Credential Presentation Sequence Enforcement for Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing access control systems are vulnerable to unauthorized access when credentials are misplaced or stolen, as they rely solely on the presentation of badges or QR codes without ensuring a secure sequence and timing scheme for multiple credentials.

Innovation Solution

A security system that includes a gateway, sensor, and controller configured to monitor and enforce a specific sequence and timing scheme for presenting multiple types of credentials, such as security cards and biometric data, to grant or deny access, incorporating protocols that require credentials to be presented in a predetermined order and within specified time frames.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple credentials are required to be presented in a specific sequence and timing scheme, then security against unauthorized access is improved, but device complexity and difficulty of operation increase

Engineering Contradiction:
ImprovesecurityVSAvoidaccess control protocol complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system pre-establishes a credential presentation protocol that defines the required sequence and timing for presenting multiple credentials. This protocol is configured in advance, allowing the system to automatically enforce security requirements without real-time complex decision-making, thus improving security while managing complexity through pre-planned procedures

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The access control process is divided into discrete credential presentation steps, each with specific timing requirements. By segmenting the authentication process into distinct phases (first credential, second credential, etc.), the system makes the complex protocol more manageable and easier to implement while maintaining high security standards

Inventive Principle:
Principle #1Segmentation

2Reliability

If multiple credentials are required to be presented in a specific sequence and timing scheme, then security against unauthorized access is improved, but ease of operation deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidcredential presentation ease
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system provides real-time feedback to users during the credential presentation process, indicating whether credentials are being accepted or if timing/sequence requirements are not met. This feedback mechanism guides users through the complex protocol, improving ease of operation while maintaining security requirements

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The credential presentation protocol is pre-configured with specific sequences and timing requirements, allowing the system to automatically guide users through the authentication process. This preliminary setup reduces the cognitive burden on users during actual authentication while maintaining high security standards

Inventive Principle:
Principle #10Preliminary action

3Reliability

If credentials must be presented within a predetermined maximum period of time, then security against stolen credentials is improved, but loss of time for legitimate access increases

Engineering Contradiction:
ImprovesecurityVSAvoidaccess time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system implements periodic credential presentation requirements with specific timing intervals between credentials. By defining maximum time periods for each credential presentation step, the system ensures that stolen credentials cannot be used effectively (as they would not have the proper timing), while legitimate users can still access quickly by following the established rhythm of the protocol

Inventive Principle:
Principle #19Periodic action

Data Source

PatentEP3716224B1System and method for providing secure access
Publication Date: 2023.10.25 CARRIER CORP
  • EP3716224B1 patent drawingFigure 1
  • EP3716224B1 patent drawingFigure 2
  • EP3716224B1 patent drawingFigure 3

AI summary

Disclosed is a security system 200 including: a first gateway 210 comprising a security access gateway; a first sensor 220 comprising a security sensor, the first sensor 220 being engageable to obtain access through the first gateway 210; a controller 240 operationally connected to the first gateway 210 and the first sensor 220, the controller 240 being configured for: rending a first determination that the first sensor 220 senses a first security access credential is being presented, and thereafter: rendering a second determining to monitor for compliance with protocols identifying a sequence and a timing scheme for presenting additional security access credentials; rending a further determination including one of: a determination to grant access if the presenting of additional security access credentials complies with the protocols; and a determination to deny access if the presenting of additional security access credentials fails to comply with the protocols.