Location-Based Authentication Tokens for Mobile Network Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication systems for mobile devices accessing network services rely on time-restricted tokens, which can lead to security and network efficiency trade-offs, and lack the ability to control access based on device location without direct knowledge of the service plan or physical location.

Innovation Solution

Incorporating location data into authentication tokens generated by an authentication server, allowing service servers to authorize access based on the mobile device's location, thereby deferring authentication functions and enabling location-dependent access control without needing direct knowledge of the device's service plan or physical location.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If time-restricted tokens are used for authentication, then security is improved, but network efficiency deteriorates due to frequent token renewal requirements

Engineering Contradiction:
ImprovesecurityVSAvoidnetwork efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent changes the authentication parameter from time-based restrictions to location-based restrictions. Tokens are no longer valid only within a specific time window, but are tied to geographic location data. This allows tokens to have extended validity periods while maintaining security through location verification, reducing the frequency of token renewal and improving network efficiency.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent introduces a new dimension for authentication by incorporating location data into tokens. Instead of relying solely on time-based validation, the system adds spatial context to authentication, allowing tokens to remain valid across different time periods as long as the device remains within authorized locations. This multi-dimensional approach resolves the contradiction between security and efficiency.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Measurement precision

If location-based access control is implemented, then access control precision is improved, but system complexity increases due to location tracking requirements

Engineering Contradiction:
Improveaccess control precisionVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent introduces location data as an intermediary element that bridges authentication and access control. Rather than implementing complex real-time location tracking systems, the system uses location information embedded in tokens as a mediator to verify authorized access. This approach achieves precise location-based control without requiring continuous monitoring infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs location verification in advance by embedding location data in tokens during the authentication phase. This preliminary action eliminates the need for complex real-time location tracking during service access, as the location authorization is pre-established and validated when the token is issued.

Inventive Principle:
Principle #10Preliminary action

3Productivity

If tokens with longer validity periods are used, then network efficiency is improved, but security deteriorates due to increased risk window

Engineering Contradiction:
Improvenetwork efficiencyVSAvoidsecurity
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent fundamentally changes the validity parameter from time-based to location-based constraints. Tokens can remain valid for extended periods without renewal, improving network efficiency. Security is maintained not through time expiration but through location verification - the token becomes effectively invalid if used outside authorized geographic boundaries, thus extending the security window without compromising protection.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS9060273B2Authentication server and methods for granting tokens comprising location data
Publication Date: 2015.06.16 MALIKIE INNOVATIONS LTD
  • US9060273B2 patent drawing
  • US9060273B2 patent drawing
  • US9060273B2 patent drawing

AI summary

An authentication server and methods of generating a token for use by a mobile device to establish authorization for the mobile device to access a service provided by a service server, the method comprising receiving a request for the token from the mobile device, generating the token comprising location data identifying a location for the mobile device and authentication data indicating a level of access that the mobile device is permitted to have to the service provided by the service server, and transmitting the token to the mobile device.