Interactive Reader Commander for Access Control Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing access control systems that lack keypads or advanced user input devices are vulnerable to password/PIN interception by malicious devices, compromising security due to the inability to verify user identity alongside credential authenticity.

Innovation Solution

An Interactive Reader Commander is introduced between traditional readers and computing devices, intercepting and blocking security-relevant commands until a valid user input is received, preventing unauthorized access by temporarily storing sensitive commands until user validation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a PC or computing device is introduced next to the reader to enable dual-factor authentication, then security level is improved, but vulnerability to keyboard logger attacks increases

Engineering Contradiction:
Improvesecurity levelVSAvoidkeyboard logger attack vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediate device positioned between the computing device and the reader that acts as a mediator. This device intercepts communication between the PC and reader, blocking commands from reaching the reader until the user provides valid input at the Interactive Reader Commander. This intermediary layer prevents keyboard loggers from capturing credentials while maintaining dual-factor authentication capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If readers with keypads are deployed to enable native user input, then security is improved, but system cost increases significantly

Engineering Contradiction:
ImprovesecurityVSAvoidsystem cost
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

Instead of upgrading expensive readers with keypads, the patent uses an intermediate device as a mediator that provides the missing user input capability. The Interactive Reader Commander receives user input (such as button presses) and translates it into commands that work with existing simple readers, achieving secure authentication without modifying the readers themselves.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates a functional copy of keypad functionality in the intermediate device rather than physically adding keypads to readers. The Interactive Reader Commander replicates the user input interface remotely, allowing users to provide authentication input without requiring physical keypads at the reader location.

Inventive Principle:
Principle #26Copying

3Ease of manufacture

If simple readers without keypads are used, then system cost is reduced, but ability to verify user identity is lost

Engineering Contradiction:
Improvesystem costVSAvoiduser identity verification capability
Core Design Contradiction:
Ease of manufactureVSAdaptability or versatility

Solution Approach 1:

The intermediate device serves as a mediator that bridges the gap between simple readers and the need for user identity verification. It captures user input (button presses, gestures) and translates these into authentication commands that work with basic readers, adding verification capability without upgrading the readers themselves.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP2738707B1Interactive reader commander
Publication Date: 2020.01.22 HID GLOBAL GMBH
  • EP2738707B1 patent drawingFigure 1
  • EP2738707B1 patent drawingFigure 2
  • EP2738707B1 patent drawingFigure 3

AI summary

An access control system and a method of operating the same are provided. The access control system includes an interactive reader commander that intercepts commands transmitted from a computing device to a reader and determines if the intercepted commands are security-relevant. Security-relevant commands and possibly other commands are stored unless and until a valid user input is received at the interactive reader commander.