LAN Service Authentication via Segmented Security Tokens

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems for accessing services over a local area network (LAN) lack secure authentication and service discovery mechanisms, making them vulnerable to unauthorized access and insecure service announcements.

Innovation Solution

The implementation of methods and systems that establish secure communication sessions by authenticating devices, issuing security tokens, and encrypting data transmissions to ensure secure access and discovery of services over a LAN.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If device-specific authentication is used for service access, then authentication can be performed, but it does not provide application-specific security and allows unauthorized access

Engineering Contradiction:
Improveauthentication securityVSAvoidservice access convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments authentication into device-level and application-level components. Device authentication establishes base access rights, while application-specific tokens provide granular permission control for individual services, resolving the contradiction between comprehensive security and operational convenience

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces security tokens as intermediary elements between authenticated devices and services. These tokens act as mediators that carry application-specific authorization information, enabling convenient service access while maintaining strong security through token-based validation

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If service discovery is performed without security measures, then service accessibility can be determined, but the procedure becomes insecure and vulnerable to unauthorized access

Engineering Contradiction:
Improveservice discovery capabilityVSAvoidsecurity vulnerability
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent performs preliminary authentication and token issuance before service discovery occurs. Devices must be authenticated and receive appropriate tokens prior to discovering or accessing services, ensuring that service discovery happens within a already-secured context rather than as a separate vulnerable step

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12273334B2Systems and methods for providing secure services
Publication Date: 2025.04.08 COMCAST CABLE COMM LLC
  • US12273334B2 patent drawing
  • US12273334B2 patent drawing
  • US12273334B2 patent drawing

AI summary

Systems and methods for providing one or more secure services are disclosed. One method can comprise authenticating and/or authorizing a user device to receive a security token. A request for information can be processed using the security token to facilitate the secure provision of services to the user device.