NFC Authentication for Secure Remote Medical Data Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The security of remote medical data access in the medical industry is compromised due to the ease with which account numbers and passwords can be sniffed using honeypot Wi-Fi and pseudo base stations, posing a risk to patient privacy.
Innovation Solution
A data access method utilizing Near Field Communication (NFC) circuits for authentication, where a User Equipment (UE) acquires authentication data from a first NFC circuit and transmits it to a second NFC circuit on a server for verification via a network connection, ensuring secure remote access without modifying the existing information network structure.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If wireless access mode is controlled using password and account number for remote login, then ease of operation is improved, but security is worsened due to ease of sniffing authentication data
Solution Approach 1:
The patent replaces the traditional password-based authentication system with NFC (Near Field Communication) technology. Instead of transmitting authentication data through vulnerable wireless channels susceptible to sniffing, the system uses NFC's short-range electromagnetic field communication to securely exchange authentication information between the medical worker's device and the server, thereby maintaining operational convenience while significantly enhancing security
Solution Approach 2:
The patent introduces NFC technology as an intermediary layer between the medical worker and the server system. This intermediary enables secure authentication by utilizing NFC's inherent security features including encrypted communication channels and short-range transmission, which prevent eavesdropping and data interception that plague traditional wireless password-based systems
2Ease of operation
If traditional password-based remote access is used, then ease of operation is improved, but vulnerability to hacking and data sniffing increases
Solution Approach 1:
The patent substitutes the vulnerable password transmission mechanism with NFC-based authentication. The NFC system uses electromagnetic induction for short-range communication, creating a secure channel that is resistant to remote hacking and data sniffing, while maintaining the same user-friendly access experience
Solution Approach 2:
The patent changes the transmission parameter from long-range wireless communication (prone to interception) to short-range NFC communication. This parameter change in transmission distance and communication protocol fundamentally alters the security landscape, making eavesdropping and hacking significantly more difficult while preserving access convenience
Applied Scientific Principles
This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.
Function Achieved in This Case
This method enhances the security and convenience of remote medical data access by authenticating the UE through NFC data, allowing authorized access while preventing unauthorized access, thus protecting sensitive patient information.
Implementation Method 1
acquiring, by a UE, authentication data from a first Near Field Communication (NFC) circuit; transmitting, by the UE, the authentication data to a second NFC circuit of a server for authentication via a network connection between the UE and the server
Data Source
AI summary
A data access method, a UE and a server are provided. The data access method includes: acquiring, by the UE, authentication data from an NFC circuit; transmitting, by the UE, the authentication data to a second NFC circuit of the server for authentication via a network connection between the UE and the server; and in the case that the UE has been authenticated successfully, transmitting, by the UE, a data access request to the server via the network connection, and accessing to-be-accessed data that corresponds to the data access request and is transmitted by the server.

