Biometric Authentication for Network Access via Server Matching

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current network access authentication methods, particularly those using Wi-Fi and public wireless networks, are complex, insecure, and poorly usable, often requiring cumbersome password settings and lacking in user-friendly roaming capabilities.

Innovation Solution

An authentication method utilizing biometric feature data, such as facial, iris, fingerprint, or voice features, to authenticate users without the need for password settings, leveraging a server-based database to match user-provided biometric data with pre-stored data for secure and efficient network access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If password-based authentication is used for network access, then security can be maintained through preset passwords, but the authentication process becomes complex and usability deteriorates

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent replaces the mechanical password entry system with a biometric recognition system. Instead of manually entering passwords, the system uses automated biometric data collection and comparison through servers, substituting human interaction with automated recognition technology to simplify the authentication process while maintaining security

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent introduces a server as an intermediary between the user terminal and the authentication verification process. The server stores biometric data, performs data comparison, and manages authentication, acting as a mediator that simplifies the user's interaction while ensuring secure verification through centralized data management

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If biometric feature data is used for authentication, then the authentication process is simplified and usability is improved, but the system complexity increases due to server-based database requirements

Engineering Contradiction:
Improveauthentication process simplicityVSAvoidsystem architecture complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent extracts the complex biometric data storage and comparison functions from the user terminal and places them in a separate server system. This extraction allows the terminal to remain simple while handling only data collection and transmission, separating authentication logic from the user interface to manage system complexity

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent creates a universal server system that can handle multiple authentication requests from different terminals using the same biometric verification process. The server provides multi-functional support for storing, comparing, and verifying biometric data across various devices and network scenarios, reducing overall system complexity through standardized processes

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Device complexity

If traditional password authentication is used, then device complexity remains low, but network security and roaming capabilities are insufficient

Engineering Contradiction:
Improveauthentication system complexityVSAvoidnetwork security and roaming capability
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent implements preliminary action by pre-storing user biometric data in the server database before actual authentication occurs. During roaming or network access scenarios, the system can quickly verify user identity by comparing collected biometric data against pre-stored data, enabling fast and secure authentication without requiring complex real-time verification processes

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent uses copying by creating and storing digital copies of user biometric data in the server database. These digital copies serve as reference patterns for authentication, allowing the system to verify user identity through data comparison rather than requiring the original physical biometric characteristics, thereby enhancing security and roaming capabilities

Inventive Principle:
Principle #26Copying

Data Source

PatentEP3595258B1Authentication method for realising access network, authentication device and user equipment
Publication Date: 2022.05.11 HUAWEI TECH CO LTD
  • EP3595258B1 patent drawingFigure 1
  • EP3595258B1 patent drawingFigure 2-1
  • EP3595258B1 patent drawingFigure 2-2

AI summary

This application discloses an authentication method for accessing a network, an authentication device, and a user device, and pertains to the field of communications technologies. The method is applied to an authentication device, and the method includes: receiving, by the authentication device, an authentication response message sent by user device, where the authentication response message includes first data, and the first data is data obtained by the user device based on biometric feature data of a target user; then obtaining, by the authentication device, second data from a server, where the second data is data obtained by the server based on biometric feature data of a user; generating, by the authentication device, indication information when the first data is the same as the second data, where the indication information is used to indicate that the user device is authenticated; and then sending, by the authentication device, the indication information to the user device. In this application, a problem that an authentication process for accessing a network is relatively complex, network usability is relatively poor, and security is relatively poor is resolved, thereby simplifying the authentication process for accessing a network, and improving network usability and security.