Core Network Authenticator Using Network Profiling for Secure Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional two-factor authentication (2FA) methods can be compromised if an illegitimate user obtains a user's password and email address, allowing access to the user's email account and potentially sensitive information.
Innovation Solution
Utilizing a communication service provider's core network as a second or third factor authenticator, which collects and analyzes network information to enhance user profiling and anomaly detection, thereby improving authentication security and user experience.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional two-factor authentication (password + email) is used, then authentication process is simple and easy to operate, but security is compromised when illegitimate users obtain password and email address
Solution Approach 1:
The patent introduces a core network authenticator as an intermediary component between the user equipment and the authentication system. This mediator leverages existing core network information (IMSI, location data, network registration status) to perform authentication without requiring users to manually provide additional factors, thus maintaining ease of operation while enhancing security through network-based verification
Solution Approach 2:
The system performs authentication automatically by utilizing information already collected by the core network during normal network operations. The core network authenticator self-serviceedly retrieves user identification information, verifies authentication status, and communicates with the authentication server without requiring additional user actions beyond standard network connectivity, thereby maintaining operational simplicity while improving security
2Reliability
If core network information is used for authentication, then user profiling and anomaly detection are enhanced, but system complexity increases
Solution Approach 1:
The core network authenticator is designed to perform multiple functions using a single integrated component: it retrieves user identification information, verifies authentication status with the authentication server, performs user profiling based on network behavior, detects anomalies in authentication patterns, and communicates results to the application. This multi-functional design consolidates what would otherwise require separate systems into one unified solution
Solution Approach 2:
The patent introduces a core network authenticator as an intermediary component between the user equipment and the authentication system. This mediator leverages existing core network information (IMSI, location data, network registration status) to perform authentication without requiring users to manually provide additional factors, thus maintaining ease of operation while enhancing security through network-based verification
Data Source
AI summary
A system may use information obtained by a communication service provider's core network for multi-factor authentication.


