in the listing table 84 are the rules and criteria to be applied in determining
  • the listing table 84 also contains the commands which associate data 92 in the address table 86 to categorization data 90 in the category table 82. Further, the listing table 84 stores pointers to scripts which control the way data in the address table 86 and category table 82 are displayed through the gateway.
  • the listing table 84 can also store individual user choices for data to be displayed and gateway "look and feel" options. For example, a user may only be studying a limited number of the educational subjects or be interested in a limited number of sports available through the gateway. The user may also decide that they prefer having the title frame 38, and navigation frame 40, and detail frame 42 displayed in a configuration other than the default configuration. The user may also, for example, wish to have smaller icons or fonts to fit more data on a page, or larger icons and fonts to be easier to read. These and other user choices can be entered and would be stored in the listing table 84 to tailor the gateway 36.
  • the entity_control_profile table 88 stores the profile information for each individual user permitted to access the gateway. It is contemplated that the profile information will be gathered through use of registration processes such as those commonly employed and known in the art . Because the gateway is configured to provide only relevant information on an individual basis, profile information for each individual user will be required.
  • Category line number This entity is a unique key for this table. This entry also matches the entry in the header_number field of the listing table to join the table entries for a particular object to be displayed in the gateway.
  • category_number A reference number which links all category information displayed in a single frame of the gateway. All linked category data can be displayed by referencing the category_number .
  • category_type Identifies what type of category data is being stored.
  • category_description Contains the category data, e . g. , text, name of icon, link to .gif file, to be displayed on the display device.
  • category_detai1 Stores alt tags for icons or, if the data is not an icon, this field can be used for internal storage purposes.
  • this serves as a flag to identify whether the data can be displayed.
  • a first value in this field identifies the data as being unavailable whereas a second value indicates the data is available, e . g. , where a user creates a review of data, the available field will be flagged to make the review unavailable until the gateway provider reviews and approves the user generated review at which time the available field will be changed.
  • This field could also be used by users to select who can see the data they enter .
  • the available field is used for internal system control. For example, this field can be used to specify who to make the information available to.
  • created_by Identifies for audit purposes who, generally within the gateway provider organization, created the table entry.
  • create date Identifies for audit purposes when the table entries were created.
  • updated_by Identifies for audit purposes who, generally within the gateway provider organization, updated a table entry.
  • updated_date Identifies for audit purposes when a table entry was updated.
  • listing line number This entry is a unique key for this table. It is also a reference number for the listing table for a particular objec . listing_number A redundant field which, if desired, can be used to create many to many relationships .
  • page_target Reference number that links all data to be displayed in a frame of the gateway responsive to a user clicking on an object, i.e., when a user clicks on an object in a frame, all objects having the same page_target reference number as the selected object will be displayed.
  • display_type Identifies how the data is to be displayed by referencing either a display code or a markup language file in the database owner_number Identifies an entity within a specific environment area_number Identifies the areas in which the data is relevant org_number Identifies relevant groupings of entities to which the data is relevant rights_number Contains data identifying the users role, requirement and rights to amend a piece of data speciall - speciallO Special fields are used for storing additional data not already stored in another field, or to store the same data differently.
  • map Identifies the types of display devices that the data can be displayed on. sort Used to determine the ordering of the data in a field on the gateway.
  • the sort field identifies the order in which each object will be displayed.
  • address line number This entry is a unique key for this table. It also mtches the address_number field of the listing table to join these two tables. address number A redundant • field which, - if desired, can be used to create many to many relationships .
  • title The text of the title objects 62, FIG. 2, to be displayed in the detail frame 42 are stored here. address Stores the URL for a title if the title is obtained from outside the database. If the title is obtained from within the database the name of the script file or path to the script file is stored here. description The descriptive text 64, FIG.
  • each item displayed in the gateway web page 36 is a separate object selectable by the user.
  • each item displayed on the gateway has an associated set of entries in the database tables .
  • each of the "available, " "created__by, “ “create_date, “ "updated_by, “ and “updated_date” fields contain the same type of data in each table.
  • a category record may be updated at a different time from an associated listing record and thus both records would contain data identifying a time and date of updating . although not the same time and date.
