Message-Based Enrollment Service for Anonymous Users
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current management service enrollment processes are cumbersome and difficult for enterprises to facilitate, especially for anonymous users and temporary employees, as they require user and client device information that may not be readily available, leading to frustration for both managers and users.
Innovation Solution
A message-based management service enrollment process that uses APIs and notification services like SMS, email, or push notifications to guide users through the enrollment process, enabling enrollment without the need for explicit user and device information, and allowing for secure access to resources.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional enrollment processes requiring user and device information are used, then security and accountability are improved, but ease of operation deteriorates for anonymous users and temporary employees
Solution Approach 1:
The patent introduces an enrollment service as an intermediary between the management service and client devices. This service facilitates automated enrollment by receiving device information, generating enrollment tokens, and coordinating with the management service, thereby enabling anonymous users to enroll without manual information collection while maintaining security through token-based authentication
Solution Approach 2:
The system enables self-service enrollment where client devices automatically provide their own identification information (device ID, manufacturer, model) to the enrollment service. The enrollment service then autonomously generates enrollment tokens and completes the enrollment process without requiring human intervention or manual information entry, improving ease of operation while maintaining security through automated verification
2Loss of information
If manual information collection for enrollment is implemented, then completeness of user and device information is improved, but productivity deteriorates due to administrative burden
Solution Approach 1:
The enrollment service automatically collects device information (device ID, manufacturer, model) directly from the client device during the enrollment process. This automated information collection eliminates the need for manual data entry by administrators, reducing administrative burden and improving productivity while ensuring information completeness through direct device reporting
Solution Approach 2:
The system implements feedback mechanisms where the enrollment service receives device information from client devices, processes it through the management service, and receives confirmation of successful enrollment. This automated feedback loop ensures information completeness is verified while eliminating manual administrative tasks, thereby improving productivity
3Reliability
If extensive information collection is required for enrollment, then security and control are improved, but device complexity deteriorates
Solution Approach 1:
The patent extracts the complex information collection and processing tasks from the client device and relocates them to the enrollment service and management service. The client device only needs to provide basic identification information, while the services handle token generation, verification, and enrollment coordination, thereby reducing device complexity while maintaining security and control
Solution Approach 2:
The enrollment service acts as an intermediary that simplifies the enrollment process for client devices by handling all complex information processing, token generation, and verification tasks. This mediation reduces the complexity burden on client devices while maintaining security through centralized control in the management service
Data Source
AI summary
Disclosed are various examples for message-based management service enrollment. In some examples, an enrollment application obtains a user-entered number. A unique device identifier and a device communication identifier are identified and transmitted to an enrollment service using the user-entered number. Enrollment data is received at the client device, and the client device enrolls with a management service using the enrollment data.


