IP Library Granted Patent US 12,217,323
Granted Patent B2
US 12,217,323 · App. 17/710,551 · Granted Feb 4, 2025

Vehicle data jurisdiction management

Inventors: Roland Mesde (Cupertino, CA); Alex Bessonov (San Jose, CA); Kyle Daniel Halbach (Berlin, DE); Nitin Giri (Bothell, WA); Edwin Ricardo Mendez Rodriguez (Seattle, WA); Matthew Jonathan Narksusook (Auburn, WA)
Assignee: Amazon Technologies, Inc.
G06Q50/265B60W50/045G06F16/2365H04W4/021H04W12/64
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,217,323
App. No.
17/710,551
Filed
Mar 31, 2022
Granted
Feb 4, 2025
Kind
B2
Art Unit
2641
USPC
455/456.3
Abstract

A vehicle data management system and data jurisdiction system manage vehicle data between multiple jurisdictions and enables a set of jurisdiction rules involving rules of various jurisdictions to be applied consistently. The vehicle data jurisdiction system can detect changes in jurisdiction of a vehicle based on various pieces of received vehicle information and applies appropriate jurisdiction rules from a set of jurisdiction rules. Various jurisdictions may have conflicting jurisdiction rules and, in such circumstances, the data jurisdiction system resolves potential conflicts between the rules using a jurisdiction rules resolution workflow. Based on the resolution of the conflict, the data jurisdiction system can migrate data of the vehicle to one or more other jurisdictions, or otherwise implement the correct rules determined by resolving the conflict.

Claims (64)

1. A system, comprising:

one or more computing devices configured to implement a data jurisdiction management system configured to:

detect, based on received vehicle information, a jurisdiction change event for a vehicle, wherein vehicle data for the vehicle is stored in a first jurisdiction;

determine, using the data jurisdiction management system, whether a conflict exists between a jurisdiction rule of the first jurisdiction and a jurisdiction rule of a second jurisdiction;

determine, based on the determination of whether the conflict exists, and based on a set of jurisdiction rules comprising the jurisdiction rule of the first jurisdiction and the jurisdiction rule of the second jurisdiction, one or more portions of the vehicle data stored for the vehicle to be deleted, moved, or retained, wherein the set of jurisdiction rules are based on data storage requirements for the vehicle; and

cause the one or more portions of the vehicle data stored in the first jurisdiction to be deleted from the first jurisdiction, moved to the second jurisdiction, or retained in the first jurisdiction based on the determination.

2. The system of claim 1 , wherein the determination is to move the one the

one or more portions of the vehicle data based on the set of jurisdiction rules, and wherein the system further comprises:

one or more computing devices configured to implement a data migration system

configured to:

receive a migration notice from the data jurisdiction management system that identifies the one or more portions of the vehicle data to be moved; and

move, based on the received migration notice, the one or more portions of the vehicle data stored in the first jurisdiction to the second jurisdiction.

3. The system of claim 1 , wherein the data jurisdiction management system is further configured to:

receive a rule update to add, delete, or modify one or more of the jurisdiction rules of the set of jurisdiction rules; and

propagate the rule update to one or more locally stored copies of the set of jurisdiction rules stored in the respective jurisdictions.

4. The system of claim 1 , wherein the vehicle data is further stored in a third jurisdiction and the jurisdiction change event is between the first jurisdiction and the second jurisdiction, and wherein the data jurisdiction management system is further configured to:

determine, based on the set of jurisdiction rules, another portion of the vehicle data stored for the vehicle in the third jurisdiction to be deleted, moved, or retained.

5. The system of claim 1 , wherein the data jurisdiction management system is further configured to:

detect, based on the set of jurisdiction rules, the conflict between the jurisdiction rule of the first jurisdiction and the jurisdiction rule of the second jurisdiction;

initiate a jurisdiction conflict resolution workflow to resolve the conflict; and

cause the one or more portions of the vehicle data stored in the first jurisdiction to be deleted, moved, or retained in accordance with a result of the conflict resolution workflow.

6. A method, comprising:

detecting a jurisdiction change event for a vehicle, using one or more computing devices configured to implement a data jurisdiction management system, wherein said detecting is based on received vehicle information, and wherein vehicle data for the vehicle is stored in a first jurisdiction;

determining, using the data jurisdiction management system, whether a conflict exists between a jurisdiction rule of the first jurisdiction and a jurisdiction rule of a second jurisdiction;

determining, using the data jurisdiction management system, based on the determination of whether the conflict exists, and based on a set of jurisdiction rules comprising the jurisdiction rule of the first jurisdiction and the jurisdiction rule of the second jurisdiction for data storage requirements for the vehicle, one or more portions of the vehicle data stored for the vehicle to be deleted, moved, or retained; and

causing the one or more portions of the vehicle data stored in the first jurisdiction to be deleted from the first jurisdiction, moved to the second jurisdiction, or retained in the first jurisdiction based on the determination.

7. The method of claim 6 , further comprising:

receiving, using the data jurisdiction management system, a rule update to add, delete, or modify one or more of the jurisdiction rules of the set of jurisdiction rules; and

propagating the rule update to one or more locally stored copies of the set of jurisdiction rules.

