IP Address Authentication for Non-SMS Carrier Hotspot Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Devices such as hotspot devices and IoT devices, which lack the capability to receive and send SMS messages, face challenges in authenticating with telecommunications carriers, as they cannot provide proof of possession using traditional SMS one-time passwords, hindering user account creation and access.

Innovation Solution

The system employs the Internet Protocol (IP) address of a carrier hotspot device registered with the carrier network to verify device possession, eliminating the need for SMS-based authentication by using the IP address to authenticate access to user accounts through the Identity and Access Management (IAM) system.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If SMS one-time password authentication is used, then security is improved, but devices without SMS capability (hotspot devices, IoT devices) cannot authenticate

Engineering Contradiction:
Improveauthentication securityVSAvoiddevice compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces an IP address as an intermediary authentication factor. Instead of directly using SMS one-time passwords which require SMS capability, the system uses the IP address assigned to the device by the carrier network as a mediator that all devices can have, enabling authentication for devices without SMS capability while maintaining security through the network's ability to verify and control IP address allocation.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If IP address authentication is used, then device compatibility is improved, but security may be compromised compared to SMS one-time passwords

Engineering Contradiction:
Improvedevice compatibilityVSAvoidauthentication security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent replaces the SMS-based mechanical authentication system with an IP address-based authentication system. The SMS system relies on message delivery mechanisms that not all devices support, while the IP address system uses network layer addressing that is universally supported by all network-connected devices, providing a more versatile authentication mechanism.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Ease of operation

If SMS one-time passwords are transmitted, then authentication is enabled, but network load increases and sensitive information may be exposed

Engineering Contradiction:
Improveauthentication processVSAvoidnetwork load
Core Design Contradiction:
Ease of operationVSLoss of energy

Solution Approach 1:

The patent extracts the authentication verification process from the SMS message transmission layer and moves it to the network layer using IP addresses. Instead of transmitting sensitive one-time passwords through SMS messages that consume network resources and pose security risks, the system uses the already-assigned IP address as the authentication credential, eliminating the need for additional message transmissions.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS12010514B2Methods and systems to authenticate a user account using an internet protocol (IP) address
Publication Date: 2024.06.11 T MOBILE INNOVATIONS LLC
  • US12010514B2 patent drawing
  • US12010514B2 patent drawing
  • US12010514B2 patent drawing

AI summary

A method comprises extracting, by an authentication application of an identity and access management system, an Internet Protocol address of a carrier hotspot device from a data packet received from an access device, wherein the access device is connected to the carrier network using the carrier hotspot device, wherein the Internet Protocol address is assigned to the carrier hotspot device when the carrier hotspot device attaches to the carrier network, transmitting, by the authentication application to an identification application in a core network of the carrier network, the Internet Protocol address of the carrier hotspot device, and receiving, by the authentication application from the identification application, an identifier of the carrier hotspot device associated with the Internet Protocol address.