Terminal Network Switching for Location Server Authorization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Mobile devices often face challenges in accessing location servers due to restrictions in authentication mechanisms, particularly when using local intranets like WLANs that do not support communication with the home network location server, leading to difficulties in obtaining authorization for discovered location servers.
Innovation Solution
A method where a terminal switches from a first network that does not support authentication to a second network that does, obtains authenticated access to the home location server, and then switches back to the first network to access the discovered location server using the obtained authorization, employing mechanisms like ACA, device certificates, or GBA for authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a terminal uses a first network (WLAN) to access a discovered location server, then access to the location server is enabled, but authenticated access to the home location server is not supported
Solution Approach 1:
The patent introduces a second network (cellular network) as an intermediary to establish authenticated access to the home location server. The terminal temporarily switches to the second network to perform authentication and obtain authorization for the discovered location server, then returns to the first network for actual location services. This intermediary network enables the authentication process that cannot be performed directly over the WLAN.
Solution Approach 2:
The patent performs authentication and authorization actions in advance by switching to the second network before accessing the discovered location server. The terminal obtains authentication credentials and authorization tokens from the home location server through the second network, storing them for subsequent use when accessing the location server via the first network. This preliminary authentication resolves the contradiction by preparing the necessary credentials before the actual service access.
2Reliability
If a terminal switches to a second network to obtain authenticated access, then authorization for the discovered location server is obtained, but network switching complexity increases
Solution Approach 1:
The patent implements dynamic network switching where the terminal automatically selects between the first and second networks based on the operational phase. During authentication phase, the terminal dynamically switches to the second network; during service access phase, it uses the first network. This dynamic adaptation reduces the perceived complexity by making the switching transparent and automated rather than requiring manual configuration or complex user decisions.
Solution Approach 2:
The patent segments the access process into distinct phases: authentication phase (using second network) and service access phase (using first network). Each phase uses the appropriate network type, separating the authentication function from the location service function. This segmentation simplifies the overall system by assigning specific functions to specific networks rather than requiring one network to handle all functions.
3Loss of energy
If a terminal uses WLAN for location services, then usage charges may be reduced, but authentication with home network is blocked
Solution Approach 1:
The patent extracts the authentication function from the service access function by using separate networks for each purpose. The expensive WLAN network is used only for location services, while the cellular network is used exclusively for authentication. This extraction allows the terminal to take advantage of the cost benefits of WLAN for the actual location queries while using the authenticated credentials obtained over cellular network, thus achieving both cost reduction and authentication capability.
Data Source
AI summary
Methods and apparatuses are presented for use in a terminal to access a discovered location server. The methods may include in response to a determination that a first network does not support authenticated access from the terminal to a home location server, obtaining authenticated access to the home location server using a second network that does support authenticated access to the home location server by the terminal. In response to obtaining authorization for the discovered location server from the home location server, the terminal may access the discovered location server using the first network.


