Mobile Access Privilege Suspension via Self-Service

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Access-controlled systems face vulnerabilities when authorized personnel misplace or lose their access cards, especially if security personnel are unavailable, allowing unauthorized access during delayed revocation of access privileges.

Innovation Solution

A method that allows authorized users to register their mobile devices with the security system, enabling them to remotely suspend and resume access privileges for their access cards via a mobile application, eliminating the need for immediate administrator intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If security personnel are notified manually when an access card is lost, then the access privilege can be revoked, but there is a delay in revocation when security personnel are unavailable, creating a security vulnerability

Engineering Contradiction:
ImprovesecurityVSAvoidtime delay in revocation
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system allows the authorized user to self-initiate the access privilege suspension process through a mobile device without requiring security personnel intervention. The user can independently suspend or resume access privileges by interacting with the mobile application, eliminating the dependency on security personnel availability and enabling immediate action when access cards are lost or stolen.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system pre-registers the mobile device with the access device information, establishing the association in advance. This preliminary setup enables the user to immediately suspend access privileges without needing to contact security personnel or provide verification information at the moment of loss, thus eliminating the time delay while maintaining security through pre-established trusted relationships.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the access card is immediately suspended when lost, then security is improved, but the system requires complex verification processes and administrator intervention

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system transfers the control of access privilege suspension from security personnel to the authorized user themselves. The user can directly initiate suspension and resumption of access privileges through the mobile application without requiring administrator verification or complex approval workflows, thereby simplifying the process while maintaining security through the pre-registered trusted relationship between the mobile device and access device.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10748364B1Methods and systems for access control
Publication Date: 2020.08.18 TYCO FIRE & SECURITY GMBH
  • US10748364B1 patent drawing
  • US10748364B1 patent drawing
  • US10748364B1 patent drawing

AI summary

Aspects of the present disclosure include methods, apparatuses, and computer readable media for controlling access including receiving registration information associating a mobile device with an access device, wherein the access device provides an access privilege to an access-controlled point, associating the mobile device with the access device, receiving a blocking request from the mobile device to suspend the access privilege to the access-controlled point provided by the access device, authenticating the blocking request, and suspending, in response to authenticating the blocking request, the access privilege to the access-controlled point provided by the access device. In another aspect, methods, apparatuses, and computer readable media for controlling access may include receiving an unblocking request from the mobile device to restore the access privilege to the access-controlled point, authenticating the unblocking request, restoring, in response to authenticating the unblocking request, the access privilege to the access-controlled point provided by the access device.