Cloud-Based Authentication for Automatic Device Association

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional methods for associating portable electronic devices with multiple computing devices require manual pairing for each device, which is cumbersome and time-consuming, especially for users with multiple portable devices and computers.

Innovation Solution

Storing authentication information in a globally accessible data store that associates the portable device with a user, allowing any computer the user logs into to automatically authenticate and associate with the device without the need for manual pairing.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual pairing is performed for each portable device with every computing device, then secure authentication is ensured, but user convenience deteriorates and time consumption increases

Engineering Contradiction:
Improveauthentication securityVSAvoidpairing convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a cloud-based authentication server as an intermediary between portable devices and computing devices. The server stores authentication credentials and facilitates verification without requiring direct manual pairing between devices. The server acts as a trusted third party that enables automatic authentication while maintaining security through centralized credential management.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements preliminary authentication by storing credentials in advance on the authentication server during an initial setup phase. This preliminary action allows subsequent connections to be automatically authenticated without requiring users to perform manual pairing procedures each time, thus resolving the contradiction between security and convenience.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If manual pairing is performed for each portable device with every computing device, then device-specific trust relationships are established, but time consumption increases significantly

Engineering Contradiction:
Improvetrust relationshipVSAvoidpairing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent makes authentication credentials universal by storing them on a cloud-based server that can be accessed by multiple computing devices. A single portable device can automatically authenticate with any computing device that has access to the authentication server, eliminating the need for device-specific manual pairing while maintaining trusted relationships through centralized credential verification.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent effectively copies authentication credentials to a centralized cloud server, allowing multiple computing devices to access the same authentication information. This copying mechanism enables automatic authentication across different devices without requiring repeated manual pairing processes, thus reducing time consumption while maintaining security.

Inventive Principle:
Principle #26Copying

3Reliability

If authentication information is stored locally on each computing device, then security is maintained, but adaptability to multiple devices deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidmulti-device compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent uses an authentication server as an intermediary to store and manage credentials centrally. This intermediary approach maintains security through controlled access while enabling adaptability across multiple computing devices, as the server can authenticate any device that has proper access rights without requiring local credential storage on each device.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent transitions from a two-dimensional local storage model (credentials stored only on individual devices) to a three-dimensional distributed model (credentials stored on a cloud server accessible by multiple devices). This dimensional change enables both security through centralized control and adaptability through wide accessibility, resolving the contradiction between security and multi-device compatibility.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentEP2316097B1Protocol for device to station association
Publication Date: 2017.06.21 MICROSOFT TECHNOLOGY LICENSING LLC
  • EP2316097B1 patent drawingFigure 1
  • EP2316097B1 patent drawingFigure 2
  • EP2316097B1 patent drawingFigure 3

AI summary

A technique that enables a portable device to be automatically associated with a plurality of computers. Information that a computer can use to authenticate a portable device and establish a trusted relationship prior to creating an association with the portable device is created and stored in a data store that is accessible by a plurality of computers and is associated with a user of the portable device. When a computer discovers such a portable device with which it is not yet associated, the computer can identify a user logged into the computer and use information identifying the user to retrieve authentication information that is device independent and is expected to be presented by the portable device to authenticate it and allow automatic association.