Proxy Authentication for Multi-Device Network Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users with multiple client stations, such as a cellular-capable device and a WiFi-capable device, face challenges in connecting to a cellular service provider's WiFi network when the secondary device lacks a SIM card or unique identifying credentials, preventing it from authenticating and accessing the network despite both devices being owned by the same user.
Innovation Solution
Implementing a method where the first client station with a SIM card shares its credential information with the second client station, enabling it to act as a proxy for authentication, allowing the second station to connect to the network by forwarding requests and responses, thus utilizing the SIM card credentials for authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If the second client station uses its own credentials to connect to the network, then authentication is straightforward, but the second station cannot connect if it lacks a SIM card or unique identifying credentials
Solution Approach 1:
The patent introduces a credential sharing mechanism where the first client station (with SIM card) acts as an intermediary to provide authentication credentials to the second client station (without SIM card). The second station can then connect to the WiFi network by using the first station's credentials through a proxy authentication process, eliminating the need for the second station to have its own SIM card while maintaining network security.
2Adaptability or versatility
If the first client station shares credential information with the second client station, then the second station can authenticate and connect to the network, but there is a risk of credential security compromise
Solution Approach 1:
The patent implements preliminary association and authorization between the first and second client stations before credential sharing occurs. The first station's credentials are authorized for use by the second station in advance through a secure pairing process. During actual network connection, the second station presents these pre-authorized credentials to the network, and the network can verify and revoke these credentials centrally, maintaining security while enabling multi-device connectivity.
3Ease of operation
If each client station requires its own SIM card for network connection, then network security is maintained, but user convenience is reduced when switching between devices
Solution Approach 1:
The patent enables a single SIM card's credentials to serve multiple client stations through the credential sharing mechanism. The first client station with the SIM card can authorize one or more second client stations to use its credentials for WiFi network authentication. This makes the SIM card's authentication capability universal across multiple devices, allowing users to switch between devices without needing physical SIM cards in each device, thereby improving ease of operation while maintaining network security through centralized credential management.
Data Source
AI summary
Described are methods that allow credentials of a first client station to authenticate a second client station. An exemplary method includes associating a first client station with a second client station, the first client station including credential information, the associating authorizing the second client station to use the credential information, transmitting, by the second client station, an association request to a network, the network utilizing the credential information to authorize a connection, the second client station configured to perform a proxy functionality for requests received from the network to be forwarded to the first client station and responses received from the first client station to be forwarded to the network, determining, by the network, whether the credential information received from the second client station is authenticated and establishing a connection between the second client station and the network using the credential information of the first client station.


