Hotspot Access Control via Mobile Number Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for managing authorization on mobile communication devices with built-in hotspots, such as smartphones, face challenges in usability and security due to reliance on MAC addresses, which are unpredictable and difficult to manage, especially when dealing with multiple users and potential password leakage.

Innovation Solution

A communication system and method that utilizes an authorized list with unique identification information for user authentication, allowing for efficient and secure access management by prioritizing users and optionally performing password authentication, thereby enhancing security and user experience.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If MAC address-based blacklist/whitelist function is implemented on mobile communication UE, then access authorization management is provided, but usability deteriorates and management becomes complicated due to portability and mobility of mobile UE making MAC address acquisition and management difficult

Engineering Contradiction:
Improveaccess authorization managementVSAvoidusability
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent changes the identification parameter from MAC address to mobile phone number. This parameter substitution resolves the contradiction by maintaining authorization management capability while improving usability, as mobile phone numbers are familiar to users and can be easily managed through contact lists, eliminating the complexity of MAC address management.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent imports contact information from the phone book to create the authorized list. This copying approach allows users to leverage existing contact management systems, making the authorization process simple and intuitive while maintaining reliable access control through the imported contact details including mobile phone numbers.

Inventive Principle:
Principle #26Copying

2Ease of operation

If OPEN-NONE authentication mode is used, then access convenience is improved, but security deteriorates due to susceptibility to traffic theft

Engineering Contradiction:
Improveaccess convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent performs preliminary authentication by checking whether the requester's mobile phone number exists in the authorized list before allowing hotspot access. This preliminary action enables convenient open access for authorized users while preventing unauthorized access, thus maintaining both convenience and security.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If encryption-authentication modes such as WPAPSK are used, then security is improved, but usability deteriorates due to password leakage risk and cumbersome access process

Engineering Contradiction:
ImprovesecurityVSAvoidusability
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent substitutes the password-based authentication mechanism with mobile phone number-based authentication. This replacement eliminates the security risks of password leakage and the cumbersome nature of password management, while maintaining strong security through the uniqueness and familiarity of mobile phone numbers.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentEP2922327B1Communications terminal and system and rights management method
Publication Date: 2019.02.27 ZTE CORP
  • EP2922327B1 patent drawingFigure 1~2
  • EP2922327B1 patent drawingFigure 3

AI summary

The present invention provides a communications terminal and system and a rights management method, comprising: setting a rights list; listing unique identification information of user identity of each mobile terminal device that is allowed to access to the WiFi hot spot communications terminal; the communications terminal performing authentication on unique identification information in a mobile terminal authentication request; and establishing a connection. It is made convenient for the communications terminal to effectively manage access rights, and the management becomes simpler and easier to operate. Meanwhile, the communications terminal performs authentication on the unique identification information of the user identity, thereby making the authentication process more efficient and improving the security of the authentication process. Meanwhile, priorities of the access rights of users are set, so as to ensure that a user of a high priority has preferential access, thereby making the access rights management more user-friendly.