Password Subpassword Generation for Dual Interface Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face difficulties in securely storing and remembering complex passwords for multiple interfaces to devices, especially when direct physical access is required, as conventional methods demand high complexity and entropy, making it inconvenient to manage and enter passwords across different access points.

Innovation Solution

A method and system that generate a subpassword from a primary password using a mapping specification, allowing access through either a complex network interface or a simpler local interface, with the subpassword having reduced complexity, enabling facilitated operation and secure storage by separating password storage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a complex password with high entropy is used for secure access, then security is improved, but ease of operation deteriorates as users find it difficult to remember and correctly enter

Engineering Contradiction:
ImprovesecurityVSAvoidease of password entry
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent divides the authentication system into two segments: a first input interface that accepts complex passwords for network access, and a second input interface that accepts simplified passwords for local access. This segmentation allows each interface to be optimized for its specific use case, resolving the contradiction between security and ease of operation.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies different password complexity requirements to different locations or interfaces: the first input interface (network access) requires high complexity passwords for security, while the second input interface (local access) accepts simpler passwords for ease of operation. Each interface has tailored quality characteristics appropriate to its context.

Inventive Principle:
Principle #3Local quality

2Reliability

If different independent passwords are used for different interfaces, then security is improved, but ease of operation deteriorates as storing and remembering many passwords becomes inconvenient

Engineering Contradiction:
ImprovesecurityVSAvoidease of password management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a universal password system where a single password can serve multiple functions: it can be used at the first input interface for network access, and the same password can also be used at the second input interface for local access. This multi-functionality eliminates the need to manage multiple separate passwords while maintaining security through the optional use of complex passwords.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11630884B2Method for managing access to a device, and access system
Publication Date: 2023.04.18 SIEMENS AG
  • US11630884B2 patent drawing
  • US11630884B2 patent drawing

AI summary

A method for managing access to a device, which has a first and a second input interface, each for inputting a character string, including the steps of: generating a password having a prescribed minimum number of characters and having a measure of complexity; generating a subpassword on the basis of the generated password and a prescribed mapping specification, wherein the subpassword has a lower measure of complexity than the password; and enabling access to the device if a character string input via the first input interface corresponds to the password or a character string input via the second input interface corresponds to the subpassword. The method and a corresponding access system for a device permit simple handling of the password management by the respective user is also provided.