Context-Aware Mobile Access Control via Sensor Fusion

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile device security protocols often burden users with unnecessary authentication checks, such as entering passwords or providing biometric proof, especially when the device has been inactive, leading to frustration and time loss, especially in urgent situations where speed is required.

Innovation Solution

Implementing a context-aware access control system that uses various sensors to automatically acquire contextual information from the user's environment, allowing for modulated access to applications based on predefined access control policies, thereby reducing the need for frequent authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If authentication checks are performed every time the device is accessed, then security is improved, but user convenience deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements dynamic access control where the authentication requirements change based on contextual factors such as location, time, and device state. The system transitions from static authentication (always requiring password) to dynamic authentication (context-dependent authentication), resolving the contradiction by making security measures adaptive rather than fixed.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the parameters of authentication based on contextual information. When contextual parameters (location, time, device state) match expected patterns, the authentication parameters are relaxed or eliminated. This allows the system to maintain security when needed while providing convenience when contextual indicators suggest low risk.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If authentication checks are performed frequently, then security is improved, but time consumption increases

Engineering Contradiction:
ImprovesecurityVSAvoidtime consumption
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary contextual assessment before requiring authentication. By evaluating location, time, and device state in advance, the system can determine whether authentication is necessary, avoiding unnecessary authentication steps and reducing time consumption while maintaining security when contextual indicators suggest risk.

Inventive Principle:
Principle #10Preliminary action

3Measurement precision

If contextual information is collected and processed, then access control accuracy is improved, but device complexity increases

Engineering Contradiction:
Improveaccess control accuracyVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent leverages existing multi-functional components in mobile devices (sensors, GPS, clock) to gather contextual information. Rather than adding dedicated hardware for contextual assessment, the system repurposes existing components with multiple functions, thereby improving access control accuracy without proportionally increasing device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9654977B2Contextualized access control
Publication Date: 2017.05.16 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US9654977B2 patent drawing
  • US9654977B2 patent drawing
  • US9654977B2 patent drawing

AI summary

Contextual information associated with a mobile device can be automatically acquired using various sensors on the device. Based on the contextual information and an access control policy associated with an application on the mobile device, a level of access to the application can be determined. An entity may be identified, authenticated and authorized to gain full access, varying degree of restricted access or no access to the application based on the access control policy. Different applications may be provided different levels of access based on the access control policy associated with each application.