NFC Tag Token Authentication System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing NFC-based product authentication systems are vulnerable to security attacks and do not ensure secure communication throughout the product life cycle, failing to provide reliable traceability and authentication.

Innovation Solution

An authentication system that uses an NFC tag with an authentication server and a controller to generate and verify a token based on the tag ID, ensuring secure communication and authentication through a token-based verification process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If NFC technology is used for product authentication, then product traceability and authentication capability are improved, but security vulnerability to attacks increases

Engineering Contradiction:
Improveproduct authentication reliabilityVSAvoidsecurity attack vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary actions by generating a unique token for each NFC tag during manufacturing and storing it in a secure database before the product reaches the end user. This pre-established secure connection between the tag ID and token enables immediate authentication without requiring complex real-time verification protocols, thus improving reliability while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces a token as an intermediary element that mediates between the NFC tag and the authentication system. The token, which is a unique identifier stored both on the NFC tag and in the secure database, acts as a secure mediator that enables authentication without exposing sensitive system information, thereby preventing various security attacks while maintaining authentication reliability.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If complex RFID/NFC authentication systems are implemented, then authentication capability is improved, but implementation complexity and cost increase

Engineering Contradiction:
Improveauthentication capabilityVSAvoidsystem implementation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the complex authentication logic from the NFC tag itself and places it in a centralized secure database on the manufacturer's server. The NFC tag only needs to store a simple unique identifier and token, while the complex verification processes are handled externally, significantly reducing the complexity of the embedded system while maintaining strong authentication capabilities.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The system creates a digital copy of the authentication data structure by storing the same token value both on the NFC tag and in the secure database. This copying approach allows for simple tag implementation while enabling comprehensive security verification through database matching, reducing overall system complexity.

Inventive Principle:
Principle #26Copying

Applied Scientific Principles

This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.

Function Achieved in This Case

The system provides reliable and secure authentication and traceability of products, preventing tampering and ensuring secure communication throughout the product life cycle, facilitating improved life cycle management and ownership management.

Implementation Method 1

An NFC enabled device, such as a mobile phone, functions as an initiator and generates a radio frequency field to power a passive target, i.e. the 'tag' which is attached to the product to be identified

Methodology Applied
Scientific EffectElectromagnetic Induction: Electromagnetic Induction

Data Source

PatentUS11989613B1Product life cycle and authentication
Publication Date: 2024.05.21 WHATT IO INTELLECTUAL PROPERTY LLC
  • US11989613B1 patent drawing
  • US11989613B1 patent drawing
  • US11989613B1 patent drawing

AI summary

An authentication system for authenticating an asset having an NFC tag is disclosed comprising an authentication server, a controller in communication with the authentication server and an NFC enabled device, the controller is configured to request reading of a tag identification number (ID) from a memory of the NFC tag, generate a tag record of the NFC tag on the authentication server, associated with the tag ID, generate a token (TS) corresponding to the NFC tag, the token is generated by an algorithm based on the tag ID, request writing of the token to the memory, associate the token with the tag ID, wherein, upon a user subsequently validating the asset, the controller is configured to request reading the token from the memory, and verify the token against the tag record comprising comparing said token with the associated token stored in the tag record on the authentication server.