Device Authentication via Power Cycle Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods lack an effective authentication mechanism for devices connecting to internet services, particularly for smaller devices without built-in mobile network interfaces, where unique identifiers like MSISDN can be compromised, allowing unauthorized access.

Innovation Solution

A method involving a server that sends messages to user equipment to power off and on a device, detecting availability, and authenticating user control through these actions, ensuring only rightful owners can access the device via the communications network.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If devices use pre-assigned unique identifiers like MSISDN for registration, then device identification is simplified, but security is compromised allowing unauthorized access

Engineering Contradiction:
Improvedevice registrationVSAvoidaccess security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary authentication actions before granting access. The owner must power off the device in response to a first message, and then power it on in response to a second message. These preliminary actions verify ownership before the device is registered or accessed, preventing unauthorized access while maintaining simplified registration processes.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The server acts as an intermediary between the user equipment and the device. It coordinates the authentication process by sending messages requesting power off and power on actions, verifying device availability at appropriate times, and only then allowing access. This intermediary role ensures security without requiring complex authentication mechanisms at the device level.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If devices without mobile network interfaces use gateways for connection, then connectivity is enabled for small devices, but authentication complexity increases

Engineering Contradiction:
Improvedevice connectivityVSAvoidauthentication process
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The authentication mechanism works universally across different device types and connection methods. Whether a device connects directly via mobile network or through a gateway, the same power off/power on verification process applies. The server manages the authentication logic centrally, making the process adaptable to various device capabilities without increasing device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9648000B2Authenticating a device when connecting it to a service
Publication Date: 2017.05.09 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US9648000B2 patent drawing
  • US9648000B2 patent drawing
  • US9648000B2 patent drawing

AI summary

There is provided a method and apparatus for authenticating user equipment access to a device over a communications network. The method comprises: sending a first message to the user equipment, the first message requesting the user to power off the device; detecting that the device is not available; sending a second message to the user equipment, the second message requesting that the user power on the device; detecting that the device is available; and if both detections are positive, then authenticating user equipment access to the device.