IoT Device Access Control via Cloud Location Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
IoT devices, such as voice-activated systems, face challenges in authenticating authorized users for restricted access information, particularly when requests are made audibly, as determining the origin of voice commands is complex, potentially allowing unauthorized access to security systems or other restricted data.
Innovation Solution
A method that authenticates requests from IoT devices by using location criteria, including GPS coordinates and network connections, to grant or deny access to restricted information, with a cloud-based security system verifying the authorized user's location and network status before allowing access to sensitive information like security system statuses or camera footage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If IoT devices allow audible requests for restricted access information, then ease of operation is improved, but security reliability deteriorates
Solution Approach 1:
The patent introduces a cloud-based authentication system as an intermediary between the IoT device and restricted access information. When a voice command is received, the system routes the request through cloud servers that verify user identity and authorization status before granting access, thus maintaining ease of voice-based operation while ensuring security through centralized authentication
2Reliability
If IoT devices verify user authorization for restricted access, then security reliability is improved, but device complexity increases
Solution Approach 1:
The patent extracts the complex authentication and authorization logic from the local IoT device and relocates it to remote cloud-based servers. The IoT device itself remains simple, only needing to send requests and receive responses, while the complex security verification processes are performed externally by the cloud authentication system
Solution Approach 2:
The cloud-based authentication system serves as an intermediary that handles all complex security verification processes. The IoT device delegates authentication tasks to this external system, allowing the device to maintain simplicity while still implementing robust security checks through the intermediary service
Data Source
AI summary
A method of authenticating a request from an IoT device includes the step of receiving a request from an IoT device for restricted access information. A location of an authorized user of the restricted access information is identified based on at least one location criteria of the authorized user. Access of the restricted access information to the IoT device is granted when the authorized user satisfies the at least one location criteria and denying access to the IoT device of the restricted access information when the authorized user fails the at least one location criteria.

