Terminal PIN Reset via Token Binding and Clearing Code

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing access control systems face inefficiencies when customers forget their customer-specific passwords/PINs, requiring costly support or terminal return for reset, as current reset processes are cumbersome and time-consuming.

Innovation Solution

A method and system for terminals to facilitate easy password/PIN reset by using a token with a clearing code, allowing users to replace customer-specific security data with generic data, utilizing a terminal-token binding process for secure and efficient reset.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of manufacture

If a generic password/PIN is assigned to all terminals for manufacturing efficiency, then manufacturing cost and time are reduced, but security is compromised when customers forget their customer-specific password/PIN

Engineering Contradiction:
Improvemanufacturing efficiencyVSAvoidsecurity
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

The patent applies preliminary action by pre-assigning a generic password/PIN to all terminals during manufacturing, and simultaneously providing customers with a recovery mechanism (token or email link) that enables password reset without manufacturer intervention. This preliminary setup resolves the contradiction by ensuring both manufacturing efficiency (through generic passwords) and security (through recoverable customer-specific passwords).

Inventive Principle:
Principle #10Preliminary action

2Reliability

If customers are required to program their own customer-specific password/PIN, then security is improved and customer memorability is enhanced, but the process becomes more complex and time-consuming

Engineering Contradiction:
ImprovesecurityVSAvoidpassword reset process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary recovery mechanism (token or email-based verification system) that mediates between the terminal and the customer during password reset. This intermediary simplifies the complex password reset process by providing automated verification and recovery steps, reducing the need for direct customer support intervention while maintaining security.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If customers must return terminals to the manufacturer for password reset, then security is maintained through centralized control, but time and cost are significantly increased

Engineering Contradiction:
Improvesecurity controlVSAvoidpassword reset time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements self-service by enabling customers to reset their own passwords through automated mechanisms (token-based or email-based verification) without requiring manufacturer intervention. This self-service capability maintains security through automated verification while dramatically reducing the time and cost associated with password resets compared to returning terminals to the manufacturer.

Inventive Principle:
Principle #25Self-service

4Reliability

If customer support is engaged for password reset, then security issues are resolved through expert intervention, but cost and time consumption increase significantly

Engineering Contradiction:
Improvesecurity resolutionVSAvoidcustomer support efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent enables customers to independently resolve password issues through automated recovery mechanisms, eliminating the need for customer support intervention in routine password reset cases. This self-service approach maintains security through automated verification processes while significantly improving productivity by reducing the burden on customer support teams.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP2437198B1Secure PIN reset process
Publication Date: 2020.12.30 HID GLOBAL GMBH
  • EP2437198B1 patent drawingFigure 1A~1B
  • EP2437198B1 patent drawingFigure 2
  • EP2437198B1 patent drawingFigure 3

AI summary

A secure password/Personal Identification Number (PIN) reset process is disclosed. The process involves replacing a transportation password/PIN of a terminal with a user-specific password/PIN. During the replacement, the user-specific password/PIN is bound with a token. The token can then be used to securely reset the password/PIN of the terminal back to the transportation password/PIN if the user-specific password/PIN is forgotten or compromised.