Hearing System Challenge-Response Authentication Mechanism

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Hearing system communication faces security challenges due to the use of open standard-based interfaces, which increases the risk of unauthorized access and data compromise.

Innovation Solution

A method and apparatus for securing communication in a hearing system by obtaining challenge data in a server device, transmitting it to a user application, and verifying a response from the hearing device, ensuring secure communication and reducing the risk of unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If open standard-based interfaces are used for wireless communication in hearing systems, then ease of operation and compatibility are improved, but security and protection against unauthorized access deteriorate

Engineering Contradiction:
Improveease of useVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary security actions by establishing challenge-response authentication mechanisms before allowing communication between hearing devices and user applications. The server device generates challenge data and verifies response data in advance, ensuring that only authenticated applications can access hearing device functions, thus preventing unauthorized access before it can occur.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces a server device as an intermediary between hearing devices and user applications. This mediator generates challenge data, receives response data from applications, verifies authenticity, and maintains approved application lists. The server acts as a security gateway that enables open standard communication while filtering out unauthorized access attempts through cryptographic verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If challenge-response authentication mechanism is implemented, then security against unauthorized access is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity protectionVSAvoidsystem complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent segments the security system into distinct functional components: a server device that generates challenge data and verifies responses, hearing devices that store approved application lists and forward authentication data, and user applications that generate response data. This segmentation distributes complexity across multiple entities rather than concentrating it in a single device, making the overall system more manageable.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements self-service mechanisms where the server device automatically generates challenge data, verifies response data, and maintains approved application lists without manual intervention. Hearing devices automatically forward challenge and response data between applications and the server. This automation reduces operational complexity while maintaining strong security through cryptographic verification.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3937513A1Hearing system, devices and method of securing communication for a user application
Publication Date: 2022.01.12 GN HEARING AS
  • EP3937513A1 patent drawingFigure 1
  • EP3937513A1 patent drawingFigure 2
  • EP3937513A1 patent drawingFigure 3

AI summary

A method of securing communication for a user application on a user accessory device of a hearing system comprising a hearing device is disclosed. Securing communication for the user application comprises obtaining challenge data in a server device; transmitting the challenge data from the server device to the user application; transmitting a challenge request comprising the challenge data from the user application to the hearing device; receiving a challenge response comprising response data from the hearing device; forwarding the response data from the user application to the server device; verifying the response data in the server device based on the challenge data; and approving the user application in the server device if verifying the response data is successful.