Home Network Control Device One-Time Password Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional one-time password (OTP) methods for home network systems are inadequate due to their reliance on time synchronization and separate token devices, making them difficult to implement effectively in systems with frequent user access.

Innovation Solution

A control device and home server system that creates and authenticates using a one-time password based on a button code input, employing a one-way function without the need for time synchronization or a separate token device, ensuring security through constant password changes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional OTP methods using time synchronous scheme are used, then security against password sniffing is improved, but device complexity increases due to requiring separate token device and time synchronization

Engineering Contradiction:
ImprovesecurityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges the control device and token device into a single integrated unit. The control device itself generates and manages the one-time passwords using its existing processor and memory resources, eliminating the need for a separate token device. This integration maintains security functionality while reducing system complexity and component count.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent implements preliminary registration where the control device and home server pre-share authentication keys and establish cryptographic relationships before actual authentication occurs. This preliminary setup enables the control device to generate one-time passwords independently without requiring real-time synchronization or external token devices during operation.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If conventional OTP methods using time synchronous scheme are used, then security against password sniffing is improved, but ease of operation deteriorates due to requiring time synchronization

Engineering Contradiction:
ImprovesecurityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent performs preliminary key exchange and authentication setup during device registration, establishing all necessary cryptographic parameters in advance. This eliminates the need for time synchronization during actual authentication operations, making the system easier to operate while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The control device autonomously generates one-time passwords using its own processor and pre-stored authentication keys, without requiring external synchronization signals or coordination with the home server during authentication. This self-service capability simplifies operation while ensuring security.

Inventive Principle:
Principle #25Self-service

3Device complexity

If one-way hash function scheme is used, then device complexity is reduced, but reliability deteriorates due to requiring frequent re-initialization for frequent user access

Engineering Contradiction:
Improvedevice complexityVSAvoidreliability
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent implements a dynamic authentication key management system where multiple authentication keys are pre-generated and stored in the control device. As authentication operations occur, the system dynamically selects and switches between different keys, allowing frequent user access without re-initialization. This dynamic key management maintains both low device complexity and high reliability.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system performs preliminary generation and storage of multiple authentication keys during device setup. This preliminary preparation enables the control device to handle frequent authentication requests using pre-computed keys, eliminating the need for frequent re-initialization while maintaining system security and functionality.

Inventive Principle:
Principle #10Preliminary action

4Reliability

If conventional OTP methods are used, then security is improved, but ease of manufacture deteriorates due to requiring separate token device

Engineering Contradiction:
ImprovesecurityVSAvoidease of manufacture
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent combines the functions of the control device and token device into a single integrated unit. The control device incorporates all necessary cryptographic functions and one-time password generation capabilities using its existing processor, memory, and communication interfaces. This integration simplifies manufacturing by eliminating the need to produce and assemble separate token devices, while maintaining security functionality.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS7584357B2Control device for creating one-time password using pre-input button code, home server for authenticating control device using one-time password, and method for authenticating control device with one-time password
Publication Date: 2009.09.01 SAMSUNG ELECTRONICS CO LTD
  • US7584357B2 patent drawing
  • US7584357B2 patent drawing
  • US7584357B2 patent drawing

AI summary

A control device authentication method in a home network system which includes a slave, a home server which controls the slave, and the control device which performs a remote control function to control the home server, includes registering the control device to the home server; generating and storing, by the control device and the home server, a one-way function set; storing, by the control device and the home server, a code value of a button pressed at the control device; creating, by the control device, a first password by performing an operation using a pointer value, the code value, and a one-way function number; requesting, by the control device, authentication by transferring the pointer value, the one-way function number, and the first password to the home server; and creating, by the home server, a second password.