  • the gateway will only provide data to those users permitted to receive the data based on their profile and the criteria set in the listing table, and because the criteria can be set based on any factors, e . g. , time, date, location, access device, category of user, etc., the system has security built in. Thus, for example, if a corporation wants to limit access to certain data to specific classes of employees, or wishes to limit the specific devices, or types of devices, on which the data can be accessed, they need only specify those criteria in the tables associated with the data.
  • the data of one table be stored in several separate databases. For example, as the number of users of the gateway increases, the spreading of entity profile information across a number of databases may be desirable to shorten the time necessary to gather the profile information. Similarly, as the volume of data in the address table database increases the volume of data in the listing table database and category table database will also increase making it desirable to share the data storage and retrieval processes.
  • entity profile table One readily apparent method of subdividing the users . in the entity profile table would be alphabetically by name. Another method of subdividing users would be by entity type, e. g. , separating corporate users from individual users, etc .
  • error tables 98, 100 will be provided for storing and providing error messages within the gateway.
  • An audit table 102 may be provided in order to maintain a record of a users navigation through the gateway. This record may be temporarily stored, e . g. , during a session, or permanently stored for future audit purposes .
  • the electronic audit record can be accessed by the user, or by entities having authority to access the record, and printed out in reports.
  • One anticipated use of this functionality is in the generation of reports by teachers as evidence that all elements of a required curriculum have been covered, i.e., by generating an audit record of the students ' navigation through the gateway it can be established that all curriculum requirements have been covered.
  • e-mail, calendar, etc. could also have their own audit records with different users. For example, they could be used for fraud management, e . g. , used in conjunction with a session audit table which could record an IP address, a machine number, and a . browser/access device.
  • the tables can also include an entity_logon table 104 for storing the data associated with the process of logging on to the gateway. For example, a user's identity and password, among other things, can be stored in the entity_logon table 104.
  • Other tables which may be provided include a directory table for storing the actual text of user profile entries separate from profile codes stored in the entity_control_profile table 88.
  • a current_user table may also be provided for temporarily storing rules and parameters to be applied during a particular gateway session.
  • a maximum number table may also be provided for recording the maximum numbers being used in all of the other tables. Adding data to other tables is facilitated by the use of the maximum number table as it eliminates the need to search the database, which may have millions of entries, to identify the maximum number currently being used in connection with a data entry.
  • the first subset is a one digit decimal number 112 that theoretically can represent ten different options for the data using the decimals "0" through
  • this digit has the values "1," "2,” or "3" which denote, respectively, whether that data can be used in a gateway window having any number of frames, a window having two frames, or a window having three frames .
  • the category number field 114 is a three digit decimal number which serves to identify the type of data represented by the remaining digits.
  • the three digit number "105" in the category number field designates that the data represented by this twenty digit number is area data.
  • Each of the remaining subsets of digits 116-128 represents a geographical subdivision with the subset containing the least significant bit representing the smallest geographic subdivision.
  • the continent of Europe is represented in the twenty digit number by the reference number "5" in the fifth digit from the most significant bit.
  • the United Kingdom is represented by the reference number "142" in the sixth through eighth digits from the most significant bit.
  • the digits can also be used to provide geographic data in different ways to meet different needs.
  • the geographic data can be used to identify, individually, streets within a town.
  • a local authority can then use this geographic data to provide a gateway which can identify which public services, e . g. , trash removal, street cleaning, etc., will be provided on a particular street on a particular day.
  • area data is only one of the categories of data that can be stored in the tables for use in the gateway filtering process. It is currently contemplated that at least the following eight categories of data will be used:
  • the subsets of digits may be related, as in the area example provided above, or may be unrelated data types .
  • a textual description of what each possible reference number of each subset of each category of data is, is stored in the category table in the "category_detail" field.
  • GPS Global Positioning System
  • a user would be able to limit the geographic area or times during which the user's car may be operated. If attempts to operate the automobile outside the specified locations or times were made, the automobile would be disabled and the owner or appropriate authorities could be contacted.
  • An onboard data entry device could be used by the user to change the criteria directly from the automobile.
  • the current method of making Internet purchases entails a buyer forwarding credit card information to a seller.
  • the seller then debits the account of the buyer and provides the desired good or service.
