Telecommunications Terminal Database Access via Subscriber Identifier
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users of cloud computing services face inconvenience when switching between terminals or sharing access to their personal data, as they must repeatedly enter login credentials and manually authorize access for third parties.
Innovation Solution
A method and system that allows a first terminal to access a database via a telecommunications network by using a second terminal's subscriber identifier, authenticated through an authentication server, which simplifies access and authorization without requiring users to enter passwords or manually share credentials.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If users enter login credentials manually on each terminal, then security is maintained through credential verification, but ease of operation deteriorates due to repeated manual authentication
Solution Approach 1:
The system performs preliminary authentication by sending the access request to the second terminal associated with the subscriber identifier before final access is granted. This preliminary action allows the authentication to be prepared in advance, so when the user actually needs access, the verification has already been initiated and is close to completion, reducing the perceived waiting time and manual effort.
Solution Approach 2:
The patent introduces a mediator mechanism where the second terminal (associated with the subscriber identifier) acts as an intermediary in the authentication process. Instead of directly verifying credentials between the first terminal and server, the system uses the second terminal as a mediator to receive and process the authentication request, simplifying the user's interaction while maintaining security through multi-step verification.
2Adaptability or versatility
If users share personal identification data with third-party users, then access sharing is enabled, but security deteriorates due to exposure of credentials
Solution Approach 1:
The system extracts the sensitive personal identification data (credentials) from the sharing process entirely. Instead of requiring users to share their login credentials with third parties, the patent removes this requirement by using an alternative mechanism where the second terminal associated with the subscriber identifier handles authentication. This extraction of sensitive data from the sharing flow maintains security while enabling access sharing functionality.
Solution Approach 2:
The patent introduces an intermediary mechanism where the system infrastructure (server and second terminal) mediates the access sharing process. Instead of direct credential sharing between users, the intermediary system receives access requests, verifies them through the associated subscriber identifier, and grants appropriate access. This intermediary layer eliminates the need for users to expose their credentials while still enabling third-party access sharing.
3Reliability
If traditional authentication methods are used, then security verification is performed, but device complexity increases due to credential management requirements
Solution Approach 1:
The system implements self-service authentication where the second terminal associated with the subscriber identifier automatically handles the verification process. Instead of requiring users to manually manage and input credentials, the system enables the terminal to participate automatically in the authentication process by receiving and processing verification requests, reducing the complexity of credential management while maintaining security through automated verification.
Data Source
AI summary
A method enabling a telecommunications terminal to access a database hosted by a service platform that can be accessed via a telecommunications network. The method includes: transmitting, to a second terminal associated with a mobile identifier of a second telecommunications network, information representing a request for the first terminal to access the database; in the second terminal, sending a response to the access request to an authentication server of the platform; in the authentication server, when a response to the access request is received, verifying the mobile identifier of the second network, and optionally validating the access of the first terminal to the database depending on the outcome of the verification.


