Peer Authentication Mechanism for Communication Sessions

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication methods are inadequate for detecting malicious behavior during electronic communication sessions, particularly in scenarios where participants may be compromised or in vulnerable locations, such as during confidential business conferences.

Innovation Solution

A mechanism for orchestrating peer authentication during ongoing electronic communication sessions, where users are initially authenticated to participate and subsequently prompted to authenticate each other based on specific events or behaviors, such as prolonged silence or changes in location, using text messages or confidence-based verification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication methods are used, then initial access security is provided, but continuous security during communication sessions cannot be ensured

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidauthentication coverage duration
Core Design Contradiction:
ReliabilityVSDuration of action of moving object

Solution Approach 1:

The patent implements continuous peer authentication during the entire communication session, transforming authentication from a one-time initial action into an ongoing continuous process. The system monitors communication behavior in real-time and dynamically triggers peer authentication based on detected anomalies, ensuring authentication coverage throughout the duration of the communication rather than only at the beginning.

Inventive Principle:
Principle #20Continuity of useful action

2Reliability

If peer authentication is continuously performed, then security against malicious behavior is improved, but communication efficiency and user experience deteriorate

Engineering Contradiction:
Improvesecurity reliabilityVSAvoidcommunication efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system implements periodic peer authentication triggered by specific events or time intervals rather than continuous interruption. Authentication challenges are periodically initiated based on detected communication anomalies, unusual patterns, or predetermined time intervals, allowing normal communication to proceed uninterrupted between authentication events.

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The patent dynamically adjusts authentication parameters such as challenge frequency, authentication method selection, and monitoring sensitivity based on the detected risk level and communication context. When normal communication patterns are detected, authentication is minimized; when anomalies are detected, authentication intensity increases, optimizing the balance between security and efficiency.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If manual peer authentication is required, then detection of malicious behavior is improved, but operational complexity increases

Engineering Contradiction:
Improvemalicious behavior detectionVSAvoidauthentication operation simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables peer users to automatically perform authentication by leveraging their existing knowledge of legitimate communication partners. When anomalies are detected, the system prompts peers to verify identities using information they already possess (such as recognizing familiar voices, email addresses, or communication patterns), eliminating the need for complex external verification procedures.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent implements automated feedback loops where the system monitors communication behavior, detects anomalies, and automatically triggers appropriate authentication challenges. The system processes peer responses and automatically adjusts monitoring parameters, reducing manual intervention while maintaining high detection capability through intelligent automated decision-making.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS8950001B2Continual peer authentication
Publication Date: 2015.02.03 AVAYA INC
  • US8950001B2 patent drawing
  • US8950001B2 patent drawing
  • US8950001B2 patent drawing

AI summary

A method for orchestrating peer authentication during a call (e.g., a telephone call, a conference call between three or more parties, an instant messaging [IM] chat session, etc.) is disclosed. In particular, a user is first authenticated in order to participate in a call (e.g., via entering a password, etc.), and subsequently during the call the user may be peer authenticated. In accordance with the illustrative embodiment, a user who participates in a call might be prompted to authenticate another user on the call based on particular events or user behavior during the call.