Cellular Authentication Cell for Mobile Terminal Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current electronic authentication systems are not compatible with each other, leading to reduced user acceptance and increased costs, and security concerns due to the variety of methods, including issues with data being read and copied from cards.

Innovation Solution

A method and system using a cellular mobile radio network where a base station creates an authentication cell, allowing mobile radio terminals to register exclusively within this cell using a neutral or special network operator identification, ensuring secure authentication by combining unique terminal and cell identifiers, with optional additional biometric or password verification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple different authentication systems are used, then various authentication methods can be supported, but user acceptance is reduced and costs increase

Engineering Contradiction:
Improveauthentication method compatibilityVSAvoiduser acceptance
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent applies universality by using the mobile radio network infrastructure to provide authentication services across multiple access devices and locations. The mobile terminal's existing identifier serves multiple authentication purposes, eliminating the need for separate authentication systems at each location while maintaining broad compatibility and user acceptance.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If multiple different authentication systems are used, then various authentication methods can be supported, but costs increase

Engineering Contradiction:
Improveauthentication method compatibilityVSAvoidimplementation cost
Core Design Contradiction:
Adaptability or versatilityVSEase of manufacture

Solution Approach 1:

The patent leverages the existing mobile radio network infrastructure and the mobile terminal's built-in identifier to provide authentication services. This approach eliminates the need to deploy separate authentication systems at each access device, significantly reducing implementation costs while maintaining versatility across different locations and devices.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The mobile terminal itself provides the authentication identifier without requiring additional authentication devices or infrastructure. The terminal uses its existing mobile radio network identifier, which it already possesses for network access, to authenticate at various access devices, eliminating the need for separate authentication credentials at each location.

Inventive Principle:
Principle #25Self-service

3Ease of operation

If electronic data is stored on cards, then authentication can be performed, but security is compromised due to data being read and copied

Engineering Contradiction:
Improveauthentication capabilityVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the mechanical/card-based authentication system with a radio-based authentication system. Instead of storing authentication data on physical cards that can be read and copied, the system uses the mobile terminal's radio communication capability and its embedded identifier to provide secure authentication, eliminating the security vulnerabilities of card-based systems.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

4Adaptability or versatility

If a base station broadcasts a special network operator identification, then mobile terminals from different operators can register, but network compatibility issues arise

Engineering Contradiction:
Improvemulti-operator supportVSAvoidnetwork compatibility
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent uses the mobile radio network infrastructure as an intermediary to resolve compatibility issues. The base station broadcasts a special network operator identification that acts as a mediator, allowing mobile terminals from different operators to register and authenticate without direct conflicts between operator networks. The authentication entity coordinates the authentication process, ensuring proper handling of multi-operator scenarios.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP2476272B8Method and system for user authentication by means of a cellular mobile radio network
Publication Date: 2018.10.17 DEUTSCHE TELEKOM AG

AI summary

The invention relates to a method and system for authentication of a user (11) at an access device by means of a cellular mobile radio network (17). The access device gives access to a facility or a service different from the mobile radio network (17). The cellular mobile radio network (17) comprises a base station (12) defining a mobile radio cell (16) with a unique identifier. A mobile radio terminal (14) having a unique identifier books into the mobile radio network (17) via said base station (12), and the authentication is carried out by means of the identifier of the mobile radio cell (16) and the identifier of the mobile radio terminal (14). The base station (12) is arranged at the location of the access device so that the access device has its own mobile radio cell (16) serviced by the base station (12), this mobile radio cell (16) defining an authentication cell (16) of the mobile radio network (17). The mobile radio terminal (14) is caused to book into the mobile radio network (17) via said base station (12) of said authentication cell (16) for the purpose of authentication at the access device whereupon the identifiers are sent to an authentication entity (18) that checks whether the user (11) is permitted to get access at the access device. Access is granted or denied depending on the permission of the user (11 ).