Authentication System Using Dual-Network Registration ID Matching

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Identity theft over the Internet poses a risk as communication devices' private information can be stolen, allowing counterfeit devices to access communication services without authorization, necessitating a method to authenticate communication devices effectively.

Innovation Solution

An authentication system that utilizes a combination of packet-switched and circuit-switched networks to generate and verify registration IDs and communication identifiers, ensuring only authorized devices can access communication services by matching IDs across both network types.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If communication devices connect to the Internet for data and voice communications, then communication functionality and convenience are improved, but the risk of identity theft and unauthorized access increases

Engineering Contradiction:
Improvecommunication functionalityVSAvoididentity theft risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary authentication actions by generating registration IDs and communication identifiers before actual communication occurs. The authentication system pre-establishes binding relationships between devices and network identities, so that when communication attempts occur, the device has already been verified. This prevents identity theft by ensuring that no communication can occur without prior authentication, thus resolving the contradiction between communication convenience and security risk.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an authentication system as an intermediary between communication devices and the network. This intermediary generates and manages registration IDs and communication identifiers, acting as a trusted third party that verifies device identities before allowing network access. The intermediary prevents direct exposure of private information while enabling communication, thus resolving the contradiction between communication functionality and identity theft risk.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Device complexity

If private information such as Media Access Control address and serial number is used for device identification, then device authentication is simplified, but the information can be stolen and used to program counterfeit devices

Engineering Contradiction:
Improveauthentication processVSAvoiddevice authorization
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent changes the identification parameters from static private information (MAC addresses, serial numbers) to dynamically generated registration IDs and communication identifiers. These new parameters are created through cryptographic processes involving the authentication system, making them resistant to theft and counterfeiting. The parameter change maintains authentication functionality while significantly improving security, thus resolving the contradiction between authentication simplicity and device authorization reliability.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent creates cryptographic copies of device identities through registration IDs and communication identifiers rather than directly using private information. These cryptographic representations serve as secure substitutes that can be transmitted and verified without exposing the actual private information. This copying mechanism allows simplified authentication processes while preventing theft of original identifiers, resolving the contradiction between authentication simplicity and authorization reliability.

Inventive Principle:
Principle #26Copying

3Ease of operation

If counterfeit devices are allowed to access communication services, then network compatibility and ease of operation are improved, but unauthorized access and service abuse occur

Engineering Contradiction:
Improvenetwork accessVSAvoidunauthorized access
Core Design Contradiction:
Ease of operationVSObject-generated harmful factors

Solution Approach 1:

The patent implements preliminary anti-action by establishing authentication requirements before network access is granted. The system proactively prevents unauthorized access by requiring registration IDs and communication identifiers that are verified by the authentication system. This preliminary security measure stops counterfeit devices before they can cause harm, while still allowing legitimate devices easy access through automated authentication, thus resolving the contradiction between ease of operation and prevention of unauthorized access.

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentUS10084767B2Method and apparatus for authenticating a communication device
Publication Date: 2018.09.25 AT&T INTELLECTUAL PROPERTY I L P
  • US10084767B2 patent drawing
  • US10084767B2 patent drawing
  • US10084767B2 patent drawing

AI summary

A method and apparatus for authenticating a communication device is disclosed. An system that incorporates teachings of the present disclosure may include, for example, an authentication system having a controller element that receives from a communication device over a packet-switched network a terminal ID and a request to authenticate said communication device, generates a first registration ID, stores the first registration ID and a first communication identifier, transmits the first registration ID to the communication device, receives from an interactive response system a second communication identifier and a second registration ID that the interactive response system received during a communication session with the communication device over a circuit-switched network, and authenticates the communication device in response to detecting a match between the first and second communication identifiers and the first and second registration IDs. Additional embodiments are disclosed.