Wireless Device Authentication via Asserted Identifier
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Challenges exist in exploiting external authentication for wireless communication devices while preserving identifier privacy, particularly when using anonymous identifiers for primary authentication.
Innovation Solution
The method involves an external authentication server sending an asserted identifier to the wireless communication network, allowing the network to authenticate the device based on this identifier, even if an anonymous identifier was initially used.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If external authentication server is used for primary authentication, then authentication capability is improved, but identifier privacy is compromised
Solution Approach 1:
The patent introduces an intermediary mechanism where the authentication server asserts identifiers without directly exposing private identifier information. The network node acts as a mediator that receives the asserted identifier and uses it for authentication purposes without the external server needing to know the actual private identifier, thus preserving privacy while enabling authentication.
Solution Approach 2:
The patent creates a copy or representation of the identifier (asserted identifier) that can be used for authentication without revealing the original private identifier. The external authentication server generates or asserts an identifier that serves as a functional copy for authentication purposes, while the actual private identifier remains protected and undisclosed.
2Loss of information
If anonymous identifier is used for authentication, then identifier privacy is preserved, but authentication verification becomes difficult
Solution Approach 1:
The patent uses an intermediary asserted identifier that bridges the gap between anonymous identification and verification. The network node receives the asserted identifier from the external authentication server and uses it as an intermediary representation that enables verification without requiring the actual private identifier to be exposed or known by the external server.
Solution Approach 2:
The patent replaces the direct mechanical linkage between identifier presentation and verification with a substituted mechanism using asserted identifiers. Instead of directly verifying the anonymous identifier, the system uses the asserted identifier as a substitute that carries the necessary verification information without exposing private identifier details.
Data Source
AI summary
An authentication server (14) is configured for use in a wireless communication network (10). The authentication server (14) initiates primary authentication of a wireless communication device (12) with an external authentication server (20) that is external to the wireless communication network (10). The authentication server (14) further receives signaling (24) that indicates the primary authentication of the wireless communication device (12) with the external authentication server (20) succeeded and that includes an identifier (26) asserted by the external authentication server (20) as authentically identifying the wireless communication device (12). The authentication server (14) authenticates the wireless communication device (12) with the wireless communication network (10) based on the identifier (26) included in the received signaling (24).


