Mobile Terminal Access Control via Pre-Configured Management List
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current wireless access technologies face challenges in managing local Terminal Equipment (TE) accessing a network, particularly in ensuring secure and efficient use of Mobile Terminal (MT) resources, leading to potential unauthorized use and resource wastage.
Innovation Solution
Implementing a management list in the MT to control and authorize TE access, ensuring only authorized TEs can use the MT's resources by verifying identities and sending keys only after successful authentication, thereby enhancing security and optimizing resource usage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If the MT allows any local TE to access the network using its resources, then the ease of operation is improved, but the security and resource control deteriorate
Solution Approach 1:
The patent applies preliminary action by pre-configuring a management list in the MT that contains identities of authorized local TEs before network access attempts occur. When a TE seeks to access the network, the MT checks its management list beforehand to determine whether to grant access or forward authentication requests, preventing unauthorized access before it can occur and ensuring security while maintaining ease of operation for authorized devices.
2Speed
If the MT sends key information to the TE immediately upon receiving an authentication request, then the speed of authentication is improved, but the loss of resources worsens due to potential unauthorized use
Solution Approach 1:
The patent applies preliminary action by having the MT check its management list for the TE's identity before sending any key information. This preliminary verification ensures that authentication resources are only consumed by authorized TEs, preventing resource wastage while maintaining efficient authentication speed for legitimate users through the pre-configured authorization list.
Solution Approach 2:
The patent introduces an intermediary mechanism - the management list check - that acts as a mediator between the authentication request and the key information transmission. This intermediary verification step ensures that only authorized TEs receive key information, preventing unauthorized resource consumption while maintaining the authentication process efficiency for legitimate users.
3Reliability
If the MT implements a management list to control TE access, then the security is improved, but the device complexity increases
Solution Approach 1:
The patent applies universality by designing the management list as a multi-functional component that simultaneously provides security control, access management, and authentication coordination. The list serves multiple purposes: filtering unauthorized TEs, managing network access rights, and coordinating with the AAA server, thereby improving security without proportionally increasing device complexity through a single versatile mechanism.
Data Source
AI summary
Methods for managing a local Terminal Equipment (TE) accessing a network are provided. One is to set in a Mobile Terminal (MT) a management list containing the identities of local TEs, and to decide according to the information of the management list whether to accept a request message from the TE, thereby implementing the management of local TE that accesses the network using resources of the MT, improving the function of the MT, and at the same time, enhancing the security of users' accounts. In accordance with this invention, a user is able to define an authority for the TE to access and learn the current state of the TE, which gives the user facilities for daily use. The other method is to modify the existing procedure such that the MT will not send the key(s) information to the TE until having received a notice of successful authentication from the TE or having decided that the message forwarded by the TE is a response message of successful authentication, which makes the procedure more reasonable and saves the network resources the method further includes a management list containing the identities of local TEs on the basis of the modified procedure.


