Managed Access System for Secure Facility Wireless Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The smuggling of contraband mobile wireless devices into correctional and secure facilities poses a significant security risk due to advancements in technology and various smuggling methods, making it difficult for physical security measures alone to prevent their introduction and detection.

Innovation Solution

A managed access system utilizing a network of antennas and radio equipment, managed by a controller that communicates with mobile wireless devices within the facility to block unauthorized access to the wireless network while allowing authorized devices to connect, with features like registration, time limits, and selective communication management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If physical security measures are implemented to prevent smuggling of mobile wireless devices, then security against unauthorized device introduction is improved, but the difficulty of detection and the variety of smuggling methods make complete prevention impossible

Engineering Contradiction:
Improvesecurity against unauthorized device introductionVSAvoidvariety of smuggling methods
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent replaces physical security measures with an electromagnetic field-based detection system. The system uses wireless signals to automatically detect and identify mobile devices within the facility, eliminating the need for manual physical inspections and overcoming the limitations of physical security against diverse smuggling methods.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent introduces a managed access system as an intermediary between mobile devices and the commercial wireless network. This system acts as a gatekeeper that authenticates devices and controls their access to the network, providing a layer of security that does not depend on preventing physical smuggling but rather on controlling network access.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Difficulty of detecting and measuring

If detection systems are deployed to find contraband devices inside facilities, then the ability to detect unauthorized devices is improved, but the cost and operational complexity increase significantly

Engineering Contradiction:
Improvedetection capability of contraband devicesVSAvoidoperational complexity of detection systems
Core Design Contradiction:
Difficulty of detecting and measuringVSDevice complexity

Solution Approach 1:

The managed access system serves multiple functions: it provides authorized devices with network access, detects unauthorized devices, and controls communications. This multi-functionality eliminates the need for separate dedicated detection systems, reducing overall complexity and operational burden on facility personnel.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system automatically performs detection, authentication, and access control without requiring manual intervention. The managed access controller autonomously manages device registrations, monitors for unauthorized devices, and enforces access policies, significantly reducing personnel time and training requirements compared to manual detection methods.

Inventive Principle:
Principle #25Self-service

3Reliability

If jammer technologies are used to disrupt communications of unauthorized devices, then the ability to block contraband device access is improved, but the disruption of legitimate communications and potential harm to authorized users increases

Engineering Contradiction:
Improveblocking capability of unauthorized communicationsVSAvoiddisruption of legitimate communications
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system continuously monitors wireless communications and provides feedback to the managed access controller. When an unauthorized device is detected, the system responds by blocking only that specific device's communications while allowing legitimate authorized devices to continue communicating normally. This targeted approach avoids the broad disruption caused by jammers.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system applies different access control policies to different devices based on their authorization status. Authorized devices receive full network access, unauthorized devices are blocked, and the system can provide selective communications for specific device types or locations. This localized control prevents the blanket disruption inherent in jammer technology.

Inventive Principle:
Principle #3Local quality

4Reliability

If access management systems are implemented to provide network access to authorized devices only, then the security against unauthorized network access is improved, but the complexity of managing device registrations and access control increases

Engineering Contradiction:
Improvesecurity against unauthorized network accessVSAvoidcomplexity of access management operations
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system automatically manages device registrations, authentication, and access control without requiring manual configuration or intervention. The managed access controller autonomously handles device onboarding, maintains authorization databases, and enforces access policies, significantly reducing the operational complexity compared to manually managed access control systems.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3244642B1Managed access system that provides selective communications and registration of mobile wireless devices
Publication Date: 2019.01.09 HARRIS CORP
  • EP3244642B1 patent drawingFigure 1
  • EP3244642B1 patent drawingFigure 2A
  • EP3244642B1 patent drawingFigure 2B

AI summary

A managed access system for mobile wireless devices (MWDs) in a facility that is geographically within a wireless communications network includes a plurality of antennas at the facility. Radio equipment is coupled to the antennas. A management access controller cooperates with the radio equipment to communicate with a given MWD within the facility, blocks outside communications via the wireless communications network when the given MWD is an unauthorized MWD, and provides outside communications when the given MWD is an authorized MWD. The management access controller registers a candidate MWD as an authorized MWD and provides selective communications with both authorized and unauthorized MWD's within the facility.