Proxy Device Credential Management for Secure IoT Transactions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The proliferation of network-enabled connected devices poses a challenge in providing data security for interactions, as sensitive information like payment account details and credentials can be intercepted during transactions, leading to potential fraud.
Innovation Solution
A proxy device is configured to store and manage access credentials on behalf of connected devices, establishing trusted relationships and initiating transactions using stored credentials, thereby reducing the risk of interception and ensuring protocol compliance.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Extent of automation
If connected devices conduct transactions directly over wireless networks, then transaction convenience and automation are improved, but data security and fraud prevention deteriorate due to interception risks
Solution Approach 1:
The patent introduces a server as an intermediary between connected devices and transaction partners. The server stores access credentials securely and manages transactions on behalf of connected devices, preventing direct exposure of sensitive data over wireless networks while maintaining automated transaction capability. The server acts as a trusted mediator that authenticates devices and processes transactions without requiring devices to handle sensitive credentials directly.
2Ease of operation
If access credentials are transmitted over wireless channels for transactions, then transaction processing is simplified, but security and fraud risk worsen due to potential interception
Solution Approach 1:
The patent extracts access credentials from connected devices and stores them securely on a remote server. This separation allows transactions to proceed using credential references or tokens rather than transmitting actual credentials over wireless channels. The credentials remain protected on the server while still enabling simplified transaction processing through automated authentication.
Solution Approach 2:
The system performs preliminary authentication and credential verification on the server before transactions occur. Access credentials are validated and authorized in advance by the server, allowing connected devices to conduct transactions using simplified authentication tokens or references rather than transmitting actual credentials during transaction processing.
3Reliability
If multiple connected devices are managed individually with separate credentials, then device-specific security is improved, but system complexity and credential management burden worsen
Solution Approach 1:
The patent implements a universal credential management system where a single server handles authentication and credential storage for multiple connected devices. The server provides multi-functional capabilities including credential storage, validation, transaction processing, and device registration. This centralized approach maintains device-specific security through individual credential validation while eliminating the complexity of managing separate credential systems for each device.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Described herein is a proxy device including a platform and method for storing and managing access credentials for one or more connected devices. In some embodiments, the proxy device establishes a trusted relationship with one or more connected devices. In some embodiments, the proxy device may provide an encryption key to the connected device in order to secure future transactions between the two devices. The proxy device may store and manage one or more access credentials associated with the connected device, and may initiate a transaction with a transaction server on behalf of the connected device using those access credentials.