Temporary Access Token Management for Physical Locations

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic access control systems for physical locations face challenges in efficiently managing temporary access rights, particularly in ensuring secure and dynamic access without the need for physical or electronic tokens, while maintaining security and preventing unauthorized access.

Innovation Solution

A system that enables temporary access tokens to be created and transmitted to users for specific time periods, allowing access to physical locations without requiring a token, while disabling the access right for the requester and enabling multifactor authentication for enhanced security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If temporary access tokens are created and transmitted to users, then access efficiency is improved, but security risk increases due to potential token interception or misuse

Engineering Contradiction:
Improveaccess efficiencyVSAvoidsecurity risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent implements temporary access tokens with predefined expiration times and single-use constraints. Each token is designed to be short-lived and disposable, automatically becoming invalid after use or expiration, thereby minimizing security risks while maintaining access efficiency

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

Solution Approach 2:

The system performs preliminary validation by checking whether the requester currently holds active access rights before issuing temporary tokens. This preventive measure ensures that tokens are only granted to authorized requesters, reducing security risks before access is granted

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the requester's access right is disabled after token transmission, then security is improved, but access flexibility deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidaccess flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments access rights into permanent requester rights and temporary user rights. The requester retains overall account access while temporary tokens grant specific location access to users. This segmentation maintains security by disabling only the specific temporary access path while preserving requester flexibility for other purposes

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system introduces an intermediary token mechanism between the requester and the physical location. The token acts as a mediator that temporarily transfers access rights without permanently disabling the requester's account, allowing the requester to maintain flexibility while ensuring security through controlled token issuance

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If multifactor authentication is implemented, then security is enhanced, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system implements automated multifactor authentication where the user's mobile device serves itself by generating and presenting cryptographic proofs. The authentication process is self-service oriented, reducing the need for complex manual verification procedures while enhancing security through cryptographic validation

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS20240404338A1Systems and methods for providing temporary access credentials to access physical locations
Publication Date: 2024.12.05 AXS GROUP LLC
  • US20240404338A1 patent drawing
  • US20240404338A1 patent drawing
  • US20240404338A1 patent drawing

AI summary

A physical location access control system is configured to receive, via a network interface, a request to provide a temporary access right for a first physical location to a first user, the request providing an indication as to a first time period associated with the temporary access right. In response to determining that the requester has an access right to the first physical location for a second time period that comprises the first time period, a temporary access token corresponding to the first time period is created and the requester's access right to access the first physical location for the first time period is disabled. The temporary access token is transmitted to a device associated with the first user, enabling the first user to access the first physical location during the first time period.