Security Token Access Device Multi-Device Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Security token access devices are typically dedicated to a single user device, making them inconvenient for users who need to access multiple devices securely, as they require severing connections between devices to switch usage.

Innovation Solution

A method and system for automatically managing security information on a security token access device, allowing it to wirelessly communicate with multiple user devices by designating a primary device, storing connection information, and clearing security information if the primary device disconnects, ensuring secure pairing and access across multiple devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a security token access device uses a dedicated connection with a single user device, then security is maintained through dedicated pairing, but the device cannot be used with multiple user devices simultaneously

Engineering Contradiction:
Improvemulti-device compatibilityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the connection management by designating one device as primary and others as secondary. The access device maintains separate connection states for primary and secondary devices, allowing simultaneous connections while managing security information differently for each type of connection.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamic connection management where the access device can automatically detect when the primary device disconnects and respond by clearing security information for secondary devices. This dynamic adjustment allows the system to adapt to changing connection states while maintaining security.

Inventive Principle:
Principle #15Dynamics

2Ease of operation

If the access device allows connections with multiple user devices, then user convenience is improved, but security information management becomes complex

Engineering Contradiction:
Improveuser convenienceVSAvoidsecurity information management
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent implements automatic detection and management of connection states. The access device automatically detects when the primary device disconnects and autonomously clears security information for secondary devices without requiring user intervention, thereby maintaining ease of operation while managing complexity internally.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent performs preliminary classification of devices into primary and secondary categories during the pairing process. This preliminary action establishes a clear management framework that simplifies subsequent security information handling, as the system knows in advance which devices require different security treatments.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If security information is maintained for multiple devices, then multi-device access is enabled, but the risk of security breaches increases if the primary device disconnects

Engineering Contradiction:
Improvemulti-device accessVSAvoidsecurity breach risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements a feedback mechanism where the access device continuously monitors the connection state of the primary device. When disconnection is detected, the system triggers an automatic response to clear security information for secondary devices, thereby reducing security breach risk while maintaining multi-device access capability.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The patent takes preliminary anti-action by automatically clearing security information for secondary devices when the primary device disconnects. This preemptive measure prevents potential security breaches before they can occur, as the security information is invalidated before any unauthorized access attempt could exploit it.

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentEP1881664B1Automatic management of security information for a security token access device with multiple connections
Publication Date: 2008.10.15 BLACKBERRY LTD
  • EP1881664B1 patent drawingFigure 1
  • EP1881664B1 patent drawingFigure 2
  • EP1881664B1 patent drawingFigure 3

AI summary

A security token access device and a method implemented on an access device for automatically managing security information. The access device is capable of wirelessly communication with a plurality of user devices and may be securely paired with at least one of the plurality of user devices. The access device maintains connection information, including security information, for each user device securely paired with the access device. The access device designates a primary user device from the set of user devices securely paired with the access device, and determines whether the primary user device is in communication with the access device. If the primary user device is not in communication with the access device, the access device automatically clears all security information for each user device securely paired with the access device.