Device Identification via Composite Fingerprinting
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The increasing use of devices with randomized MAC addresses, which change periodically, makes it unreliable to use MAC addresses as unique identifiers, posing challenges for systems that require accurate identification of user devices across different networks.
Innovation Solution
A system comprising an application, a gateway device, and a server device that determines a unique identifier for a user device by comparing information such as device characteristics and data associated with the device, regardless of the randomized MAC address, using a combination of information like IP address, brand, and model to create a unique identifier.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If MAC address randomization is implemented to enhance privacy and security, then device identity protection is improved, but device identification reliability deteriorates
Solution Approach 1:
The patent segments the device identification process into multiple independent components: hardware characteristics (CPU ID, GPU ID, memory information), software characteristics (OS version, application list), and network characteristics (IP address, gateway). Each component is collected and analyzed separately, then combined to form a comprehensive device fingerprint that remains reliable even when MAC addresses are randomized.
Solution Approach 2:
The patent creates a universal identification mechanism that works across multiple functions and scenarios. The device fingerprint can be used for content consumption tracking, network management, device recognition across different networks, and service provisioning. This multi-functional approach replaces the single-purpose MAC address with a comprehensive identification system that serves multiple purposes simultaneously.
2Measurement precision
If MAC addresses are made immutable for unique identification, then device identification accuracy is improved, but privacy protection deteriorates
Solution Approach 1:
The patent introduces an intermediary identification mechanism (device fingerprint) that mediates between the need for accurate identification and privacy protection. Instead of directly using immutable MAC addresses, the system collects multiple characteristics through a gateway device and server, processes them into a fingerprint, and uses this intermediary representation for identification purposes while keeping the actual device characteristics protected.
Solution Approach 2:
The patent changes the identification parameters from traditional MAC addresses to a composite fingerprint consisting of multiple device characteristics. This parameter transformation allows the system to maintain identification accuracy by using multiple stable hardware and software parameters while protecting privacy by not exposing any single sensitive identifier.
3Reliability
If device characteristics are collected and compared to determine unique identifiers, then identification accuracy across networks is improved, but system complexity increases
Solution Approach 1:
The patent implements preliminary action by having the gateway device collect and store device characteristics before the device connects to different networks. The device fingerprint is created and stored in advance, allowing for quick and accurate identification when the device connects to any network without requiring complex real-time analysis. This preliminary collection simplifies the overall system operation.
Solution Approach 2:
The device itself participates in the identification process by providing its own characteristics (CPU ID, GPU ID, memory information, OS version) through the gateway. The device essentially identifies itself by reporting its inherent characteristics, reducing the need for external identification infrastructure and simplifying the system architecture.
Data Source
AI summary
A server device may receive, from an application associated with a user device, a first user identifier associated with the user device and first information associated with the user device. The server device may receive, from a gateway device located at a premises associated with the user device, second information associated with an unidentified user device. The server device may store, based on a comparison of the first information associated with the user device and the second information associated with the unidentified user device, a second user identifier associated with the user device, wherein the comparison of the first information and the second information indicates the unidentified user device is the user device.


