NFC Service Operation Management Using Localized Credentials

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing security and authorization techniques for electronic devices are complex, costly, and inadequate for enabling sensitive service operations, often relying on external tools and backend infrastructure, which can compromise security and incur legal risks, especially during device manufacturing and research and development phases.

Innovation Solution

The use of near-field communication (NFC) techniques for authorizing service operations, allowing for context-aware and automated transfer of credentials and commands between NFC endpoints, eliminating the need for backend infrastructure and reducing reliance on non-volatile storage, thereby enhancing security and simplifying the infrastructure and steps involved in controlling service operations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If complex external tools and infrastructure are used to enable service operations, then service operations can be enabled, but device complexity and cost increase

Engineering Contradiction:
Improveservice operation enablementVSAvoidauthorization infrastructure
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent extracts the authorization data from external backend infrastructure and stores it directly in local storage on the device. This eliminates the need for complex external authorization systems while maintaining service operation enablement capabilities.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The device performs self-authorization by using locally stored authorization data to enable service operations without requiring continuous connection to external authorization servers. The device autonomously verifies and enables operations based on pre-stored credentials.

Inventive Principle:
Principle #25Self-service

2Ease of operation

If service operations are always enabled on consumer devices, then service operations are accessible, but security is compromised

Engineering Contradiction:
Improveservice operation accessibilityVSAvoidsecurity protection
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

Authorization data is pre-configured and stored in local storage before the device is put into service. This preliminary action enables fast authentication and service operation enablement without requiring real-time backend verification, while maintaining security through pre-validated credentials.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements location-specific authorization by storing device-specific authorization data in local storage. Each device has its own localized authorization credentials, allowing secure service operation enablement without exposing security mechanisms to external systems.

Inventive Principle:
Principle #3Local quality

3Reliability

If backend infrastructure is used for authorization, then authorization can be verified, but cost and infrastructure complexity increase

Engineering Contradiction:
Improveauthorization verificationVSAvoidinfrastructure requirements
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authorization verification function from external backend infrastructure and implements it locally on the device. The authorization data is stored in local storage and verified device-side, eliminating dependency on complex backend systems.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The device receives and stores a copy of the authorization data from the backend system during initial setup. This copy enables independent verification of service operations without requiring continuous connection to the original authorization server.

Inventive Principle:
Principle #26Copying

4Duration of action of stationary object

If authorization data is stored in non-volatile storage, then authorization is persistent, but security risk increases

Engineering Contradiction:
Improveauthorization persistenceVSAvoidunauthorized access risk
Core Design Contradiction:
Duration of action of stationary objectVSObject-affected harmful factors

Solution Approach 1:

The authorization data is discarded from local storage after being used to enable service operations. The system recovers the authorization purpose by enabling the operations without retaining the sensitive credentials, thus maintaining persistence while reducing security risk.

Inventive Principle:
Principle #34Discarding and recovering

Solution Approach 2:

The patent treats authorization data as disposable - it is stored temporarily in local storage just long enough to enable service operations, then discarded. This approach uses inexpensive, short-lived storage to maintain authorization persistence without creating long-term security vulnerabilities.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

Data Source

PatentUS10764734B2Service operation management using near-field communications
Publication Date: 2020.09.01 INTEL CORP
  • US10764734B2 patent drawing
  • US10764734B2 patent drawing
  • US10764734B2 patent drawing

AI summary

Various techniques for the management and control of service operations using near-field communication (NFC) technologies are disclosed. In an example, a master computing system operates to identify a device configuration that enables a service operation upon a remote client device, identify an authentication value to authenticate permission to enable the service operation with the remote client device, and generate an NFC data payload including the authentication value and device configuration. This data payload is then provided to a client computing device that operates an NFC reader. In response, the client computing device processes and authenticates the payload, and enables the indicated service operation(s) within the client computing device. Further examples to conduct the NFC data transaction and perform the service operation(s) using active and passive NFC tags are also disclosed.