8. The method of claim 6 , further comprising:

determining, based on the set of jurisdiction rules, another portion of the vehicle data stored for the vehicle in a third jurisdiction to be deleted, moved, or retained, wherein the jurisdiction change event is between the first jurisdiction and the second jurisdiction.

9. The method of claim 6 , further comprising:

determining, based on the set of jurisdiction rules, that one or more portions of the vehicle data is to be stored in a different jurisdiction; and

sending one or more vehicle scheme packets to the vehicle based on the determination, wherein the vehicle scheme packets comprise information identifying a vehicle information destination in the different jurisdiction for information generated by the vehicle.

10. The method of claim 6 , further comprising:

determining whether the first jurisdiction, the second jurisdiction, or another jurisdiction is an authoritative jurisdiction for the vehicle;

deactivating an instance of a virtual engine control unit (ECU) for the vehicle in the first jurisdiction based on a determination that the first jurisdiction is not the authoritative jurisdiction; and

activating a new virtual ECU instance for the vehicle in the second or other jurisdiction based on additional determination that the second jurisdiction or the other jurisdiction is the authoritative jurisdiction for the vehicle.

11. The method of claim 6 , further comprising:

determining whether the first jurisdiction, the second jurisdiction, or another jurisdiction is an authoritative jurisdiction for the vehicle;

deactivating an instance of a vehicle shadow for the vehicle in the first jurisdiction based on a determination that the first jurisdiction is not the authoritative jurisdiction; and

activating a new vehicle shadow instance for the vehicle in the second or other jurisdiction based on additional determination that the second jurisdiction or the other jurisdiction is the authoritative jurisdiction for the vehicle.

12. One or more non-transitory, computer-readable storage media, storing program instructions that when executed on or across one or more processors cause the one or more processors to implement a data jurisdiction management system that implements:

detecting a jurisdiction change event for a vehicle, based on received vehicle information, wherein vehicle data for the vehicle is stored in a first jurisdiction;

determining, using the data jurisdiction management system, whether a conflict exists between a jurisdiction rule of the first jurisdiction and a jurisdiction rule of a second jurisdiction;

determining, based on the determination of whether the conflict exists, and based on a set of jurisdiction rules comprising the jurisdiction rule of the first jurisdiction and the jurisdiction rule of the second jurisdiction for data storage requirements for the vehicle, one or more portions of the vehicle data stored for the vehicle to be deleted, moved, or retained; and

causing the one or more portions of the vehicle data stored in the first jurisdiction to be deleted from the first jurisdiction, moved to the second jurisdiction, or retained in the first jurisdiction based on the determination.

13. The one or more non-transitory, computer-readable storage media as recited in claim 12 , storing further program instructions that when executed on or across the one or more processors cause the one or more processors to implement:

receiving a rule update to add, delete, or modify one or more of the jurisdiction rules of the set of jurisdiction rules; and

propagating the rule update to one or more locally stored copies of the set of jurisdiction rules stored in the respective jurisdictions.

14. The one or more non-transitory, computer-readable storage media as recited in claim 12 , storing further program instructions that when executed on or across the one or more processors cause the one or more processors to implement:

detecting, in the set of jurisdiction rules, the conflict between the jurisdiction rule of the first jurisdiction and the jurisdiction rule of the second jurisdiction;

initiating a jurisdiction conflict resolution workflow to resolve the conflict; and

wherein the said determining is performed in accordance with a result of the conflict resolution workflow.

15. The one or more non-transitory, computer-readable storage media as recited in claim 14 , wherein the conflict resolution workflow comprises a predetermined conflict resolution mechanism comprising a rules prioritization scheme for resolving the conflict between the jurisdiction rule of the first jurisdiction and the jurisdiction rule of the second jurisdiction.

16. The one or more non-transitory, computer-readable storage media as recited in claim 15 , wherein the rules prioritization scheme is determined using a machine learning model based on a past history of conflict resolution between the one or more jurisdictions.

17. The one or more non-transitory, computer-readable storage media as recited in claim 14 , wherein performing the conflict resolution workflow comprises:

providing a conflict resolution user interface; and

receiving one or more user decisions to resolve the conflict via the conflict resolution user interface.

18. The one or more non-transitory, computer-readable storage media as recited in claim 12 , wherein the said detecting the jurisdiction change event for the vehicle is further based on a machine learning model trained using a past history of received vehicle information and the jurisdiction rules.

19. The one or more non-transitory, computer-readable storage media as recited in claim 12 , wherein the vehicle information used to detect the jurisdiction change comprise global position system (GPS) data, vehicle registration information, or vehicle servicing information.

20. The one or more non-transitory, computer-readable storage media as recited in claim 12 , storing further program instructions that when executed on or across the one or more processors cause the one or more processors to implement:

determining, based on the set of jurisdiction rules for data storage requirements for the vehicle, the one or more portions of the vehicle data stored for the vehicle to be copied, partially copied, or refused to be copied; and

causing the one or more portions of the vehicle data stored in the first jurisdiction to be copied to the second jurisdiction, partially copied to the second jurisdiction, or refused to be copied to the second jurisdiction based on the determination.