Portable Device Access Control via Dynamic Verification Codes

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Access control systems and elevator systems in commercial settings require users to present authentication methods, such as RFID cards or passwords, which can be cumbersome and do not fully leverage the potential of portable electronic devices for enhanced usability and security.

Innovation Solution

A system that provides access codes to portable electronic devices, allowing users to activate and verify access through SMS links, optical codes, or device identifiers, with additional security measures like device unlocking and limited validity times to prevent unauthorized forwarding.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If access codes are provided to portable electronic devices via SMS links that can be forwarded, then user convenience is improved, but security is worsened due to potential unauthorized forwarding

Engineering Contradiction:
Improveuser convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary verification by detecting whether the portable electronic device is unlocked before granting access. This preliminary action ensures that even if an access code is forwarded via SMS, it cannot be used unless the recipient can unlock their device, thereby maintaining security while preserving convenience

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system provides feedback about the device's locked/unlocked state to the access control system. This feedback mechanism allows the system to make informed access decisions based on the actual security state of the user's device, preventing unauthorized access while allowing legitimate access

Inventive Principle:
Principle #23Feedback

2Reliability

If multiple authentication factors are required, then security is improved, but device complexity is worsened

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system merges multiple authentication factors (device ownership via SMS, device unlock state, and access code validation) into a unified authentication process. This consolidation provides robust security while presenting a simple user experience, as the user only needs to unlock their device and present it to the reader

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If access codes are tied to specific devices, then security is improved, but adaptability is worsened

Engineering Contradiction:
ImprovesecurityVSAvoiddevice flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The system replaces traditional mechanical token-based access control with an optical code system displayed on portable electronic devices. This substitution allows access codes to be dynamically generated and displayed on any compatible device without being permanently tied to specific hardware, providing both security and flexibility

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentEP3227866B1Improved access control using portable electronic devices
Publication Date: 2023.10.04 INVENTIO AG
  • EP3227866B1 patent drawingFigure 1
  • EP3227866B1 patent drawingFigure 2
  • EP3227866B1 patent drawingFigure 3

AI summary

To control access to a predetermined service or area, a system receives an activation signal indicative of a user's activation of an access code. As a result of receiving the activation signal, the system sends a verification code to a portable electronic device (170) of the user (150). An access terminal (180) receives the verification code. Access to the predetermined service or area is granted if the verification code is received at the access terminal (180) meeting one of several predetermined conditions. One condition requires that the verification code is provided to the access terminal (180) within a limited validity time.