Terminal Network Switching for Location Server Authorization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile devices often face challenges in accessing location servers due to restrictions in authentication mechanisms, particularly when using local intranets like WLANs that do not support communication with the home network location server, leading to difficulties in obtaining authorization for discovered location servers.

Innovation Solution

A method where a terminal switches from a first network that does not support authentication to a second network that does, obtains authenticated access to the home location server, and then switches back to the first network to access the discovered location server using the obtained authorization, employing mechanisms like ACA, device certificates, or GBA for authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a terminal uses a first network (WLAN) to access a discovered location server, then access to the location server is enabled, but authenticated access to the home location server is not supported

Engineering Contradiction:
ImproveAccess to discovered location serverVSAvoidAuthenticated access to home location server
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a second network (cellular network) as an intermediary to establish authenticated access to the home location server. The terminal temporarily switches to the second network to perform authentication and obtain authorization for the discovered location server, then returns to the first network for actual location services. This intermediary network enables the authentication process that cannot be performed directly over the WLAN.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent performs authentication and authorization actions in advance by switching to the second network before accessing the discovered location server. The terminal obtains authentication credentials and authorization tokens from the home location server through the second network, storing them for subsequent use when accessing the location server via the first network. This preliminary authentication resolves the contradiction by preparing the necessary credentials before the actual service access.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If a terminal switches to a second network to obtain authenticated access, then authorization for the discovered location server is obtained, but network switching complexity increases

Engineering Contradiction:
ImproveAuthenticated access to home location serverVSAvoidNetwork switching mechanism
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements dynamic network switching where the terminal automatically selects between the first and second networks based on the operational phase. During authentication phase, the terminal dynamically switches to the second network; during service access phase, it uses the first network. This dynamic adaptation reduces the perceived complexity by making the switching transparent and automated rather than requiring manual configuration or complex user decisions.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent segments the access process into distinct phases: authentication phase (using second network) and service access phase (using first network). Each phase uses the appropriate network type, separating the authentication function from the location service function. This segmentation simplifies the overall system by assigning specific functions to specific networks rather than requiring one network to handle all functions.

Inventive Principle:
Principle #1Segmentation

3Loss of energy

If a terminal uses WLAN for location services, then usage charges may be reduced, but authentication with home network is blocked

Engineering Contradiction:
ImproveUsage chargesVSAvoidAuthentication process
Core Design Contradiction:
Loss of energyVSEase of operation

Solution Approach 1:

The patent extracts the authentication function from the service access function by using separate networks for each purpose. The expensive WLAN network is used only for location services, while the cellular network is used exclusively for authentication. This extraction allows the terminal to take advantage of the cost benefits of WLAN for the actual location queries while using the authenticated credentials obtained over cellular network, thus achieving both cost reduction and authentication capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS9467856B2Secure mechanism for obtaining authorization for a discovered location server
Publication Date: 2016.10.11 QUALCOMM INC
  • US9467856B2 patent drawing
  • US9467856B2 patent drawing
  • US9467856B2 patent drawing

AI summary

Methods and apparatuses are presented for use in a terminal to access a discovered location server. The methods may include in response to a determination that a first network does not support authenticated access from the terminal to a home location server, obtaining authenticated access to the home location server using a second network that does support authenticated access to the home location server by the terminal. In response to obtaining authorization for the discovered location server from the home location server, the terminal may access the discovered location server using the first network.