Secure Mobile Communication via Certificate Authority Mediation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for secure communication between mobile devices are vulnerable to 'man in the middle' attacks when authentication information is distributed remotely, as attackers can intercept and modify the information, compromising the security of the communication channel.
Innovation Solution
A secure communication method that involves receiving credentials and authentication information from a remote device, storing them in a user record, and evaluating the security level based on factors such as the number of bits, communication channel type, and quality, to establish a secure channel using a shared security key.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If authentication information is distributed remotely, then communication convenience is improved, but security reliability deteriorates due to vulnerability to man in the middle attacks
Solution Approach 1:
The patent introduces a certificate authority (CA) as an intermediary third party that issues digital certificates to devices. This mediator verifies the identity of remote devices and signs their authentication information, allowing secure remote authentication without direct trust between communicating parties. The CA's digital signature serves as a mediator that guarantees authenticity while enabling convenient remote communication.
Solution Approach 2:
The patent replaces physical security mechanisms (geographical adjacency, direct exchange) with cryptographic mechanisms. Instead of relying on physical proximity or manual verification, the system uses digital signatures, public key infrastructure, and certificate validation to authenticate remote devices. This substitution enables secure authentication over network communications while maintaining convenience.
2Reliability
If authentication information is exchanged via near field communication or storage medium, then security integrity is improved, but device complexity increases
Solution Approach 1:
The patent creates a universal authentication system that works across multiple communication channels and device types. The certificate-based authentication mechanism can be applied to various scenarios including near field communication, wireless networks, and storage medium exchanges. This universal approach simplifies device complexity by providing a single standardized method that handles different authentication contexts without requiring device-specific specialized mechanisms.
Data Source
AI summary
Methods and apparatuses for secure communication are provided. The secure communication method includes receiving a first credential of a remote device; receiving first authentication information of the remote device; storing a user record including the first credential and the first authentication information; and evaluating a security level of the received first authentication information.


