Automatic Mobile Device Authentication via Identifier Pairing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Customers using mobile devices must repeatedly authenticate when visiting merchants with online presences, which is tedious and prevents both customers and merchants from fully benefiting from the online features, as existing authentication methods do not allow for seamless automatic authentication.

Innovation Solution

A system and method that pairs a device identifier with an authentication credential, allowing the device to be automatically authenticated upon subsequent connections by matching the device identifier with the stored credential, using a network interface and processors to send and receive packets and executable instructions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If traditional authentication methods are used, then security is maintained, but customers must repeatedly authenticate which is tedious and reduces productivity

Engineering Contradiction:
Improveauthentication efficiencyVSAvoidauthentication convenience
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The system performs preliminary authentication by capturing the device identifier (such as MAC address) when the device first connects to the network, stores it in an authentication database, and pairs it with user credentials. This preliminary action enables automatic authentication on subsequent visits without requiring the user to manually log in again, thus improving both productivity and ease of operation

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system creates a copy of the device identifier (network hardware address) and stores it in the authentication database paired with user credentials. This copied identifier serves as a unique fingerprint for automatic recognition and authentication on subsequent network connections, eliminating the need for repeated manual authentication

Inventive Principle:
Principle #26Copying

2Ease of operation

If automatic authentication is implemented using device identifiers, then ease of operation improves, but device complexity increases due to packet sending and matching processes

Engineering Contradiction:
Improveauthentication convenienceVSAvoidauthentication system complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system introduces an intermediary authentication database that stores device identifiers paired with user credentials. This database acts as a mediator between the network infrastructure and user authentication, automatically matching incoming device identifiers against stored records to enable seamless authentication without adding significant complexity to the overall system

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication system performs self-service by automatically capturing device identifiers, storing them in the authentication database, and using them for automatic recognition on subsequent connections. The system serves itself by maintaining the authentication records and performing the matching process without requiring manual intervention, thus improving ease of operation while managing complexity through automation

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3050250B1Systems and methods for authentication using a device identifier
Publication Date: 2018.08.08 PAYPAL INC
  • EP3050250B1 patent drawingFigure 1
  • EP3050250B1 patent drawingFigure 2
  • EP3050250B1 patent drawingFigure 3

AI summary

Systems and methods are disclosed which may allow a user having a mobile device to automatically authenticate to a server using a device identifier associated with the mobile device. An access point may be configured to send the device identifier as well as additional identifying information to the server so that the device identifier can be accurately matched to the mobile device. Then, when the mobile device submits a credential during authentication, the device identifier and the credential may be matched such that the next time the server receives the device identifier from the access point, the mobile device may be automatically authenticated.