Provisioning platform for machine-to-machine devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Households face inconvenience due to regular paper bills for goods and services, and there is a need for more convenient ways for machines to interact and manage resources without human intervention.

Innovation Solution

A method and system where machines are provisioned with access credentials and consumer information, allowing them to autonomously interact with other machines to obtain resources, such as through a provisioning server computer that binds device identifiers to consumer information and provides access credentials for transactions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Extent of automation

If machines interact without human intervention, then automation and convenience are improved, but security and control over transactions may worsen

Engineering Contradiction:
Improvemachine-to-machine interaction automationVSAvoidtransaction security and control
Core Design Contradiction:
Extent of automationVSReliability

Solution Approach 1:

The patent introduces a provisioning server as an intermediary between machines and resource providers. This server binds device identifiers to consumer information and provides access credentials, acting as a trusted mediator that enables automated machine-to-machine transactions while maintaining security and control through centralized credential management and policy enforcement.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If access credentials are stored on machines, then transaction independence is improved, but security risks from credential exposure may worsen

Engineering Contradiction:
Improvetransaction independenceVSAvoidcredential exposure risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts sensitive consumer information from direct machine storage by using a provisioning server to hold and manage credentials. Machines receive only necessary access credentials bound to their device identifiers, while the server retains control over the full consumer information, reducing exposure risk while maintaining transaction independence.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The provisioning server acts as an intermediary that securely manages access credentials. It binds device identifiers to consumer information and provides controlled access to machines, enabling them to operate independently while the server mitigates security risks through centralized credential protection and policy enforcement.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Manufacturing precision

If consumer information is bound to device identifiers, then transaction accuracy and resource management are improved, but system complexity increases

Engineering Contradiction:
Improvetransaction accuracyVSAvoidprovisioning system complexity
Core Design Contradiction:
Manufacturing precisionVSDevice complexity

Solution Approach 1:

The provisioning server provides multiple functions within a single system: binding device identifiers to consumer information, issuing access credentials, enforcing policies, and managing transactions. This multi-functional approach achieves high transaction accuracy while consolidating complexity into a centralized service rather than distributing it across multiple components.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11580519B2Provisioning platform for machine-to-machine devices
Publication Date: 2023.02.14 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US11580519B2 patent drawing
  • US11580519B2 patent drawing
  • US11580519B2 patent drawing

AI summary

Techniques described herein include a platform and process for provisioning user information onto a machine-to-machine device in order to enable the machine-to-machine device to conduct transactions utilizing the user information. In some embodiments, a user device is used to relay information between a machine-to-machine device and a provisioning service provider computer. In some embodiments, a machine-to-machine device is connected to the provisioning service provider computer via a network connection. Upon receiving a request to provision the machine-to-machine device, the service provider computer may identify the device from a device identifier. The service provider computer may generate an access credential or token for the machine-to-machine device. The access credential, token, and/or one or more policies may be provisioned onto the machine-to-machine device.