IP Library Granted Patent US 11,416,626
Granted Patent B2
US 11,416,626 · App. 16/382,303 · Granted Aug 16, 2022

Query-aware privacy for access control data analytics

Inventors: Shaunak D. Bopardikar (Glastonbury, CT); Alberto Speranzon (Maple Grove, MN); Marina V. Blanton (Lockport, NY)
Assignee: Carrier Corporation
G06F21/604G06F21/35G06F21/6218G06K7/0095H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,416,626
App. No.
16/382,303
Granted
Aug 16, 2022
Kind
B2
Abstract

A method comprises: maintaining a database ( 120, 130 ) of access control events; dividing a portion ( 138 ) of the database into shares ( 140 A, 140 B, 140 C); passing the respective shares to respective third party servers ( 44 A, 44 B, 44 C); processing the shares in the respective third party servers; passing output of the processing to a further server ( 40 ) in common; and processing the output on the further server.

Claims (62)

1. A method comprising:

maintaining, by one or more servers, a database ( 120 , 130 ) of access control events, wherein the access control events involve a plurality of access-controlled points at a plurality of buildings;

dividing, by the one or more servers, a portion ( 138 ) of the database into shares ( 140 A, 140 B, 140 C), wherein the portion of the access events data contains evidence of a malfunctioning device, the evidence of a malfunctioning device comprising evidence of at least one of:

physical damage to the malfunctioning device; and

faulty performance of the malfunctioning device;

passing, by the one or more servers, the respective shares to respective third party servers ( 44 A, 44 B, 44 C);

processing the shares in the respective third party servers, wherein the dividing and the processing the shares in the third party servers limits effects of potential data compromise;

passing output of the processing from the third party servers to a further server ( 40 ); and

processing the output on the further server.

2. The method of claim 1 wherein:

the processing the output on the further server includes combining the shares.

3. The method of claim 1 wherein:

the processing comprises diagnosing the malfunctioning device.

4. The method of claim 3 wherein:

the diagnosing the malfunctioning device comprises diagnosing a malfunction in a credential device for accessing the access-controlled points.

5. The method of claim 3 wherein:

the diagnosing the malfunctioning device comprises diagnosing a malfunction in a reader.

6. The method of claim 1 wherein:

the portion of the access events data contains credential holder identifying information wherein the credential is used to access the access-controlled points.

7. The method of claim 6 wherein:

the dividing obscures the credential holder identifying information.

8. The method of claim 5 wherein:

each of the plurality of readers is at an associated access point of said plurality of access-controlled points.

9. The method of claim 3 wherein:

the results of the processing on the further server are communicated to the one or more servers; and

the one or more servers are used to identify the malfunctioning device.

10. The method of claim 1 wherein:

the results of the processing on the further server are communicated to the one or more servers; and

the one or more servers are used to identify the malfunctioning device.

11. An access control system ( 20 ), the access control system comprising:

a plurality of credential devices ( 24 );

a plurality of readers ( 26 ) at access-controlled points at a plurality of buildings for reading the credential devices; and

one or more servers ( 30 , 32 ) coupled to the readers and programmed to:

maintain an access events database ( 120 , 130 ) involving access to said access-controlled points;

divide a portion ( 138 ) of the access events database into shares ( 140 A, 140 B, 140 C), wherein the portion of the access events data contains evidence of a malfunctioning device, the evidence of a malfunctioning device comprising evidence of at least one of:

physical damage to the malfunctioning device, and

faulty performance of the malfunctioning device; and

pass the respective shares to respective third party servers ( 44 A, 44 B, 44 C), wherein the dividing and passing the shares to the third party servers limits effects of potential data compromise.

12. The system of claim 11 wherein:

the plurality of credential devices includes smartphones and RFID cards or badges.

13. The access control system of claim 11 wherein:

each of the plurality of readers is at an associated access point of said plurality of access-controlled points.

14. The system of claim 11 wherein:

the one or more servers are configured to receive further processed output from the third party servers as processed by a further server and wherein the one or more servers are configured to identify the malfunctioning device.

15. A method for using an access control system ( 20 ), the access control system comprising:

a plurality of credential devices ( 24 );

a plurality of readers ( 26 ) at access-controlled points at a plurality of buildings for reading the credential devices; and

one or more servers ( 30 , 32 ) coupled to the readers and programmed to:

maintain an access events database ( 120 , 130 ) involving access to said access-controlled points;

divide a portion ( 138 ) of the access events database into shares ( 140 A, 140 B, 140 C), wherein the portion of the access events data contains evidence of a malfunctioning device, the evidence of a malfunctioning device comprising evidence of at least one of:

physical damage to the malfunctioning device, and

faulty performance of the malfunctioning device; and

pass the respective shares to respective third party servers ( 44 A, 44 B, 44 C), the method comprising:

maintaining, by the one or more servers, the access events database;

dividing, by the one or more servers, the portion of the access events database into the shares; and

passing, by the one or more servers, the respective shares to the respective third party servers, wherein the dividing and the passing the shares to the third party servers limits effects of potential data compromise.

16. The method of claim 15 further comprising:

the plurality of credential devices includes smartphones and RFID cards or badges.

17. The method of claim 16 wherein:

the portion of the access events data contains credential holder identifying information.

18. The method of claim 15 further comprising:

receiving, by the one or more servers, further processed output of the third party servers as processed by a further server and wherein the one or more servers are used to identify the malfunctioning device.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 11, 2024
From: CARRIER CORPORATION
To: HONEYWELL INTERNATIONAL INC.
Reel/Frame 069175/0204 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 12, 2019
From: BOPARDIKAR, SHAUNAK D.; SPERANZON, ALBERTO; BLANTON, MARINA V.
To: CARRIER CORPORATION
Reel/Frame 048870/0317 →
Continuity (2)
Provisional Application 62672804 · May 17, 2018
Related Publication 20190354700A1 · Nov 21, 2019