Handheld Device Authentication via Certification Key

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Field personnel in businesses require timely and accurate information about inventory levels and customer data to perform their jobs effectively, but existing systems often rely on password-based authentication methods that can be cumbersome for mobile device access to centralized databases.

Innovation Solution

A method and system that allows mobile devices to access Internet applications, such as customer relationship management systems, using automatically generated user information like an email address with a certification key for authentication, eliminating the need for passwords and incorporating additional security measures like SSL protocols and firewalls.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If password-based authentication is used for mobile device access to centralized databases, then security is maintained, but ease of operation deteriorates due to cumbersome authentication processes

Engineering Contradiction:
Improveease of accessVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system automatically generates user information including email addresses and certification keys without requiring user input or manual password management. The handheld device itself participates in generating authentication credentials, making the system self-serve the authentication process and eliminating the need for users to remember or manage passwords.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system introduces an intermediary authentication mechanism using automatically generated email addresses and certification keys that mediate between the user and the centralized database. This intermediary layer replaces direct password-based authentication with a more automated credential verification process handled by the system infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If automated authentication is implemented for mobile devices, then ease of operation improves by eliminating passwords, but device complexity increases due to additional security measures

Engineering Contradiction:
Improveease of accessVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system automatically generates user information including email addresses and certification keys without requiring user input or manual password management. The handheld device itself participates in generating authentication credentials, making the system self-serve the authentication process and eliminating the need for users to remember or manage passwords.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system uses universal email addresses as authentication identifiers that can be used across different platforms and devices. The certification key mechanism provides a multi-functional authentication approach that works for both mobile device access and traditional system access, reducing the need for device-specific authentication implementations.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If centralized database access is enabled for field personnel, then productivity improves, but security risks increase

Engineering Contradiction:
Improveoperational efficiencyVSAvoidsecurity risks
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system automatically generates user information including email addresses and certification keys without requiring user input or manual password management. The handheld device itself participates in generating authentication credentials, making the system self-serve the authentication process and eliminating the need for users to remember or manage passwords.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements a feedback mechanism where the authentication process verifies device identity and user credentials before granting access to the centralized database. This feedback loop ensures that only authenticated handheld devices with valid certification keys can access sensitive business information, providing continuous security verification.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS7404085B2Authentication of handheld devices for access to applications
Publication Date: 2008.07.22 SAP SE
  • US7404085B2 patent drawing
  • US7404085B2 patent drawing
  • US7404085B2 patent drawing

AI summary

The present invention provides a method and system for communicating via a handheld device to Internet applications such as customer relationship management applications. Automatically generated user information, such as an electronic mail (e-mail) address, containing a certification key is used to authenticate a mobile user's access to Internet applications. Access from mobile devices, such as personal data assistants, is possible because no password is required to log in. Other security measures may be used in conjunction with providing user information to ensure access only to authorized users.