Out-of-band Bluetooth Pairing via Mobile Management Server

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing short-range wireless computer networks, such as Bluetooth, face challenges in securing communications between devices due to the inefficiencies of the pairing process, which can be vulnerable to security attacks and are not instantaneous, especially when relying on in-band pairing methods.

Innovation Solution

The method involves verifying enrollment credentials and obtaining security tokens for both fixed and mobile devices, followed by an out-of-band pairing process facilitated by a mobile device management server, which improves security and speeds up the pairing process by utilizing biometric data authentication and infrastructure networks for secure token exchange.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If in-band pairing is used for Bluetooth device pairing, then the pairing process can be completed through the existing communication channel, but the pairing is vulnerable to security attacks and not instantaneous

Engineering Contradiction:
Improvepairing securityVSAvoidpairing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces a mobile device as an intermediary to facilitate out-of-band pairing between fixed devices. The mobile device generates and transmits pairing codes through a different communication channel (e.g., NFC, QR code, or wireless display protocol) than the Bluetooth channel, serving as a secure mediator that prevents eavesdropping attacks while maintaining quick pairing speed.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If out-of-band pairing is implemented using a mobile device management server, then pairing security is enhanced against eavesdropping attacks, but the system complexity increases

Engineering Contradiction:
Improvepairing securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The mobile device performs self-service by automatically generating pairing codes and transmitting them to the fixed device without requiring manual intervention or complex server-side processing. The mobile device's Bluetooth subsystem autonomously manages the out-of-band pairing process, reducing overall system complexity while maintaining high security.

Inventive Principle:
Principle #25Self-service

3Reliability

If multiple back-and-forth communications are required for pairing, then security verification can be performed, but the pairing process becomes time-consuming and inefficient

Engineering Contradiction:
Improveidentity verificationVSAvoidpairing efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The mobile device performs preliminary actions by pre-generating and storing pairing codes before the actual Bluetooth pairing occurs. These pre-prepared codes are then quickly transmitted to the fixed device through an out-of-band channel, eliminating the need for multiple back-and-forth communications during the pairing process and achieving both security and efficiency.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9730001B2Proximity based authentication using bluetooth
Publication Date: 2017.08.08 OMNISSA LLC
  • US9730001B2 patent drawing
  • US9730001B2 patent drawing
  • US9730001B2 patent drawing

AI summary

Techniques for securing communications between fixed devices and mobile devices. A mobile device management server mediates communications between the fixed device and mobile device. The mobile device management server enrolls mobile devices and then assists with pairing the mobile devices to fixed devices in an out-of-band manner. This enrollment, coupled with out-of-band pairing, improves the speed and security of authenticating communication between fixed and mobile devices. If the mobile device has appropriate capabilities, the mobile device management server may request that the mobile device obtain and verify biometric data from a user prior to enrollment and performing authentication procedures.