Distributed Home Subscriber Server Authentication via Blockchain

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Home subscriber servers in IMS networks are vulnerable to centralized failure points, making them susceptible to malicious distributed denial of service attacks and lacking in resilience and processing speed.

Innovation Solution

A decentralized and distributed secure home subscriber server system utilizing a peer-to-peer network with a Bitcoin blockchain, employing strong public-secret key encryption and a distributed database to ensure mutual authentication and secure communication between mobile devices and base stations, thereby distributing the authentication process across multiple nodes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Device complexity

If a centralized home subscriber server is used, then the system structure is simple and easy to manage, but the system is vulnerable to single-point failures and malicious attacks

Engineering Contradiction:
Improvesystem structureVSAvoidresilience against attacks
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent divides the centralized home subscriber server into multiple distributed authentication nodes across a peer-to-peer network. Each node stores a portion of the authentication database and can independently process authentication requests, eliminating the single-point failure vulnerability while maintaining system functionality.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a blockchain-based distributed ledger as an intermediary layer between authentication nodes and users. This mediator enables mutual authentication and secure communication without requiring a centralized authority, resolving the contradiction between simplicity and security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a decentralized distributed system is implemented, then the resilience and security against attacks are improved, but the system complexity increases

Engineering Contradiction:
Improveresilience against attacksVSAvoidsystem structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a universal peer-to-peer authentication protocol that can be deployed across diverse network environments and devices. The standardized cryptographic interfaces and mutual authentication mechanisms provide multi-functional capabilities that simplify deployment despite the distributed architecture.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent changes the fundamental parameter of system architecture from centralized to decentralized, utilizing cryptographic parameters (public-secret key pairs) to manage complexity. The blockchain consensus mechanisms transform the coordination problem into a solvable parameter optimization task.

Inventive Principle:
Principle #35Parameter changes

3Ease of manufacture

If traditional authentication methods are used, then the implementation is straightforward, but the processing speed and network efficiency are limited

Engineering Contradiction:
Improveimplementation easeVSAvoidprocessing speed
Core Design Contradiction:
Ease of manufactureVSProductivity

Solution Approach 1:

The patent performs preliminary authentication setup by distributing public keys and cryptographic credentials to all nodes before actual authentication operations. This pre-configured trust infrastructure enables rapid mutual authentication without repeated key exchange negotiations, improving processing speed while maintaining implementation feasibility.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent replaces traditional mechanical authentication mechanisms (centralized database queries, sequential verification) with cryptographic operations (digital signatures, hash verification). These substitution operations execute faster and in parallel, significantly improving processing speed while keeping implementation relatively straightforward.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS11108747B2Decentralized and distributed secure home subscriber server device
Publication Date: 2021.08.31 AT&T INTELLECTUAL PROPERTY I L P
  • US11108747B2 patent drawing
  • US11108747B2 patent drawing
  • US11108747B2 patent drawing

AI summary

A decentralized and distributed secure home subscriber server is provided. First data can be sent representing a first nonce string to a mobile device; and in response to receiving second data representing the first nonce string and a second nonce string, a communication channel can be established with the mobile device as a function of the first nonce string.