Context-Aware Authentication Omission for Terminal Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional personal authentication methods in communication networks are cumbersome and burdensome, requiring frequent input of information, which hampers convenience and efficiency.

Innovation Solution

A determination apparatus that receives user authentication requests, acquires context information from terminal devices, and determines the need for authentication based on this information, allowing for the omission of authentication procedures when the context remains unchanged, thereby reducing the burden on users.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If conventional personal authentication methods are used, then security is maintained, but user convenience deteriorates due to frequent information input requirements

Engineering Contradiction:
Improveuser convenienceVSAvoidauthentication time
Core Design Contradiction:
Ease of operationVSLoss of time

Solution Approach 1:

The system performs preliminary authentication by acquiring context information (location, device state, user behavior patterns) before the actual authentication request. This preliminary assessment allows the system to predict whether full authentication is needed, thereby saving user time and effort in situations where authentication can be confidently omitted.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system uses automatically collected context information from the terminal device and environment to perform authentication decisions without requiring user input. The context acquisition unit gathers data passively from sensors and system states, enabling the authentication system to serve itself by making informed decisions about whether authentication is necessary.

Inventive Principle:
Principle #25Self-service

2Reliability

If authentication procedures are frequently required, then security is enhanced, but user burden increases

Engineering Contradiction:
Improveauthentication reliabilityVSAvoiduser burden
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system continuously monitors context information and uses this feedback to dynamically adjust authentication requirements. By analyzing changes in context (location, device state, behavior patterns), the system provides feedback loops that determine when authentication is necessary, balancing security requirements with user convenience based on real-time conditions.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system changes the parameters of authentication based on context information. Instead of applying fixed authentication rules, the system adjusts authentication requirements dynamically by evaluating context parameters such as location consistency, device state, and user behavior patterns, thereby reducing authentication frequency when parameters indicate low risk.

Inventive Principle:
Principle #35Parameter changes

3Ease of operation

If context information is acquired and analyzed, then authentication convenience is improved, but system complexity increases

Engineering Contradiction:
Improveauthentication convenienceVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The context acquisition unit is designed to gather multiple types of context information (location, device state, user behavior) using a unified multi-functional approach. This universal context collection mechanism serves multiple purposes: security assessment, user profiling, and authentication decision-making, thereby managing complexity through consolidation rather than separate specialized systems.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10129236B2Determination apparatus, determination method, and non-transitory computer readable storage medium
Publication Date: 2018.11.13 YAHOO JAPAN CORP
  • US10129236B2 patent drawing
  • US10129236B2 patent drawing
  • US10129236B2 patent drawing

AI summary

A determination apparatus according to an embodiment includes a receiving unit, an acquisition unit, and a determination unit. The receiving unit receives a request for authentication of identity of a user who uses a terminal device. The acquisition unit acquires context information that is information indicating a context of the terminal device. The determination unit performs determination related to authentication requested by the terminal device, on the basis of the context information acquired by the acquisition unit. For example, the determination unit determines whether an authentication procedure for an authentication request received by the receiving unit is needed on the basis of a change between context information that is acquired upon reception of an authentication request by the receiving unit and context information that has been acquired upon reception of a past authentication request.