Managed Access System for Secure Facility Wireless Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The smuggling of mobile wireless devices into correctional and secure facilities poses a significant security risk due to advancements in technology, making it difficult to prevent their entry and detect unauthorized devices within these facilities.

Innovation Solution

A managed access system is implemented, utilizing a network of antennas, radio equipment, and a management access controller to authenticate and manage communications between mobile wireless devices and the carrier network, denying access to unauthorized devices while allowing authorized ones to connect to a private wireless network.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If physical security measures are implemented to prevent smuggling of mobile wireless devices, then security against unauthorized device entry is improved, but the complexity and cost of security operations increases

Engineering Contradiction:
Improvesecurity against unauthorized device entryVSAvoidsecurity operation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent replaces physical security measures (mechanical systems) with an electronic authentication system. The managed access system uses authentication servers, databases, and electronic verification processes to control device access, substituting human-operated physical security checks with automated electronic authentication mechanisms that verify device identifiers and authorization status.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Difficulty of detecting and measuring

If detection systems are deployed to find contraband devices inside facilities, then ability to detect unauthorized devices is improved, but operational costs and personnel requirements increase

Engineering Contradiction:
Improvedetection capability of unauthorized devicesVSAvoidoperational efficiency
Core Design Contradiction:
Difficulty of detecting and measuringVSProductivity

Solution Approach 1:

The authentication system operates autonomously without requiring active detection or personnel intervention. Devices automatically present their identifiers when attempting to access the network, and the authentication server automatically verifies authorization status against the database, eliminating the need for manual scanning or detection operations.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements continuous authentication feedback by monitoring device connection attempts, verifying authorization status in real-time, and dynamically granting or denying network access based on current authorization state, providing immediate feedback on device legitimacy.

Inventive Principle:
Principle #23Feedback

3Reliability

If authentication mechanisms are implemented to control device access, then security against contraband usage is improved, but the complexity of the access system increases

Engineering Contradiction:
Improvesecurity against contraband usageVSAvoidaccess system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication server performs multiple functions including verifying device identifiers, checking authorization status in the database, managing access control decisions, and coordinating with the managed access system, consolidating these security functions into a single multi-functional component rather than requiring separate systems for each function.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10405184B2Mobile wireless device managed access system providing enhanced authentication features and related methods
Publication Date: 2019.09.03 HARRIS CORP
  • US10405184B2 patent drawing
  • US10405184B2 patent drawing
  • US10405184B2 patent drawing

AI summary

A managed access system is for mobile wireless devices (MWDs) in a facility, with the facility being geographically within a wireless communications network of a communications carrier. The system may include antennas arranged at the facility, radio equipment coupled to the antennas, a network interface device configured to provide communications with the communications carrier, and a management access controller. The controller may be configured to communicate with the radio equipment and the network interface device to retrieve respective authenticated encryption keys from the communications carrier for each MWD, authenticate the MWDs to a local managed access network based upon respective encrypted keys, provide communications between authenticated MWDs on the local managed access network and the network interface device for communications with the communications carrier, and deny communications between un-authenticated MWDs on the local managed access network and the network interface device for communications with the communications carrier.