Remote Authentication Provider for Network Access Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Small businesses face challenges in securing their corporate networks due to the high cost and complexity of business-class authentication technologies, which are often beyond their financial and technical capabilities.

Innovation Solution

Implementing a system that leverages third-party authentication platforms, where a remote authentication provider issues identification packets stored on electronic devices, allowing users to access networks securely through a trusted execution environment that separates authentication processes from the host operating system, using secure communication channels and authentication routines.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If business-class authentication technology is implemented to secure network access, then network security is improved, but cost and system complexity increase significantly

Engineering Contradiction:
Improvenetwork securityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a remote authentication provider as an intermediary between the electronic device and the network. This mediator handles the complex authentication protocols and credential verification, allowing small businesses to leverage enterprise-grade security without implementing the complex authentication infrastructure themselves. The remote provider acts as the intermediary that manages the authentication complexity externally.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication functionality is extracted from the local network infrastructure and placed in a remote authentication provider. By taking out the complex authentication system from the small business environment and relocating it to a remote service, the patent enables small businesses to access enterprise-level security capabilities without bearing the complexity and cost of implementing such systems locally.

Inventive Principle:
Principle #2Taking out (Extraction)

2Reliability

If third-party authentication services are utilized, then authentication capability is improved, but dependency on external systems increases

Engineering Contradiction:
Improveauthentication capabilityVSAvoidsystem independence
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The electronic device performs preliminary actions by storing credentials locally in a secure element and establishing authentication capabilities before needing external verification. This preliminary preparation allows the device to independently manage its authentication credentials and only engage the remote authentication provider when actual network access is required, maintaining a balance between external service utilization and local capability.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10083445B2Authentication for network access related applications
Publication Date: 2018.09.25 INTEL CORP
  • US10083445B2 patent drawing
  • US10083445B2 patent drawing
  • US10083445B2 patent drawing

AI summary

In one embodiment a controller comprises logic to receive, via a near field communication link, an identification packet generated by a remote authentication provider, associate an electronic signature with the identification packet, transmit the identification packet to a remote authentication provider, receive an authorization from the remote authentication provider, receive login information associated with the identification packet, and initiate a login procedure using the login information. Other embodiments may be described.