Temporary Access Code Generation for Edge Network Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Large organizations face challenges in managing temporary access to resources for clients onsite, requiring secure and efficient access while maintaining security integrity and preventing unauthorized access.

Innovation Solution

A method generates a temporary access code that can be scanned by a client device to grant access to a resource, ensuring the client device is connected to the same local network as an authorized user device, with access terminated if the connection is lost or the time limit is reached.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Speed

If temporary access is granted to clients onsite, then rapid access to resources is enabled, but security integrity may be compromised

Engineering Contradiction:
Improveaccess speedVSAvoidsecurity integrity
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

The system performs preliminary actions by verifying the client device's connection to the authorized local network and validating the temporary access code against stored credentials before granting access. This preliminary verification ensures security is established before the rapid access occurs, resolving the contradiction between speed and security integrity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The temporary access code acts as an intermediary mechanism between the authorized user and the client device. It mediates the access request by requiring proof of authorized connection and valid credentials, thereby enabling rapid access while maintaining security integrity through this intermediate verification layer.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If access management procedures are followed for clients, then security is maintained, but access time is delayed

Engineering Contradiction:
ImprovesecurityVSAvoidaccess time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary verification of network connection and access code validity before the client needs access. By pre-establishing these security checks and using pre-generated temporary access codes, the system minimizes access time while maintaining security procedures, thus reducing the loss of time without compromising security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The client device performs self-verification by scanning the temporary access code and automatically validating its connection status and code correctness. This self-service mechanism eliminates manual verification steps and reduces access time while maintaining security through automated verification of credentials and network connection.

Inventive Principle:
Principle #25Self-service

3Reliability

If multiple access codes are managed, then access control is improved, but system complexity increases

Engineering Contradiction:
Improveaccess controlVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system uses temporary access codes that are short-lived and single-use, replacing complex long-term access management systems. These disposable codes simplify the access control mechanism by requiring only simple verification of the code and network connection, reducing system complexity while maintaining reliable access control through time-limited credentials.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

Data Source

PatentUS20240430251A1Temporary access to a resource at edge scenarios
Publication Date: 2024.12.26 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US20240430251A1 patent drawing
  • US20240430251A1 patent drawing
  • US20240430251A1 patent drawing

AI summary

Described is a method of generating a temporary access code to access a resource by a client device presently not authorized to access the resource, while an authorized user device is currently accessing the resource through a connection to a local network to which the client device is also connected. The method can receive a request from the user device to provide the client device access to the resource and generate a temporary access code to access the resource. The method can also receive a scanned temporary access code from the client device and determine whether the scanned temporary access code matches the generated temporary access code for the resource. In the event the scanned temporary access code matches the generated temporary access code for the resource, the method can grant the client device access to the resource associated with the generated temporary access code.