Guest Access Control via Device-Level Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing property monitoring systems require administrators to create secondary accounts for guests, making it cumbersome and time-consuming to grant temporary access to smart home devices, especially for short-term visitors who do not need long-term access.

Innovation Solution

A monitoring system that uses sensor data, such as motion sensors, cameras, and network connectivity, to identify new users within a property and allows authorized users to grant temporary access without the need for a secondary login, enabling seamless control of devices through a streamlined process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a secondary account is created for guest access, then authorization control is improved, but device complexity and time consumption increase

Engineering Contradiction:
Improveauthorization controlVSAvoidaccount creation process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication requirement from the account creation process. Instead of requiring guests to create secondary accounts with credentials, the system uses device-level authentication where the guest device itself serves as the credential through its unique identifier (device ID, MAC address). This eliminates the complex account management overhead while maintaining security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The monitoring system acts as an intermediary that manages guest access without requiring guest account creation. The system receives device identification information from guest devices, automatically creates temporary access credentials, and manages the authorization lifecycle. This intermediary approach simplifies the process for both guests and administrators.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a secondary account is created for guest access, then access control is improved, but time consumption increases

Engineering Contradiction:
Improveaccess controlVSAvoidaccount creation time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary actions by pre-configuring the monitoring system to automatically recognize and authenticate guest devices based on their device identifiers. When a guest device connects to the network, the system is already prepared to grant access without requiring real-time account creation. This preliminary setup eliminates time consumption during actual guest access scenarios.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The guest device serves itself as the authentication credential through its unique device identifier. The system automatically extracts and verifies the device ID without requiring the guest to manually input credentials or complete registration forms. This self-service approach dramatically reduces the time required for guest access while maintaining security controls.

Inventive Principle:
Principle #25Self-service

3Ease of operation

If seamless command integration is enabled, then ease of operation is improved, but security requirements increase

Engineering Contradiction:
Improvecommand integrationVSAvoidsecurity verification
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies different quality levels to different aspects of guest access. For command execution, the system provides seamless integration with full functionality (high ease of operation). For access authorization, the system implements strict device-level authentication (high security). This local differentiation allows the system to optimize for both usability and security in their respective domains without compromise.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11949683B2Guest access to control devices
Publication Date: 2024.04.02 ALARM COM INC
  • US11949683B2 patent drawing
  • US11949683B2 patent drawing
  • US11949683B2 patent drawing

AI summary

A method for granting guest access to a control device includes detecting, by a monitoring control unit, a new connection of a guest device to a network, transmitting, by the monitoring control unit and to an authorized device, a request to grant access to the guest device to control a monitoring system, in response to the request, receiving, by the monitoring control unit, approval to grant access to the guest device to control the monitoring system, and in response to the approval, transmitting, by the monitoring control unit and to the guest device, (i) data that allows the guest device to access a web service and (ii) a temporary authentication token.