IP Library › Granted Patent US 12,271,501
Granted Patent B2
US 12,271,501 · App. 17/381,710 · Granted Apr 8, 2025

Communication method of handling of a user using a token that permits collective disclosure of user data

Inventor: Takao Ogura (Yokohama, JP)
Assignee: FUJITSU LIMITED
G06F21/6245H04L63/0853
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,271,501
App. No.
17/381,710
Granted
Apr 8, 2025
Kind
B2
Abstract

A procedure includes transmitting request information concerning user data requested to be collectively acquired, to an agreement server, requesting a token by scheduling a transmission timing of a token request for requesting to issue the token associated with a plurality of users from whom the agreement has been obtained among the users who fall under the request information, and by transmitting the token request to the agreement server in accordance with the scheduling, and acquiring, from a data management server, the user data not acquired yet in the user data on the users from whom the agreement has been obtained, by using the token acquired in the requesting the token.

Claims (29)

1. A non-transitory computer-readable recording medium storing a program that causes a computer to execute a procedure, the procedure comprising:

executing the procedure by a data utilization server including:

transmitting request information concerning user data of a plurality of users to be collectively acquired, to an agreement server, the request information being transmitted to a plurality of terminals of the plurality of users who are determined to fall under the request information whereby the plurality of users are respectively requested to approve an agreement to allow the user data of the plurality of users to be collectively disclosed to the data utilization server, the user data to be acquired from a data management server that manages the user data on the plurality of users, by using a token that is issued by the agreement server and that permits collective disclosure of the user data on the plurality of users from whom the agreement has been obtained;

transmitting a first token request to the agreement server, based on occurrence of a transmission timing scheduled for the first token request, to thereby trigger acquiring, from the data management server, of respective user data of users from whom the agreement to allow disclosure of the respective user data has been obtained among the plurality of users who fall under the request information; and

acquiring, from the data management server, user data that is not yet acquired among the user data on the plurality of users from whom the agreement has been obtained, by causing the user data that is not yet acquired using a second token transmitted at the transmission timing scheduled and information indicating a difference between the users from whom the agreement has been obtained and users associated with the user data that is not yet acquired.

2. The non-transitory computer-readable recording medium according to claim 1 , wherein the transmission timing includes being set to a predetermined time.

3. The non-transitory computer-readable recording medium according to claim 1 , wherein at a time when the agreement server requests to transmit the first token request, the first token request is transmitted to the agreement server even though the time is not the transmission timing.

4. The non-transitory computer-readable recording medium according to claim 1 , wherein the request information includes a condition of a data content that the data utilization server desires to acquire.

5. The non-transitory computer-readable recording medium according to claim 4 , wherein the condition of the data content includes a temporal condition.

6. A non-transitory computer-readable recording medium storing a program that causes a computer to execute a procedure, the procedure comprising:

executing the procedure by an agreement server including:

receiving request information concerning user data of a plurality of users to be collectively acquired by a data utilization server, the request information being associated with a plurality of terminals of the plurality of users who are determined to fall under the request information and the data utilization server acquiring the user data from a data management server that manages the user data on the plurality of users, by using a token that is associated with the plurality of users from whom an agreement has been obtained, and that is issued by an agreement server that requests the plurality of users to approve an agreement to allow the user data of the plurality of users to be collectively disclosed to the data utilization server, the request information being received from the data utilization server;

extracting user data of concerned users who fall under the request information and requesting the agreement from the concerned users based on the request information being received;

based on occurrence of a timing scheduled for a token request for requesting to issue a token is received from the data utilization server, issuing a respective token associated with agreement users from whom the agreement has been obtained and transmitting the respective token to the data utilization server; and

based on a request by the data management server to verify the respective token, permitting the data management server to disclose user data on a non-permitting user who has not permitted disclosure provided the non-permitting user is among the agreement users based on the token request at the timing scheduled and information indicating a difference between the agreement users from whom the agreement has been obtained and users associated with the user data that is not yet acquired.

7. The non-transitory computer-readable recording medium according to claim 6 , wherein the procedure requests the agreement from a new concerned user who did not fall under the request information when the extracting was performed but falls under the request information afterwards.

8. The non-transitory computer-readable recording medium according to claim 7 , the procedure further comprising:

requesting the data utilization server to transmit the token request when a predetermined condition is satisfied.

9. The non-transitory computer-readable recording medium according to claim 8 , wherein the predetermined condition includes a condition where a number of new concerned users reaches a threshold or more.

10. The non-transitory computer-readable recording medium according to claim 8 , wherein the predetermined condition includes a condition where a number of non-permitting users reaches a second threshold or more.

11. A communication method comprising:

transmitting request information concerning user data of a plurality of users to be collectively acquired, to an agreement server, the request information being transmitted to a plurality of terminals of a plurality of users the plurality of users who are determined to fall under the request information whereby the plurality of users are respectively requested to approve an agreement to disclose the user data to a data utilization server, the user data to be acquired from a data management server by using a token that is issued by the agreement server and that is associated with the plurality of users from whom the agreement has been obtained, the data management server managing the user data on the plurality of users, by the data utilization server;

receiving the request information, extracting concerned users who fall under the request information, and requesting the agreement from the concerned users, by the agreement server;

receiving a token request, by the agreement server, from the data utilization server based on occurrence of a transmission timing scheduled for the token request, to thereby trigger acquiring, from the data management server, of agreement users from whom the agreement has been obtained and transmitting the token to the data utilization server, by the agreement server;

receiving the token and transmitting, to the data management server, a data request that includes the token and requests to disclose the user data on the users associated with the token, by the data utilization server;

receiving the data request and transmitting a token verification request that is a request to verify the token to the agreement server, by the data management server;

receiving the token verification request and transmitting, to the data management server, a token permission for permitting the data management server to disclose the user data on a non-permitting user who has not yet permitted disclosure before among the agreement users associated with the token, by the agreement server; and

receiving the token permission and transmitting the user data on the non-permitting user to the data utilization server, by the data management server, based on the receiving of the token request at the transmission timing scheduled and information indicating a difference between the agreement users from whom the agreement has been obtained and users associated with the user data that is not yet acquired.

12. The communication method according to claim 11 , wherein a message transmitted and received between the data utilization server and the agreement server conforms to a client initiated backchannel authentication (CIBA) protocol.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 21, 2021
From: OGURA, TAKAO
To: FUJITSU LIMITED
Reel/Frame 056936/0370 →
Priority Claims (1)
JP 2020-168516 · Oct 5, 2020 · national
Continuity (1)
Related Publication 20220108036A1 · Apr 7, 2022
References Cited (10)
US 20200034563A1 · Stockert · 2020 [cited by examiner]
US 20200042727A1 · Ogura et al. · 2020 [cited by applicant]
US 20200092385A1 · Ogura et al. · 2020 [cited by applicant]
US 20200302088A1 · Lee · 2020 [cited by examiner]
US 20200304542A1 · Ilincic · 2020 [cited by examiner]
JP 2015201098 · 2015 [cited by applicant]
JP 202024511 · 2020 [cited by applicant]
JP 202046959 · 2020 [cited by applicant]
Office Action dated Feb. 8, 2024 in Japanese Patent Application No. 2020-168516. [cited by applicant]
NRI Secure Technologies, Ltd., “Standards Developed by the OpenID Foundation Details”, Certification Authorization Studies, Sep. 25, 2020; 82 pages. [cited by applicant]