Printer Authentication via NFC Token Exchange

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication systems for printers face challenges in securely limiting terminal devices that can transmit control instructions, increasing user workload and potential security risks.

Innovation Solution

A communication system that includes a terminal device and a printer, utilizing short-range wireless communication via NFC and Wi-Fi Direct, where the terminal device transmits connection and identification information to the printer, allowing secure authentication and control without physical user interaction, and uses tokens with varying validity periods for secure operations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a user is required to perform operations to limit the number of terminal devices that can transmit control instructions, then security is improved, but user workload increases

Engineering Contradiction:
ImprovesecurityVSAvoiduser workload
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary authentication actions by utilizing the NFC connection establishment process to automatically exchange and verify authentication information between the terminal device and communication device. This preliminary authentication occurs before the terminal device can transmit control instructions, thereby limiting authorized devices without requiring additional user operations.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system enables self-service authentication where the terminal device and communication device automatically perform mutual authentication using pre-shared keys or certificates stored in their respective secure elements. The authentication process is initiated and completed automatically during NFC connection establishment, eliminating the need for manual user intervention to limit authorized devices.

Inventive Principle:
Principle #25Self-service

2Ease of operation

If multiple terminal devices are allowed to transmit control instructions, then ease of operation is improved, but security deteriorates

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The NFC communication interface serves as an intermediary that mediates between the terminal device and communication device. During the NFC connection establishment, authentication information is exchanged and verified, acting as a gatekeeper that determines which terminal devices are authorized to transmit control instructions via the wireless communication interface. This intermediary authentication mechanism enables multiple devices to be allowed while maintaining security.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If authentication operations are required before transmitting control instructions, then security is improved, but productivity decreases

Engineering Contradiction:
ImprovesecurityVSAvoidtransmission efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

Authentication is performed as a preliminary action during the NFC connection establishment phase, before the terminal device transmits control instructions via the wireless communication interface. The authentication information is exchanged and verified in advance, so that once authenticated, the terminal device can transmit control instructions immediately without repeated authentication delays, thereby maintaining both security and productivity.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12108256B2Communication system, communication device, transmission method, and non-transitory computer-readable recording medium for communication device
Publication Date: 2024.10.01 BROTHER KOGYO KK
  • US12108256B2 patent drawing
  • US12108256B2 patent drawing
  • US12108256B2 patent drawing

AI summary

A terminal device is configured to transmit communication start notification for starting short-range wireless communication between a terminal device-side communication interface and a communication device-side communication interface. In response to the communication start notification, a communication device transmits authentication information of wireless communication and a printer one-time token to the terminal device via the short-range communication. The terminal device transmits connection information for connecting a router to the communication device via the wireless communication using the authentication information. The communication device performs setting for connecting the router using the connection information.