Secure Mobile Communication via Certificate Authority Mediation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for secure communication between mobile devices are vulnerable to 'man in the middle' attacks when authentication information is distributed remotely, as attackers can intercept and modify the information, compromising the security of the communication channel.

Innovation Solution

A secure communication method that involves receiving credentials and authentication information from a remote device, storing them in a user record, and evaluating the security level based on factors such as the number of bits, communication channel type, and quality, to establish a secure channel using a shared security key.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If authentication information is distributed remotely, then communication convenience is improved, but security reliability deteriorates due to vulnerability to man in the middle attacks

Engineering Contradiction:
Improvecommunication convenienceVSAvoidsecurity reliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a certificate authority (CA) as an intermediary third party that issues digital certificates to devices. This mediator verifies the identity of remote devices and signs their authentication information, allowing secure remote authentication without direct trust between communicating parties. The CA's digital signature serves as a mediator that guarantees authenticity while enabling convenient remote communication.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces physical security mechanisms (geographical adjacency, direct exchange) with cryptographic mechanisms. Instead of relying on physical proximity or manual verification, the system uses digital signatures, public key infrastructure, and certificate validation to authenticate remote devices. This substitution enables secure authentication over network communications while maintaining convenience.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Reliability

If authentication information is exchanged via near field communication or storage medium, then security integrity is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity integrityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent creates a universal authentication system that works across multiple communication channels and device types. The certificate-based authentication mechanism can be applied to various scenarios including near field communication, wireless networks, and storage medium exchanges. This universal approach simplifies device complexity by providing a single standardized method that handles different authentication contexts without requiring device-specific specialized mechanisms.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8875262B2Method and apparatus for secure communication between mobile devices
Publication Date: 2014.10.28 SAMSUNG ELECTRONICS CO LTD
  • US8875262B2 patent drawing
  • US8875262B2 patent drawing
  • US8875262B2 patent drawing

AI summary

Methods and apparatuses for secure communication are provided. The secure communication method includes receiving a first credential of a remote device; receiving first authentication information of the remote device; storing a user record including the first credential and the first authentication information; and evaluating a security level of the received first authentication information.