  • a seller can make information abo ⁇ t their account available to potential purchasers on the gateway.
  • a purchaser can direct their credit card company through the gateway to credit the seller's account.
  • password protecting access to the gateway for the profile information of a particular user the incidences of fraudulent purchases can be reduced.
  • the gateway can also be configured to allow a user to change the settings from a WAP phone to prevent theft by attaching a second level of PIN numbers for the information. These incidences can be further reduced through use of existing biometric devices such as retinal and fingerprint scanners . Alternatively, the gateway provider itself could operate as the credit company.
  • a user's account for such services as television and telephone could be made to travel with them as they move from one access device to another.
  • a user who signs up for cable television service normally can only use that service in one location, e. g. , at home.
  • the profile for the user including the service options selected by the user, could be used to allow the user to access their programming options from anywhere.
  • a business traveler could access their local programming, including local news, from anywhere in the world.
  • the techniques described herein are particularly suited to the tracking of records from the micro level to the macro level and vice versa.
  • An example is the tracking of medical records.
  • a single centralized set of medical records for a particular user would be created and added to on each subsequent doctor visit.
  • the gateway can be set up so that the user themselves may not have authority to access their own files.
  • the system can also be used to track statistical data in different ways by different people.
  • a user desiring to send an e-mail would create the text of the e-mail in a gateway frame designed for this purpose and then click on an icon to direct the system to store the data in the database.
  • the text of the e-mail would then be stored within a field in the address table 86.
  • the user would then be presented with a screen allowing them to enter criteria regarding the distribution of the e-mail, e . g. , user's who can access the e-mail text, the devices that can be used to access the e-mail text, etc. These criteria would be stored in the listing table associated with the address table storing the text of the e-mail.
  • identified recipients of the e-mail will be presented with some indication, such as an e-mail icon, that a new e- mail message exists. The specified recipients will then be permitted to access the e-mail.
  • this e-mail system provides significant advantages over the present e-mail systems.
  • less memory is required because only one version of the e-mail is stored in the gateway database, which is accessed by all identified recipients, rather than individual copies stored in the memory of each recipient's computer.
  • Attachments can also be added to e-mails simply by adding a link to the attached data in the address table associated with the e- mail. Again, the attachment would only need to exist within the gateway database, or elsewhere, once rather than in individual copies in the sender and receiver's computer.
  • the gateway concept of the present invention can be used to provide a system having centralized data storage.
  • Individual users of the Internet or an intranet can be provided with "dumb" terminals used to access data stored in the centralized database.
  • access to data can be limited by the creator by setting the ' criteria of the listing table.
  • Access can also be determined by another entity having authority, as established by criteria in the listing table, to limit or expand access privileges. For example, an employee in a corporation may have the right to limit access to data to certain ones of that employee's subordinates but may not limit access to superiors.
  • Access can also be limited by the IP address of particular machines thus limiting where the data can be accessed and on what display device it can be accessed.
  • this system can be used in distributing other types of data such as press releases, auctions, and resumes.
  • a press release or resume could be created and the criteria entered in the listing table to make the press release or resume available at a specific time to specific entities. The press release or resume could then be accessed by the specified entities at or after the specified time.
  • users can be linked to form user groups or communities.
  • These user groups or communities can be used in both commercial and non-commercial settings.
  • a family tree group can be created to allow members to enter contact information and to share information with other family members.
  • a company can create a group consisting of its customers. Information regarding new products can then be readily distributed to those customers.
  • gateway techniques Another application of the gateway techniques is in providing advertisers with "point of interest" advertising.
  • an advertisement can be linked directly to data relating to that advertisement.
  • an advertisement for running sneakers can be linked directly to data files or web sites relating to running such that any time any such data file is accessed the advertisement is displayed.
  • the system would also be able to decide which advertisement amongst a variety would be most appropriate for the specific user.
  • gateway techniques described herein will be used for providing intelligent call centers. Rather than a user entering the data each time they contact a call center, and then repeating it several times to different employees at the call center, the user can enter the data once and then change the listing table criteria at various times to make the data unavailable or available to one or more different specified representatives within the call center.

