Terminal Identity Management via Contactless Extraction

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems for managing user identities on electronic terminals face challenges in maintaining security and continuity of service, particularly in scenarios where the terminal and identification entity are not physically connected, leading to potential service interruptions and identity theft risks.

Innovation Solution

A method for temporarily associating a user identity with an electronic terminal involves establishing a contactless transaction with an identification entity, storing the user identity on the terminal, and erasing it upon specific actions such as terminal shutdown or internal events, allowing for secure and continuous service access without requiring constant physical proximity to the identification entity.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Object-affected harmful factors

If an electromagnetic interface is used between the terminal and identification entity, then security against identity theft is improved, but service continuity deteriorates due to interface interruptions

Engineering Contradiction:
Improveidentity theft riskVSAvoidservice continuity
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The terminal retrieves and stores the user identity in advance during an initial contactless transaction with the identification entity. This preliminary action allows the terminal to operate independently afterward, eliminating the need for continuous proximity to the identification entity while maintaining service continuity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The invention extracts the user identity data from the identification entity and transfers it to the terminal. This separation allows the terminal to function independently without requiring continuous connection to the identification entity, thus resolving the contradiction between security (electromagnetic interface) and service continuity.

Inventive Principle:
Principle #2Taking out (Extraction)

2Reliability

If the terminal continuously monitors the electromagnetic interface with the identification entity, then service interruption is detected, but this increases device complexity and energy consumption

Engineering Contradiction:
Improveservice continuity monitoringVSAvoidinterface monitoring mechanism
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The terminal performs the identity retrieval action in advance and stores it locally. After this preliminary action, no continuous monitoring is needed because the terminal operates independently with the stored identity, significantly reducing device complexity and energy consumption while maintaining service continuity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The terminal uses the previously retrieved and stored user identity to authenticate and access services independently without requiring continuous interaction with or monitoring of the electromagnetic interface with the identification entity.

Inventive Principle:
Principle #25Self-service

3Reliability

If the user identity is permanently stored on the terminal, then service continuity is improved, but security against identity theft deteriorates

Engineering Contradiction:
Improveservice continuityVSAvoididentity theft risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The user identity stored on the terminal is designed to be temporary rather than permanent. The terminal operates with the stored identity until a specific action occurs (such as detecting the identification entity again or user-initiated refresh), at which point the identity is updated. This temporary storage approach maintains service continuity while periodically refreshing security.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

Solution Approach 2:

The terminal periodically updates the stored user identity by detecting the identification entity again and retrieving fresh identity data. This periodic refresh mechanism ensures that while the terminal can operate independently between updates (maintaining service continuity), the security is periodically renewed (reducing identity theft risk).

Inventive Principle:
Principle #19Periodic action

Applied Scientific Principles

This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.

Function Achieved in This Case

This approach ensures high security against identity theft while maintaining service continuity, as the terminal can operate independently of the identification entity's presence, reducing the risk of service interruptions and eliminating the need for constant transactions, which is advantageous for critical communications systems.

Implementation Method 1

provision may be made for the interface between the terminal and the identification entity to be an electromagnetic interface, such as a contactless radio interface

Methodology Applied
Scientific EffectElectromagnetic interface: Electromagnetic Induction

Data Source

PatentEP2266276B1Management of the identities of users in a system
Publication Date: 2018.11.07 AIRBUS DEFENCE & SPACE SAS
  • EP2266276B1 patent drawingFigure 1
  • EP2266276B1 patent drawingFigure 2~3
  • EP2266276B1 patent drawingFigure 4~5

AI summary

The invention comprises managing the identity of a user to be associated with a terminal (11) adapted for communication in a communication network that provides a service based on the identity of the user. A contactless transaction is established at the terminal with an identification entity (12). During the transaction, a piece of information on the identity of the user stored in the identification entity is received. Finally, the identity of the user obtained from said information is stored. It is also provided that the identity of the user is erased at the terminal when the terminal is subjected to a specific action.