Security Module Network Authentication Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current security modules for communication terminals do not effectively tie the usage of network-independent application modules to a specific telecommunications network, allowing users to access these applications without necessarily using the operator's network.

Innovation Solution

A security module with a locking and unlocking mechanism, controlled by a module that enables or disables the usability of application modules based on authenticated data from a specific telecommunications network, ensuring that network-independent applications can only be used when the user is registered and authenticated within that network.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If network-independent application modules are provided in the security module, then the functionality and versatility of the security module is improved, but the operator loses control over whether subscribers use these applications without using the operator's telecommunications network

Engineering Contradiction:
Improvefunctionality of security moduleVSAvoidoperator control
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent implements dynamic control of application module usability through a control module that receives authentication data from the telecommunications network and dynamically enables or disables application modules based on whether the subscriber is authenticated with the operator's network. This resolves the contradiction by making the system adaptable (principle 35) while maintaining operator control (principle 15), as the application modules can be dynamically locked or unlocked based on network authentication status.

Inventive Principle:
Principle #15Dynamics

2Ease of operation

If the security module allows access to application modules without network authentication, then the ease of operation for users is improved, but the operator cannot tie the usage of applications to the usage of their network

Engineering Contradiction:
Improveuser access to applicationsVSAvoidnetwork usage tie
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent implements preliminary locking of application modules before network authentication occurs. The control module receives authentication data from the telecommunications network and only after successful authentication does it enable the application modules. This preliminary locking mechanism ensures that users cannot access applications without first being authenticated with the operator's network, thereby maintaining the reliability of network usage tying while preserving ease of operation after authentication.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8509737B2Security module and method of controlling usability of application modules
Publication Date: 2013.08.13 INTERDIGITAL CE PATENT HOLDINGS SAS
  • US8509737B2 patent drawing
  • US8509737B2 patent drawing
  • US8509737B2 patent drawing

AI summary

For a communication terminal (10), proposed is a security module (1) configured to authenticate a telecommunications network (2). The security module (1) comprises a locking module (12), for disabling usability of an application module (11), an unlocking module (13), for re-enabling usability of the application module (11), and a control module (14) for activating the unlocking module (13), depending on received data that is assignable in an authenticated way to a specific telecommunications network (2). The control module (14) is configured to activate the locking module (12) depending on the selection and usage of the application module (11). The control module (14) is configured to activate the unlocking module (12) depending on the reception of authorization messages, that can be authenticated, or authentication data of the telecommunications network (2). By disabling and re-enabling usability of the application module (11), depending on received data that is assignable in an authenticated way to a specific telecommunications network (2), the usage of network independent applications can be tied to the usage of a specific telecommunications network.