Location Authentication Service for Multi-Device Proximity Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing user authentication methods, primarily based on credentials, are vulnerable to compromise, as passwords can be stolen or easily guessed, lacking adequate safeguards against unauthorized access.

Innovation Solution

Implementing a location-based authentication system that requires users to maintain multiple devices in close proximity, using a location authentication service to verify the geographic proximity of devices, providing an additional layer of security beyond traditional credential-based authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If credential-based authentication is used, then user access can be granted simply, but security is insufficient because passwords can be stolen or easily guessed

Engineering Contradiction:
Improvesimplicity of authenticationVSAvoidsecurity against unauthorized access
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The authentication process is segmented into multiple independent factors: something the user knows (credentials) and something the user has (physical device in specific location). This segmentation ensures that compromise of one factor does not lead to complete system compromise, thereby improving security while maintaining operational simplicity through the use of familiar credential-based methods combined with location verification.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A location authentication service acts as an intermediary between the user's credentials and the service provider. This intermediary verifies the geographic location of the user's device and adds an additional security layer without requiring changes to the existing credential-based authentication flow, thus maintaining ease of operation while improving reliability.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If location-based authentication is added, then security is enhanced, but device complexity increases

Engineering Contradiction:
Improvesecurity against unauthorized accessVSAvoidcomplexity of authentication system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The location authentication service provides multiple functions through a single system: it verifies user credentials, checks device location, validates geographic proximity, and provides authentication decisions to service providers. This multi-functionality approach enhances security without requiring separate complex systems for each function, thereby limiting the increase in overall device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system uses the device's own location capabilities (GPS, network location services) to perform self-verification of geographic position. The device independently determines its location and provides this information to the authentication service, reducing the need for additional hardware or complex external verification systems, thus limiting complexity increase while enhancing security.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10645069B2Location service for user authentication
Publication Date: 2020.05.05 AMAZON TECH INC
  • US10645069B2 patent drawing
  • US10645069B2 patent drawing
  • US10645069B2 patent drawing

AI summary

A method and apparatus for location authentication of the user are disclosed. In the method and apparatus, the location of the user is authenticated if one or more conditions for geographic proximity associated with two or more devices of the user are satisfied. Upon the location of the user being authenticated, the user may be granted access to a service.