Device Identification via Intermediary Authentication Server

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Content service providers face challenges in establishing a uniform and secure authentication method across diverse devices, as existing security solutions are inconsistent and not easily verifiable, making it difficult to manage content access and prevent unauthorized sharing.

Innovation Solution

The system allows for device authentication using any security solution, generating identifiers independent of the device type or security solution, enabling devices to request content secured by a different security protocol, and renewing identities and keys for secure communication with a content distribution system.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a dedicated public key infrastructure (PKI) is used for secure authentication, then security is improved, but compatibility across all devices deteriorates and additional software installation is required

Engineering Contradiction:
Improveauthentication securityVSAvoiddevice compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces an intermediary authentication mechanism that mediates between the security requirements and device compatibility. Instead of requiring dedicated PKI infrastructure on each device, the system uses an intermediary authentication server that handles the cryptographic operations, allowing devices to authenticate securely without having PKI software installed locally.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces the mechanical/PKI-based authentication system with a software-based alternative that uses standard communication protocols. Instead of relying on hardware-enforced PKI infrastructure, the system uses software-implemented cryptographic verification that can operate across diverse device platforms without additional hardware or software installation.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Adaptability or versatility

If third party DRM security solutions are used, then accessibility across device classes is improved, but security verifiability outside the security solution deteriorates

Engineering Contradiction:
Improvecross-device accessibilityVSAvoidsecurity verifiability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces an intermediary authentication server that acts as a trusted third party to verify security credentials. This intermediary can validate authentication tokens from various DRM systems and provide verifiable confirmation of device authentication status outside the original security solution context, enabling cross-platform verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates a universal authentication mechanism that can verify security credentials from multiple different DRM systems and security solutions. The authentication server is designed to handle various security protocols and provide a unified verification interface, making security verifiable across different platforms and security implementations.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If device authentication is tied to a specific security solution, then security control is improved, but ability to access content from different security solutions deteriorates

Engineering Contradiction:
Improvesecurity controlVSAvoidcross-security-solution access
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements a universal authentication token system that maintains security control while enabling access across different security solutions. The authentication server issues standardized tokens that encode security verification information in a solution-agnostic format, allowing authenticated devices to access content protected by different DRM systems without being locked to a single security solution.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent transforms the authentication mechanism by changing the parameters from solution-specific credentials to standardized authentication tokens. This parameter transformation allows the system to maintain strict security control through verified authentication while enabling cross-solution access through standardized token presentation and verification.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS20190297077A1Methods For Security System-Agnostic Uniform Device Identification
Publication Date: 2019.09.26 COMCAST CABLE COMM LLC
  • US20190297077A1 patent drawing
  • US20190297077A1 patent drawing
  • US20190297077A1 patent drawing

AI summary

Systems and methods are described for authentication are described. A computing device may receive a request. The computing device may authenticate the request. The computing device may transmit a key to a device that sent the request.