NFC Tag Token Authentication System
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing NFC-based product authentication systems are vulnerable to security attacks and do not ensure secure communication throughout the product life cycle, failing to provide reliable traceability and authentication.
Innovation Solution
An authentication system that uses an NFC tag with an authentication server and a controller to generate and verify a token based on the tag ID, ensuring secure communication and authentication through a token-based verification process.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If NFC technology is used for product authentication, then product traceability and authentication capability are improved, but security vulnerability to attacks increases
Solution Approach 1:
The system performs preliminary actions by generating a unique token for each NFC tag during manufacturing and storing it in a secure database before the product reaches the end user. This pre-established secure connection between the tag ID and token enables immediate authentication without requiring complex real-time verification protocols, thus improving reliability while maintaining security.
Solution Approach 2:
The patent introduces a token as an intermediary element that mediates between the NFC tag and the authentication system. The token, which is a unique identifier stored both on the NFC tag and in the secure database, acts as a secure mediator that enables authentication without exposing sensitive system information, thereby preventing various security attacks while maintaining authentication reliability.
2Reliability
If complex RFID/NFC authentication systems are implemented, then authentication capability is improved, but implementation complexity and cost increase
Solution Approach 1:
The patent extracts the complex authentication logic from the NFC tag itself and places it in a centralized secure database on the manufacturer's server. The NFC tag only needs to store a simple unique identifier and token, while the complex verification processes are handled externally, significantly reducing the complexity of the embedded system while maintaining strong authentication capabilities.
Solution Approach 2:
The system creates a digital copy of the authentication data structure by storing the same token value both on the NFC tag and in the secure database. This copying approach allows for simple tag implementation while enabling comprehensive security verification through database matching, reducing overall system complexity.
Applied Scientific Principles
This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.
Function Achieved in This Case
The system provides reliable and secure authentication and traceability of products, preventing tampering and ensuring secure communication throughout the product life cycle, facilitating improved life cycle management and ownership management.
Implementation Method 1
An NFC enabled device, such as a mobile phone, functions as an initiator and generates a radio frequency field to power a passive target, i.e. the 'tag' which is attached to the product to be identified
Data Source
AI summary
An authentication system for authenticating an asset having an NFC tag is disclosed comprising an authentication server, a controller in communication with the authentication server and an NFC enabled device, the controller is configured to request reading of a tag identification number (ID) from a memory of the NFC tag, generate a tag record of the NFC tag on the authentication server, associated with the tag ID, generate a token (TS) corresponding to the NFC tag, the token is generated by an algorithm based on the tag ID, request writing of the token to the memory, associate the token with the tag ID, wherein, upon a user subsequently validating the asset, the controller is configured to request reading the token from the memory, and verify the token against the tag record comprising comparing said token with the associated token stored in the tag record on the authentication server.


