Biometric Authentication for Multi-Level Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing access control systems face challenges in providing secure authentication across multiple stations with varying security levels, particularly due to the time-consuming nature of knowledge-based and biometric authentication methods, and the risk of unauthorized access when PINs are observed.
Innovation Solution
A method utilizing a mobile terminal with sensors and a central communication system that collects and compares biometric data across different access control stations, allowing for physical and logical access monitoring and control, enabling authentication based on security levels, with the mobile terminal initiating authentication procedures based on stored history and sensor data from both internal and external sensors.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If knowledge-based or biometric authentication is used, then security is improved, but authentication time increases and user convenience deteriorates
Solution Approach 1:
The system performs authentication in advance by capturing biometric data (face, voice, gait) and behavioral data during normal device usage, storing these data sets in the mobile terminal before actual access control is needed. This preliminary authentication preparation eliminates the need for time-consuming real-time authentication at access control points.
Solution Approach 2:
The patent replaces traditional manual authentication methods (PIN entry, physical key card insertion) with automated biometric recognition systems. The mobile terminal automatically captures and processes biometric data using sensors, substituting mechanical user actions with automated optical, acoustic, and motion-based recognition.
2Reliability
If multiple access control stations with different security levels are implemented, then security coverage is improved, but system complexity increases
Solution Approach 1:
The access control system is segmented into multiple stations with different security levels (first security level and second security level). Each station independently evaluates authentication results and determines the appropriate security level required, allowing the system to provide differentiated security coverage without requiring all stations to use the most complex authentication methods.
Solution Approach 2:
The mobile terminal is designed as a universal authentication device that can operate with multiple types of sensors (camera, microphone, motion sensors) and support multiple authentication methods (face recognition, voice recognition, gait analysis). This multi-functional terminal can interface with different security levels across various access control stations, reducing overall system complexity.
3Reliability
If continuous authentication is performed at all access control stations, then security is improved, but productivity decreases due to repeated authentication
Solution Approach 1:
The system performs authentication in advance by capturing biometric data (face, voice, gait) and behavioral data during normal device usage, storing these data sets in the mobile terminal before actual access control is needed. This preliminary authentication preparation eliminates the need for time-consuming real-time authentication at access control points.
Solution Approach 2:
The authentication process continues in the background during normal device usage, with the mobile terminal continuously capturing and updating biometric and behavioral data. This continuous background authentication maintains security while allowing uninterrupted user productivity, as no additional authentication actions are required from the user during normal operations.
Data Source
Figure 1
Figure 2
AI summary
The invention relates to a method for authenticating a person (200) comprising the steps of: - capturing person-specific data and comparing it with a reference data set, wherein a first successful authentication result is generated if a deviation remains below a threshold; - establishing a communication connection between the mobile device (106) and an access control station (102) with a first security level; - transmitting the first authentication result to the access control station (102), wherein, in the case of a successful first authentication result, release is granted by the access control station (102); - capturing further person-specific data by means of a further sensor and comparing it with a further reference data set, wherein a successful second authentication result is generated if a deviation remains below a threshold;- Establishing a communication link between the mobile device and an access control station (104) with a second security level; and - Transmitting the first successful and the second successful authentication result to the access control station (104), whereupon the access control station (104) grants access.;