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Computer Hardware Design (AREA)
  • Health & Medical Sciences (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Databases & Information Systems (AREA)
  • Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Storage Device Security (AREA)

Abstract

L'invention concerne un nouveau procédé de gestion de données comprenant des techniques d'organisation et de représentation de données et des techniques de mémorisation et de contrôle des tables de bases de données. Il est également prévu une passerelle dans laquelle les données sont organisées et affichées conformément, à la fois, à des séries de critères au moyen d'une entité, et à des séries de critères pour une entité. La passerelle peut être adaptée en vue d'une utilisation dans une variété d'environnements afin de contrôler l'accès aux données mémorisées dans une ou plusieurs bases de données.
PCT/IB2001/002905 2000-10-19 2001-10-19 Procede de gestion de donnees Ceased WO2002080084A2 (fr)

Priority Applications (2)

Application Number Priority Date Filing Date Title
EA200300470A EA200300470A1 (ru) 2000-10-19 2001-10-19 Способ управления данными
AU2001297734A AU2001297734A1 (en) 2000-10-19 2001-10-19 Method of managing data

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US69102100A 2000-10-19 2000-10-19
US09/691,021 2000-10-19

Publications (2)

Publication Number Publication Date
WO2002080084A2 true WO2002080084A2 (fr) 2002-10-10
WO2002080084A3 WO2002080084A3 (fr) 2004-05-13

Family

ID=24774859

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/IB2001/002905 Ceased WO2002080084A2 (fr) 2000-10-19 2001-10-19 Procede de gestion de donnees

Country Status (4)

Country Link
AU (1) AU2001297734A1 (fr)
EA (1) EA200300470A1 (fr)
GB (1) GB2368151A (fr)
WO (1) WO2002080084A2 (fr)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2018108423A1 (fr) * 2016-12-15 2018-06-21 Abb Schweiz Ag Système et procédé destinés à une autorisation d'utilisateur

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2384331A (en) * 2002-01-19 2003-07-23 Hewlett Packard Co Access control using credentials
US7991895B2 (en) * 2005-12-09 2011-08-02 Nokia Corporation Limiting access to network functions based on personal characteristics of the user

Family Cites Families (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US4956769A (en) * 1988-05-16 1990-09-11 Sysmith, Inc. Occurence and value based security system for computer databases
US5276735A (en) * 1992-04-17 1994-01-04 Secure Computing Corporation Data enclave and trusted path system
GB2281645A (en) * 1993-09-03 1995-03-08 Ibm Control of access to a networked system
GB2339313B (en) * 1996-05-10 2000-08-09 Aim Corp Terminal
JP3937548B2 (ja) * 1997-12-29 2007-06-27 カシオ計算機株式会社 データアクセス制御装置およびそのプログラム記録媒体
US6449643B1 (en) * 1998-05-14 2002-09-10 Nortel Networks Limited Access control with just-in-time resource discovery
US6308273B1 (en) * 1998-06-12 2001-10-23 Microsoft Corporation Method and system of security location discrimination
US6292904B1 (en) * 1998-12-16 2001-09-18 International Business Machines Corporation Client account generation and authentication system for a network server
GB9923340D0 (en) * 1999-10-04 1999-12-08 Secr Defence Improvements relating to security
US6442696B1 (en) * 1999-10-05 2002-08-27 Authoriszor, Inc. System and method for extensible positive client identification
EP1234222A2 (fr) * 1999-12-02 2002-08-28 Secure Computing Corporation Schema de gestion de la securite adaptable au niveau local destine a des reseaux

