Mobile Terminal Access Control via Pre-Configured Management List

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current wireless access technologies face challenges in managing local Terminal Equipment (TE) accessing a network, particularly in ensuring secure and efficient use of Mobile Terminal (MT) resources, leading to potential unauthorized use and resource wastage.

Innovation Solution

Implementing a management list in the MT to control and authorize TE access, ensuring only authorized TEs can use the MT's resources by verifying identities and sending keys only after successful authentication, thereby enhancing security and optimizing resource usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If the MT allows any local TE to access the network using its resources, then the ease of operation is improved, but the security and resource control deteriorate

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies preliminary action by pre-configuring a management list in the MT that contains identities of authorized local TEs before network access attempts occur. When a TE seeks to access the network, the MT checks its management list beforehand to determine whether to grant access or forward authentication requests, preventing unauthorized access before it can occur and ensuring security while maintaining ease of operation for authorized devices.

Inventive Principle:
Principle #10Preliminary action

2Speed

If the MT sends key information to the TE immediately upon receiving an authentication request, then the speed of authentication is improved, but the loss of resources worsens due to potential unauthorized use

Engineering Contradiction:
Improveauthentication speedVSAvoidresource wastage
Core Design Contradiction:
SpeedVSLoss of energy

Solution Approach 1:

The patent applies preliminary action by having the MT check its management list for the TE's identity before sending any key information. This preliminary verification ensures that authentication resources are only consumed by authorized TEs, preventing resource wastage while maintaining efficient authentication speed for legitimate users through the pre-configured authorization list.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary mechanism - the management list check - that acts as a mediator between the authentication request and the key information transmission. This intermediary verification step ensures that only authorized TEs receive key information, preventing unauthorized resource consumption while maintaining the authentication process efficiency for legitimate users.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If the MT implements a management list to control TE access, then the security is improved, but the device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidmanagement complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies universality by designing the management list as a multi-functional component that simultaneously provides security control, access management, and authentication coordination. The list serves multiple purposes: filtering unauthorized TEs, managing network access rights, and coordinating with the AAA server, thereby improving security without proportionally increasing device complexity through a single versatile mechanism.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8208898B2Method for managing local terminal equipment accessing a network
Publication Date: 2012.06.26 HUAWEI TECH CO LTD
  • US8208898B2 patent drawing
  • US8208898B2 patent drawing
  • US8208898B2 patent drawing

AI summary

Methods for managing a local Terminal Equipment (TE) accessing a network are provided. One is to set in a Mobile Terminal (MT) a management list containing the identities of local TEs, and to decide according to the information of the management list whether to accept a request message from the TE, thereby implementing the management of local TE that accesses the network using resources of the MT, improving the function of the MT, and at the same time, enhancing the security of users' accounts. In accordance with this invention, a user is able to define an authority for the TE to access and learn the current state of the TE, which gives the user facilities for daily use. The other method is to modify the existing procedure such that the MT will not send the key(s) information to the TE until having received a notice of successful authentication from the TE or having decided that the message forwarded by the TE is a response message of successful authentication, which makes the procedure more reasonable and saves the network resources the method further includes a management list containing the identities of local TEs on the basis of the modified procedure.