QR Code Mobile Device Provisioning for EHR Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for providing secure access to patient electronic health records on mobile devices are cumbersome, especially for patients with limited hospital stays, as they require creating new accounts, and shared devices need frequent re-provisioning, which is time-consuming and error-prone.

Innovation Solution

A system that generates a computer-readable code, such as a QR code, with unique identifiers and information like client tokens, organization details, and patient data, allowing authorized users to securely access the EHR system by scanning the code using a mobile device's camera or near-field communication technology.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If patients create new accounts for each hospital stay using traditional authentication models, then secure access to EHR is maintained, but the provisioning process becomes cumbersome and time-consuming

Engineering Contradiction:
Improvesecure access to EHRVSAvoidprovisioning process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary actions by pre-generating authentication credentials and device identifiers before the patient actually needs to access the EHR. When a device is brought into the facility, it automatically receives provisioning information through scanning or NFC, eliminating the need for patients to manually create accounts during their stay.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary provisioning system that acts as a bridge between the EHR system and patient devices. This intermediary handles the complex authentication and credential distribution processes, allowing patients to simply scan a QR code or tap their device while the system manages the secure backend operations.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If shared devices are frequently re-provisioned for different patients, then access control security is maintained, but the process becomes error-prone and time-consuming

Engineering Contradiction:
Improveaccess control securityVSAvoiddevice re-provisioning efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system enables self-service provisioning where devices automatically obtain their own authentication credentials without requiring manual intervention from healthcare workers. When a device scans a QR code or communicates via NFC, it autonomously receives and configures the necessary provisioning information, eliminating human error in the re-provisioning process.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical processes of device re-provisioning with automated electronic systems. Instead of workers manually configuring devices, the system uses electronic credential distribution through QR codes and NFC communication to automatically provision devices, significantly improving efficiency and reducing errors.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If traditional account creation processes are used for inpatient applications, then security validation is maintained, but patient engagement is reduced due to the cumbersome process

Engineering Contradiction:
Improvesecurity validationVSAvoidpatient engagement
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The intermediary provisioning system mediates between security requirements and patient convenience. It handles the security validation processes in the background while presenting a simple, engaging user experience to patients through QR code scanning or NFC tapping, allowing them to access their health information without dealing with complex account creation procedures.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11935633B1Secure mobile device provisioning system
Publication Date: 2024.03.19 EPIC SYST CORP (US)
  • US11935633B1 patent drawing
  • US11935633B1 patent drawing
  • US11935633B1 patent drawing

AI summary

The present invention relates to a system method of provisioning mobile device security settings to provide authorized users with secure access. The system and method uses a generated, computer-readable authentication code that is read by a mobile device. The authentication code enables an unprovisional mobile device to request security credentials to enable a user of the mobile device to connect to a secured system.