Mobile Credential Transfer via Proxy Server

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face difficulties in remembering and accessing multiple login credentials for various online resources, posing a security risk when using similar credentials and being cumbersome to manage multiple sets.

Innovation Solution

A mobile device is used as a trusted authentication source, storing credentials and transmitting them securely to other devices via a proxy server, which pairs devices based on proximity or prior association, using a unique identifier and challenge verification for added security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users store multiple different login credentials for different online resources, then security is improved, but ease of operation deteriorates due to the burden of remembering and managing multiple credentials

Engineering Contradiction:
ImprovesecurityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a server as an intermediary that stores multiple login credentials and automatically retrieves them during the authentication process. The server acts as a mediator between the user's terminal device and the online resource, managing the credential storage and retrieval without requiring the user to directly handle multiple passwords. This resolves the contradiction by improving security through centralized credential management while maintaining ease of operation through automated authentication.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If users use the same login credentials for multiple online resources, then ease of operation is improved, but security deteriorates due to the risk of unauthorized access

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The server serves as a secure intermediary that stores credentials for multiple online resources. During authentication, the system automatically retrieves the appropriate credentials from the server based on the target resource, eliminating the need for users to manually input different passwords. This maintains ease of operation through automated credential selection while preserving security by keeping all credentials encrypted and managed on the secure server rather than exposed to the user.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If the system automatically retrieves credentials during authentication, then productivity is improved by reducing manual input, but device complexity increases due to the authentication server infrastructure

Engineering Contradiction:
ImproveproductivityVSAvoiddevice complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The authentication server performs multiple functions: it stores credentials for multiple online resources, manages authentication for different users, retrieves appropriate credentials based on authentication requests, and maintains security encryption. By consolidating these diverse functions into a single multi-functional server system, the patent achieves high productivity through automated credential retrieval while managing complexity through functional consolidation rather than proliferation of separate systems.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9628482B2Mobile based login via wireless credential transfer
Publication Date: 2017.04.18 CELLCO PARTNERSHIP INC
  • US9628482B2 patent drawing
  • US9628482B2 patent drawing
  • US9628482B2 patent drawing

AI summary

Systems and methods for mobile-based login via wireless credential transfer are disclosed. In some implementations, a proxy server receives a registration request for a receiver device for accessing a secure resource. The proxy server registers the receiver device in response to the registration request. The proxy server receives, from a transmitter device, information identifying the transmitter device along with authentication credentials for authenticating the receiver device to access the secure resource. The proxy server identifies the receiver device based on the information identifying the transmitter device. The proxy server forwards, to the receiver device, the authentication credentials for authenticating access of the receiver device to the secure resource.