Secure Session Access via Intermediary Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing secure communication sessions require participants to be pre-registered and have access codes, leading to issues when participants forget or lose their codes, or are mistakenly omitted from participant lists, preventing them from accessing sessions and affecting content accuracy.

Innovation Solution

A method that allows a requesting terminal to access a secure communication session by sending an access request message to participating terminals, which can be accepted without the terminal being on the pre-registered list or having the access code, through a secondary synchronous communication session for verification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If access codes and pre-registered participant lists are used for secure communication sessions, then security is improved, but accessibility deteriorates when participants forget codes or are omitted from lists

Engineering Contradiction:
ImprovesecurityVSAvoidaccessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a mediator mechanism where participating terminals act as intermediaries to verify and admit requesting terminals. Instead of requiring direct knowledge of access codes by all participants, the system uses a verification process where one participating terminal can authenticate a requester and grant access, eliminating the need for individual participants to remember codes or maintain accurate registered lists.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If strict access control with access codes is implemented, then security is improved, but operational complexity increases when participants need to recover or update access information

Engineering Contradiction:
ImprovesecurityVSAvoidoperational complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements self-service by allowing any participating terminal to perform the admission verification function for requesting terminals. The system automatically handles access control decisions without requiring manual intervention from administrators or complex recovery procedures. Participating terminals autonomously verify requests and manage their own access control, eliminating operational complexity related to code recovery or list maintenance.

Inventive Principle:
Principle #25Self-service

3Measurement precision

If participant lists are manually maintained and updated, then access control precision is improved, but time consumption increases for adding or updating participants

Engineering Contradiction:
Improveaccess control precisionVSAvoidtime consumption
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The patent establishes a feedback mechanism where requesting terminals send access requests to participating terminals, which then provide verification feedback. This automated feedback loop eliminates the need for manual list maintenance and updates. The system continuously monitors and responds to access requests in real-time, providing precise access control without time-consuming manual operations for adding or updating participants.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS20230308493A1Access method and device for managing access to a secure communication session between participating communication terminals by a requesting communication terminal
Publication Date: 2023.09.28 ORANGE SA
  • US20230308493A1 patent drawing
  • US20230308493A1 patent drawing
  • US20230308493A1 patent drawing

AI summary

A method for accessing a first secure communication session, referred to as a first session, in progress between participating communication terminals, referred to as participating terminals, by a requesting communication terminal, referred to as a requesting terminal. The access method includes: triggering an entry into the first session in progress of the requesting terminal on receipt of an acceptance from one of the participating terminals following a transmission of an access request message sent by the requesting terminal to at least one participating terminal of the first session. Hence, the requesting terminal will easily access the first secure communication session even if the requesting terminal does not follow the secure access procedure.