Handheld Device Authentication via Certification Key
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Field personnel in businesses require timely and accurate information about inventory levels and customer data to perform their jobs effectively, but existing systems often rely on password-based authentication methods that can be cumbersome for mobile device access to centralized databases.
Innovation Solution
A method and system that allows mobile devices to access Internet applications, such as customer relationship management systems, using automatically generated user information like an email address with a certification key for authentication, eliminating the need for passwords and incorporating additional security measures like SSL protocols and firewalls.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If password-based authentication is used for mobile device access to centralized databases, then security is maintained, but ease of operation deteriorates due to cumbersome authentication processes
Solution Approach 1:
The system automatically generates user information including email addresses and certification keys without requiring user input or manual password management. The handheld device itself participates in generating authentication credentials, making the system self-serve the authentication process and eliminating the need for users to remember or manage passwords.
Solution Approach 2:
The system introduces an intermediary authentication mechanism using automatically generated email addresses and certification keys that mediate between the user and the centralized database. This intermediary layer replaces direct password-based authentication with a more automated credential verification process handled by the system infrastructure.
2Ease of operation
If automated authentication is implemented for mobile devices, then ease of operation improves by eliminating passwords, but device complexity increases due to additional security measures
Solution Approach 1:
The system automatically generates user information including email addresses and certification keys without requiring user input or manual password management. The handheld device itself participates in generating authentication credentials, making the system self-serve the authentication process and eliminating the need for users to remember or manage passwords.
Solution Approach 2:
The system uses universal email addresses as authentication identifiers that can be used across different platforms and devices. The certification key mechanism provides a multi-functional authentication approach that works for both mobile device access and traditional system access, reducing the need for device-specific authentication implementations.
3Productivity
If centralized database access is enabled for field personnel, then productivity improves, but security risks increase
Solution Approach 1:
The system automatically generates user information including email addresses and certification keys without requiring user input or manual password management. The handheld device itself participates in generating authentication credentials, making the system self-serve the authentication process and eliminating the need for users to remember or manage passwords.
Solution Approach 2:
The system implements a feedback mechanism where the authentication process verifies device identity and user credentials before granting access to the centralized database. This feedback loop ensures that only authenticated handheld devices with valid certification keys can access sensitive business information, providing continuous security verification.
Data Source
AI summary
The present invention provides a method and system for communicating via a handheld device to Internet applications such as customer relationship management applications. Automatically generated user information, such as an electronic mail (e-mail) address, containing a certification key is used to authenticate a mobile user's access to Internet applications. Access from mobile devices, such as personal data assistants, is possible because no password is required to log in. Other security measures may be used in conjunction with providing user information to ensure access only to authorized users.


