Network Access Point Guest Authentication via Biometric Proximity

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional authentication mechanisms for guest access to wireless local area networks are insecure, prone to user error, and limit guest control, posing usability concerns and security risks, especially in temporary access scenarios.

Innovation Solution

A network access point system that detects guest equipment, determines recognition, and upon non-recognition, creates an identity verification request message to a host device for approval, generating a network access package with access credentials only after satisfying corroborating conditions such as voice signature authentication and location verification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If conventional authentication mechanisms (login credentials, WPS) are used for guest access, then network access is provided, but security risks increase and user error occurs

Engineering Contradiction:
Improveguest access convenienceVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces manual credential entry and physical router access mechanisms with automated biometric authentication (fingerprint sensors) and proximity-based detection systems. The host device automatically detects guest device proximity and initiates authentication without manual credential input, eliminating the security vulnerabilities of conventional mechanical authentication methods.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system enables self-service authentication where the guest user simply needs to have their device in proximity to the network. The host device automatically performs detection, authentication, and credential distribution without requiring the guest to manually enter credentials or physically interact with the router, reducing user error while maintaining security.

Inventive Principle:
Principle #25Self-service

2Ease of operation

If manual credential distribution is used for guest access, then network access is provided, but security flaws increase

Engineering Contradiction:
Improveaccess setup simplicityVSAvoidsecurity vulnerabilities
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent eliminates manual credential distribution by implementing automated biometric authentication systems. Fingerprint sensors and proximity detectors replace the mechanical process of printing or emailing credentials, automatically verifying guest identity and distributing digital credentials through secure channels, thereby eliminating security flaws associated with manual credential handling.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Ease of operation

If physical router access is required for guest connection, then network access is provided, but security exposure increases

Engineering Contradiction:
Improveconnection setup easeVSAvoidphysical access vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent replaces the requirement for physical router access with wireless proximity detection and biometric authentication systems. The host device detects guest device proximity through wireless signals and performs authentication remotely, eliminating the security vulnerability of requiring physical router access while maintaining ease of connection setup.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

4Ease of operation

If guest users are granted network access, then connectivity is provided, but control over other devices is limited

Engineering Contradiction:
Improvenetwork connectivityVSAvoiddevice control capability
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent implements differentiated access control where authenticated guests are granted specific local network permissions based on their authentication level. The system creates distinct network profiles that allow guests to access certain devices or services while maintaining restrictions on sensitive resources, providing both connectivity and controlled device access capability.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11601429B2Network service control for access to wireless radio networks
Publication Date: 2023.03.07 AT&T INTELLECTUAL PROPERTY I L P
  • US11601429B2 patent drawing
  • US11601429B2 patent drawing
  • US11601429B2 patent drawing

AI summary

Concepts and technologies of network service control for remote access to wireless radio networks are provided herein. In an embodiment, a client network can be provided by a network access point that can include a processor that is configured to detect a guest user equipment and determine whether the guest user equipment is a recognized device. In response to determining that the guest user equipment is not a recognized device, the processor can create an identity verification request message that seeks approval from a host device to allow the guest user equipment to access the client network. The processor can provide the identity verification request message to the host device and receive a trigger response message. The processor can create a network access package that provides the guest user equipment with access credentials to access the client network and provide the network access package to the guest user equipment.