Server-Assisted Pairing for Wireless Payment Readers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Wireless communication devices face security risks during the pairing process, as the initial exchange of information, such as passkeys, is not encrypted and can be intercepted by third parties, compromising the security of the communication channel.

Innovation Solution

A server-assisted pairing method where the payment reader encrypts the passkey using a secret key shared with the payment service system, and the encrypted passkey is broadcast, allowing the payment service system to decrypt and transmit it securely to the merchant device, ensuring that only authorized devices can complete the pairing process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If wireless communication devices exchange pairing information directly without encryption, then the pairing process is simple and fast, but the security of the communication channel is compromised as third parties can intercept the passkey

Engineering Contradiction:
Improvepairing process simplicityVSAvoidinterception vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a server as an intermediary component that facilitates the pairing process. The server receives the passkey from the first device, stores it securely, and provides it to the second device through a separate secure channel. This mediator approach allows the pairing information to be exchanged without direct unencrypted communication between the wireless devices, thus maintaining security while enabling simple pairing operation.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If a server-assisted pairing method is implemented with encryption, then the security of the passkey exchange is improved, but the device complexity increases due to additional server infrastructure and communication protocols

Engineering Contradiction:
Improveinterception vulnerabilityVSAvoidsystem architecture complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The server acts as a centralized intermediary that handles all security-related operations including passkey storage, encryption, and distribution. By concentrating security functions in the server rather than distributing them across multiple devices, the system achieves strong security without requiring complex security implementations in each wireless device. The devices only need simple client-side functionality to communicate with the server.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The server automatically manages the pairing information including generating, storing, and distributing passkeys without requiring manual intervention. The system self-manages the security infrastructure, handling encryption and decryption operations automatically, which reduces the operational complexity for users while maintaining high security standards.

Inventive Principle:
Principle #25Self-service

3Adaptability or versatility

If multiple passwords are generated and transmitted to support different access configurations, then the adaptability of the system is improved, but the loss of information increases due to the need to manage and secure multiple passwords

Engineering Contradiction:
Improveaccess configuration flexibilityVSAvoidpassword management overhead
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The server is designed to handle multiple types of access configurations through a universal interface. It can generate and manage different kinds of pairing information (passkeys, passwords, cryptographic keys) for various access scenarios using the same underlying infrastructure. This multi-functional approach allows the system to support diverse access configurations without requiring separate dedicated systems for each type, thereby reducing information management overhead while maintaining high adaptability.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP3332571B1Server-assisisted pairing for wireless communications
Publication Date: 2019.05.22 BLOCK INC
  • EP3332571B1 patent drawingFigure 1
  • EP3332571B1 patent drawingFigure 2
  • EP3332571B1 patent drawingFigure 3

AI summary

A wireless communication device such as a payment reader has a wireless communication interface and is able to establish wireless pairing with an interactive electronic device such as a merchant device running a point of sale application. In order to establish pairing, the wireless communication device accesses a passkey and encrypts the passkey. The encrypted passkey is transmitted to the interactive electronic device via the wireless communication interface, and the interactive electronic device sends the encrypted passkey to a pairing server. The pairing server decrypts the encrypted passkey and sends the decrypted passkey back to the interactive electronic device via a secure connection. The wireless communication device and the interactive electronic device establish wireless pairing based on the passkey and the decrypted passkey.