IoT Device Access Control via Cloud Location Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

IoT devices, such as voice-activated systems, face challenges in authenticating authorized users for restricted access information, particularly when requests are made audibly, as determining the origin of voice commands is complex, potentially allowing unauthorized access to security systems or other restricted data.

Innovation Solution

A method that authenticates requests from IoT devices by using location criteria, including GPS coordinates and network connections, to grant or deny access to restricted information, with a cloud-based security system verifying the authorized user's location and network status before allowing access to sensitive information like security system statuses or camera footage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If IoT devices allow audible requests for restricted access information, then ease of operation is improved, but security reliability deteriorates

Engineering Contradiction:
Improveease of operationVSAvoidsecurity reliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a cloud-based authentication system as an intermediary between the IoT device and restricted access information. When a voice command is received, the system routes the request through cloud servers that verify user identity and authorization status before granting access, thus maintaining ease of voice-based operation while ensuring security through centralized authentication

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If IoT devices verify user authorization for restricted access, then security reliability is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity reliabilityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the complex authentication and authorization logic from the local IoT device and relocates it to remote cloud-based servers. The IoT device itself remains simple, only needing to send requests and receive responses, while the complex security verification processes are performed externally by the cloud authentication system

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The cloud-based authentication system serves as an intermediary that handles all complex security verification processes. The IoT device delegates authentication tasks to this external system, allowing the device to maintain simplicity while still implementing robust security checks through the intermediary service

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12099583B2Method for providing IoT devices access to restricted access information
Publication Date: 2024.09.24 KIDDE FIRE PROTECTION LLC
  • US12099583B2 patent drawing
  • US12099583B2 patent drawing

AI summary

A method of authenticating a request from an IoT device includes the step of receiving a request from an IoT device for restricted access information. A location of an authorized user of the restricted access information is identified based on at least one location criteria of the authorized user. Access of the restricted access information to the IoT device is granted when the authorized user satisfies the at least one location criteria and denying access to the IoT device of the restricted access information when the authorized user fails the at least one location criteria.