Electronic Device Multi-Wireless OOB Authentication Data Sharing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic devices face challenges in efficiently sharing and managing out-of-band (OOB) authentication data for Bluetooth pairing across multiple devices within the same account or group, leading to redundant authentication processes and security concerns due to the one-time use nature of OOB authentication data.

Innovation Solution

An electronic device equipped with multiple wireless communication circuits, including Bluetooth, cellular, NFC, and WiFi, and a camera, which obtains OOB authentication data from a first external device and shares it with other devices within the same account or group, allowing these devices to perform Bluetooth-based pairing using the shared data, while setting valid durations or connection numbers to manage data usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If OOB authentication data is shared across multiple devices, then pairing efficiency is improved, but security is worsened due to the one-time use nature of the data

Engineering Contradiction:
Improvepairing efficiencyVSAvoidauthentication security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system performs preliminary authentication between the first device and the second device before sharing OOB authentication data. This preliminary action ensures that only authenticated devices can access and use the shared authentication data, resolving the security concern while maintaining pairing efficiency

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The server acts as an intermediary that manages the distribution and tracking of OOB authentication data. It coordinates the sharing process, ensures proper authorization, and maintains security policies, allowing efficient multi-device pairing while preserving authentication security

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If OOB authentication data is reused across multiple pairings, then authentication process is simplified, but security is compromised

Engineering Contradiction:
Improveauthentication processVSAvoidauthentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary authentication between the first device and the second device before sharing OOB authentication data. This preliminary action ensures that only authenticated devices can access and use the shared authentication data, resolving the security concern while maintaining pairing efficiency

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system changes the validity parameters of OOB authentication data by setting expiration times or usage limits. This allows the data to be reused within controlled parameters (multiple devices or time windows) while maintaining security through automatic invalidation after conditions are met

Inventive Principle:
Principle #35Parameter changes

3Adaptability or versatility

If OOB authentication data is made valid for extended periods or multiple uses, then device compatibility and flexibility are improved, but security risks increase

Engineering Contradiction:
Improvedevice compatibilityVSAvoidsecurity risks
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system dynamically adjusts the validity of OOB authentication data based on device trust levels, authentication history, and current security context. This dynamic approach allows extended validity for trusted devices while maintaining security by automatically reducing or revoking access for untrusted devices

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the validity parameters of OOB authentication data by setting expiration times or usage limits. This allows the data to be reused within controlled parameters (multiple devices or time windows) while maintaining security through automatic invalidation after conditions are met

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS11240662B2Electronic device and method by which electronic device transmits and receives authentication information
Publication Date: 2022.02.01 SAMSUNG ELECTRONICS CO LTD
  • US11240662B2 patent drawing
  • US11240662B2 patent drawing
  • US11240662B2 patent drawing

AI summary

Various embodiments related to an electronic device and a method by which the electronic device transmits and receives authentication information are presented, and according to one embodiment, the electronic device comprises: a first wireless communication circuit for supporting a Bluetooth protocol; a second wireless communication circuit for supporting a cellular wireless protocol; a third wireless communication circuit for supporting near field communication (NFC); a fourth wireless communication circuit for supporting a WiFi protocol; a camera exposed through a second part of a housing; a processor arranged in the housing and electrically connected to a display, the first wireless communication circuit, the second wireless communication circuit, the third wireless communication circuit, the fourth wireless communication circuit, and the camera; and a memory arranged in the housing and electrically connected to the processor, wherein the memory can store instructions for causing, during execution thereof, the processor to acquire information relating to authentication for pairing with a first external electronic device on the basis of the Bluetooth protocol by using the third wireless communication circuit or the camera, perform pairing with the first external electronic device on the basis of at least a portion of the information by using the first wireless communication circuit, and transmit at least a portion of the information to a second external electronic device or a server by using the second wireless communication circuit or the fourth wireless communication circuit.