Distributed Authentication Stations for Faster Secure Mobile Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In healthcare environments, clinicians face cumbersome and multiple authentication procedures when accessing patient information across different devices, especially in mobile settings where sophisticated authentication modalities are lacking, leading to inefficient and stressful log-on processes.

Innovation Solution

Distributed authentication stations equipped with various modalities (e.g., fingerprint, smart-card, iris scanner) are deployed, allowing mobile devices to locate and wirelessly pair with these stations for seamless authentication, enabling access to secure resources via multiple-party communication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple authentication modalities are required for secure access, then authentication security is improved, but authentication complexity and time required increase

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The authentication system is segmented into distributed authentication stations deployed throughout the healthcare facility, each capable of performing strong authentication. This allows clinicians to authenticate at the nearest station rather than traveling to a centralized authentication point, reducing time while maintaining security through multiple modalities at each station

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Authentication stations are pre-configured with multiple authentication modalities (biometric, token-based, card-based) before use. This preliminary preparation ensures that when a clinician needs authentication, the system is ready to provide secure verification immediately without requiring sequential setup or configuration during the authentication process

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If authentication stations are distributed throughout the facility, then access convenience is improved, but system complexity increases

Engineering Contradiction:
Improveaccess convenienceVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

Each authentication station is designed as a universal device capable of supporting multiple authentication modalities (fingerprint readers, smart cards, tokens, mobile device authentication). This multi-functionality allows a single station type to serve diverse authentication needs throughout the facility, simplifying the overall system architecture while maintaining convenience

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The authentication stations act as intermediary devices between the clinician's mobile device and the healthcare information system. These stations provide the necessary authentication functionality without requiring the mobile devices themselves to have sophisticated built-in authentication capabilities, thereby simplifying the overall system while enabling secure access

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If mobile devices are used for authentication, then portability and flexibility are improved, but authentication capability is reduced

Engineering Contradiction:
ImproveportabilityVSAvoidauthentication capability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system merges the portability of mobile devices with the authentication capability of dedicated stations. The mobile device serves as a portable carrier that can communicate with distributed authentication stations, combining the flexibility of mobile computing with the security of dedicated authentication hardware through wireless communication protocols

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS12475979B2Strong authentication via distributed stations
Publication Date: 2025.11.18 GOLDMAN SACHS BANK USA
  • US12475979B2 patent drawing
  • US12475979B2 patent drawing
  • US12475979B2 patent drawing

AI summary

In various embodiments, authentication stations are distributed within a facility, particularly in spaces where mobile devices are predominantly used—e.g., a hospital's emergency department. Each such station includes a series of authentication devices. Mobile device may run applications for locating the nearest such station and, in some embodiments, pair wirelessly with the station so that authentication thereon will accord a user access to the desired resource via a mobile device.