Network Access Control via Communication Device Voice Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional username/password credentials for accessing protected networks are insecure due to easily discoverable information, and voice authentication quality varies across different computer models, compromising security.

Innovation Solution

A system that uses a network access control module to authenticate users via a unique identifier from a communication device, such as a telephone, which transmits a unique identifier to a network access server for device and user authentication, and then submits log-on information directly to the computer for secure access to the protected network.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If voice authentication is implemented using computer microphones, then user authentication capability is improved, but authentication quality and security deteriorate due to varying microphone performance across different computer models

Engineering Contradiction:
Improveauthentication capabilityVSAvoidvoice authentication quality
Core Design Contradiction:
Adaptability or versatilityVSMeasurement precision

Solution Approach 1:

The patent introduces a separate communication device (such as a telephone) as an intermediary between the user and the authentication system. This device includes a dedicated voice input component with consistent performance characteristics, mediating the voice capture process to ensure uniform authentication quality across all users regardless of their computer hardware variations.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces the variable-quality computer microphone system with a standardized communication device voice input system. This substitution eliminates the mechanical variability of different computer microphone models while maintaining the core voice authentication functionality.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Ease of operation

If username and password credentials are used for network access, then ease of operation is improved, but security deteriorates due to easily discoverable information

Engineering Contradiction:
Improveaccess convenienceVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the traditional username/password credential system with voice biometric authentication. This substitution eliminates the security vulnerabilities associated with discoverable text-based credentials while providing a more robust biometric verification mechanism that is harder to compromise.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent changes the fundamental parameter of authentication from text-based credentials (username/password) to biometric voice patterns. This parameter change transforms the authentication mechanism from something that can be easily guessed or stolen to something that is inherently tied to the user's physical characteristics.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS8499166B2Controlling access to a protected network
Publication Date: 2013.07.30 AVATIER IP LLC
  • US8499166B2 patent drawing
  • US8499166B2 patent drawing
  • US8499166B2 patent drawing

AI summary

A system for controlling access to a protected network includes a network access control module coupled to the network and configured to restrict access to the network to an authorized user through a computer coupled to the network. The system also includes a communication device associated with the computer, which automatically transmits a unique identifier corresponding to the communication device to the network access control module when a user uses the communication device to request access to the network via the computer. When the network access control module receives the unique identifier it is configured to authenticate the communication device, to authenticate the user via the communication device when the communication device is authenticated, and when the user is authenticated, to submit log-on information to a log-on interface of the computer associated with the communication device so that the user can access the network via the computer.