Remote Control System with Time-Constrained Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The increasing threat of malware infections in user information terminals poses a security risk when controlling external devices remotely, as attackers can exploit vulnerabilities to manipulate devices illegitimately.
Innovation Solution
A remote control system that includes a controlled device and a mobile communication terminal, which transmits first data and subsequent response data with a time constraint, ensuring that only legitimate and timely responses execute remote control processes, thereby preventing unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If remote control is enabled using a mobile communication terminal, then convenience of operation is improved, but security against malware infections and unauthorized operations deteriorates
Solution Approach 1:
The controlled device transmits first data (challenge) before receiving the control command, and verifies the timing of the second data (response) before executing the remote control operation. This preliminary verification ensures that the mobile terminal is legitimate and the communication is timely, preventing malware infections from causing unauthorized operations.
2Reliability
If authentication process is added to verify mobile terminal legitimacy, then security is improved, but device complexity increases
Solution Approach 1:
The controlled device transmits first data to the mobile terminal and waits for second data within a predetermined time period. This feedback mechanism verifies that the mobile terminal is legitimate and the response is timely, providing simple yet effective authentication without complex verification processes.
3Reliability
If time constraint verification is implemented, then prevention of delayed retransmission attacks is improved, but response time requirement increases
Solution Approach 1:
The controlled device executes the remote control operation only when the second data is received within a predetermined time period after transmitting the first data. This time-constrained verification quickly identifies and rejects delayed or malicious retransmission attempts, preventing attacks while maintaining efficient operation.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A delivery box (12) transmits, when accepting remote control, first data to a user terminal (14). The user terminal (14) transmits second data including a detail of remote control to the delivery box (12) in response to the first data. The delivery box (12) performs a process determined by the detail of remote control included in the second data when a time elapsed since the first data is transmitted until the second data is received is less than a threshold value.