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2018108423A1 (fr) * 2016-12-15 2018-06-21 Abb Schweiz Ag Système et procédé destinés à une autorisation d'utilisateur
CN110063065A (zh) * 2016-12-15 2019-07-26 Abb瑞士股份有限公司 用于用户授权的系统和方法
JP2020502672A (ja) * 2016-12-15 2020-01-23 アーベーベー・シュバイツ・アーゲー ユーザ認可のためのシステムおよび方法
US11019493B2 (en) 2016-12-15 2021-05-25 Abb Schweiz Ag System and method for user authorization
JP7072574B2 (ja) 2016-12-15 2022-05-20 アーベーベー・シュバイツ・アーゲー ユーザ認可のためのシステムおよび方法
CN110063065B (zh) * 2016-12-15 2022-10-14 Abb瑞士股份有限公司 用于用户授权的系统和方法

Also Published As

Publication number Publication date
GB2368151A (en) 2002-04-24
GB0031112D0 (en) 2001-01-31
EA200300470A1 (ru) 2004-02-26
AU2001297734A1 (en) 2002-10-15
WO2002080084A3 (fr) 2004-05-13

Similar Documents

Publication Publication Date Title
US20210406446A1 (en) System And Method For Managing Content On A Network Interface
US5832497A (en) Electronic automated information exchange and management system
US6928455B2 (en) Method of and apparatus for controlling access to the internet in a computer system and computer readable medium storing a computer program
Ainscough The Internet for the rest of us: marketing on the World Wide Web
US7110983B2 (en) Methods for matching, selecting, narrowcasting, and/or classifying based on rights management and/or other information
US7054886B2 (en) Method for maintaining people and organization information
US8996508B2 (en) Sending advertisements to customers
MXPA04008492A (es) Metodo y sistema para enviar y rastrear mensajes de correo electronico.
KR20090033709A (ko) 멀티 인터넷주소를 이용한 다중관계 다차원구조인터넷데이터 양방향 웹사이트 관리시스템
Elovici et al. Enhancing customer privacy while searching for products and services on the World Wide Web
Bidgoli An integrated model for introducing intranets
GB2368151A (en) Determining access privilege to electronic data
JP2002324068A (ja) 個人情報提供システム及び方法並びに個人情報提供用プログラム及びプログラムを記録した記録媒体。
US20020143700A1 (en) Method and apparatus for individual-centric use of the internet
Sonntag et al. Personalization of web-based interfaces for humans and agents applied to e-government portals
KR20000058958A (ko) 고객 맞춤형 인터넷 카탈로그 페이지 자동 생성 방법
Karl A new service of information brokers: online consulting
Middlebrook Privacy on the Internet: Consumer problem for the interactive age?
Goldman Addressing the Inadequacies of Information Available on the Internet: The Prospect for a Technical Solution
Masaki et al. Hypermedia EIS and the world wide web
Cho et al. Cyberspace Hospitality: Is the Industry Ready?
Knežević KNOWLEDGE MANAGEMENT SUPPORT SYSTEM AS THE BASIS FOR COMPETITIVENESS
Dopplick A method of assessment of World Wide Web sites with application to tourism
Warner Portal Technology
Swann et al. Establishing a Typology of New York State School District Web Site Home Pages from a Public Relations Perspective

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A2

Designated state(s): AE AG AL AM AT AU AZ BA BB BG BR BY BZ CA CH CN CO CR CU CZ DE DK DM DZ EC EE ES FI GB GD GE GH GM HR HU ID IL IN IS JP KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX MZ NO NZ PH PL PT RO RU SD SE SG SI SK SL TJ TM TR TT TZ UA UG US UZ VN YU ZA ZW

AL Designated countries for regional patents

Kind code of ref document: A2

Designated state(s): GH GM KE LS MW MZ SD SL SZ TZ UG ZW AM AZ BY KG KZ MD RU TJ TM AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE TR BF BJ CF CG CI CM GA GN GQ GW ML MR NE SN TD TG

121 Ep: the epo has been informed by wipo that ep was designated in this application
DFPE Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed before 20040101)
WWE Wipo information: entry into national phase

Ref document number: 2001273622

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 200300470

Country of ref document: EA

REG Reference to national code

Ref country code: DE

Ref legal event code: 8642

WWW Wipo information: withdrawn in national office

Ref document number: 2001273622

Country of ref document: EP

122 Ep: pct application non-entry in european phase
NENP Non-entry into the national phase

Ref country code: JP