Electronic Tag Access Control With One-Time ID Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing access control systems for electronic tags do not adequately prevent unauthorized access to access destination devices, such as web servers, which can lead to undesired service usage.
Innovation Solution
An access control system comprising a tag management device, a parameter determination device, an access destination device, and a one-time ID determination device, which generates and verifies unique information for each reading process to authorize access to the access destination device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If electronic tags are used to provide access to web pages and services, then service accessibility and user convenience are improved, but unauthorized access and security risks increase
Solution Approach 1:
The system performs preliminary verification by checking whether the acquired unique information has been used before allowing access. The tag management device checks the unique information against previously used information in advance, and only permits access if the unique information is determined to be newly acquired and not previously used, thereby preventing unauthorized access before it can occur.
Solution Approach 2:
The tag management device acts as an intermediary between the reader and the web server. It receives the unique information from the reader, verifies whether it is newly acquired by checking against previously used information, and then determines whether to permit access to the web server. This intermediary role enables security verification without directly blocking the service flow.
2Reliability
If access control verification is implemented for electronic tags, then security against unauthorized access is improved, but system complexity and processing overhead increase
Solution Approach 1:
The access control system is segmented into distinct functional components: the reader that acquires unique information from electronic tags, the tag management device that verifies whether the unique information is newly acquired by checking against previously used information, and the web server that provides services. This segmentation allows each component to perform its specific function independently, simplifying the overall system architecture while maintaining security.
Solution Approach 2:
The system uses unique information as a copyable identifier that can be read from the electronic tag and verified without modifying the original tag data. The unique information is acquired by the reader and copied to the tag management device for verification, enabling security checks without affecting the electronic tag itself or requiring complex hardware modifications.
3Reliability
If unique information verification is performed for each access attempt, then prevention of repeated unauthorized access is improved, but processing time and system response delay increase
Solution Approach 1:
The tag management device maintains a record of previously used unique information in advance, allowing it to quickly determine whether newly acquired unique information is valid without performing complex real-time analysis. This preliminary preparation of verification data enables fast access decisions that do not significantly delay the user experience.
Solution Approach 2:
The system enables the tag management device to autonomously verify unique information by comparing it against its own record of previously used information, without requiring external verification services or complex multi-device coordination. This self-service verification mechanism reduces processing time by eliminating unnecessary communication overhead and external validation steps.
Data Source
AI summary
In an access control system, a tag management device acquires tag identification information and first unique information from an electronic tag via a reader, acquires second unique information from a one-time ID determination device when a parameter determination device determines that the first unique information is acquired for the first time, and accesses an access destination device of the second URL corresponding to the tag identification information by adding the second unique information to the second URL. The tag management device and the reader are permitted to access the access destination device when the one-time ID determination device determines that the second unique information transmitted by the access destination device is acquired for the first time.


