Portable Key Device Authorization via Intermediary Server

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing valet parking systems for motor vehicles lack reliable authorization mechanisms, leading to concerns about misuse and unauthorized use, especially when service personnel are given access to high-performance vehicles.

Innovation Solution

A portable key device with a communication unit that transmits an identification code and authorization data record to the vehicle's control device, allowing users to set permissions for third-party access, thereby enhancing authorization reliability and preventing unauthorized use by indirect access through the control device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a portable key device transmits authorization data directly to the vehicle control unit, then ease of operation is improved, but security against malicious programs and unauthorized access deteriorates

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an intermediary authorization server that mediates between the portable key device and the vehicle control unit. The key device communicates with the server to obtain authorization, and the server validates and forwards authorization to the control unit, preventing direct unauthorized access while maintaining operational convenience

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authorization system is segmented into multiple independent components: the portable key device, the authorization server, and the vehicle control unit. Each component performs a specific function, creating a distributed security architecture that reduces single-point vulnerabilities and improves overall system reliability

Inventive Principle:
Principle #1Segmentation

2Ease of operation

If direct access from third-party device to vehicle control unit is enabled, then ease of operation is improved, but vulnerability to malicious programs and unauthorized use increases

Engineering Contradiction:
Improveease of operationVSAvoidmalicious program risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The authorization server acts as a trusted intermediary that all communication must pass through. It validates authorization requests, checks for malicious content, and controls the flow of information between the third-party device and vehicle control unit, blocking harmful factors while enabling legitimate operations

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary validation and security checks at the authorization server before any data reaches the vehicle control unit. This preemptive security measure identifies and blocks malicious programs before they can affect the vehicle system

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentEP3494015B1Method for performing a function of a vehicle by means of a key device
Publication Date: 2020.08.05 AUDI AG
  • EP3494015B1 patent drawingFigure 1
  • EP3494015B1 patent drawingFigure 2
  • EP3494015B1 patent drawingFigure 3

AI summary

The invention relates to a method for operating a motor vehicle (10), wherein a user of the motor vehicle (10) is authorised to trigger at least one function by means of a portable key device (22). For this purpose, the key device has an identification code that uniquely identifies the key device, and an authorisation data set that describes the at least one function, for which the user is authorised by means of the key device (22) identified by the identification code (41). A control device (12) of the motor vehicle (10) carries out the receiving of the authorisation data set (43) and the identification code (41) from the key device (22) (S6). In addition, based on an identification code (41) stored in the control device (12) and an authorisation data set (43) stored in the control device (12), it is determined whether the received authorisation data set (43) and the received identification code (41) correspond to a predetermined combination (S8). If they correspond to the predetermined combination, an enabling of the at least one function occurs (S9). The invention also relates to a portable key device (22).