Server-Assisted Pairing for Wireless Payment Readers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Wireless communication devices face security risks during the pairing process, as the initial exchange of information, such as passkeys, is not encrypted and can be intercepted by third parties, compromising the security of the communication channel.
Innovation Solution
A server-assisted pairing method where the payment reader encrypts the passkey using a secret key shared with the payment service system, and the encrypted passkey is broadcast, allowing the payment service system to decrypt and transmit it securely to the merchant device, ensuring that only authorized devices can complete the pairing process.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If wireless communication devices exchange pairing information directly without encryption, then the pairing process is simple and fast, but the security of the communication channel is compromised as third parties can intercept the passkey
Solution Approach 1:
The patent introduces a server as an intermediary component that facilitates the pairing process. The server receives the passkey from the first device, stores it securely, and provides it to the second device through a separate secure channel. This mediator approach allows the pairing information to be exchanged without direct unencrypted communication between the wireless devices, thus maintaining security while enabling simple pairing operation.
2Object-affected harmful factors
If a server-assisted pairing method is implemented with encryption, then the security of the passkey exchange is improved, but the device complexity increases due to additional server infrastructure and communication protocols
Solution Approach 1:
The server acts as a centralized intermediary that handles all security-related operations including passkey storage, encryption, and distribution. By concentrating security functions in the server rather than distributing them across multiple devices, the system achieves strong security without requiring complex security implementations in each wireless device. The devices only need simple client-side functionality to communicate with the server.
Solution Approach 2:
The server automatically manages the pairing information including generating, storing, and distributing passkeys without requiring manual intervention. The system self-manages the security infrastructure, handling encryption and decryption operations automatically, which reduces the operational complexity for users while maintaining high security standards.
3Adaptability or versatility
If multiple passwords are generated and transmitted to support different access configurations, then the adaptability of the system is improved, but the loss of information increases due to the need to manage and secure multiple passwords
Solution Approach 1:
The server is designed to handle multiple types of access configurations through a universal interface. It can generate and manage different kinds of pairing information (passkeys, passwords, cryptographic keys) for various access scenarios using the same underlying infrastructure. This multi-functional approach allows the system to support diverse access configurations without requiring separate dedicated systems for each type, thereby reducing information management overhead while maintaining high adaptability.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A wireless communication device such as a payment reader has a wireless communication interface and is able to establish wireless pairing with an interactive electronic device such as a merchant device running a point of sale application. In order to establish pairing, the wireless communication device accesses a passkey and encrypts the passkey. The encrypted passkey is transmitted to the interactive electronic device via the wireless communication interface, and the interactive electronic device sends the encrypted passkey to a pairing server. The pairing server decrypts the encrypted passkey and sends the decrypted passkey back to the interactive electronic device via a secure connection. The wireless communication device and the interactive electronic device establish wireless pairing based on the passkey and the decrypted passkey.