Time Window Authentication for Vehicle Telematics

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Aftermarket vehicle telematics devices lack effective authentication mechanisms, making them vulnerable to unauthorized access and data theft, as existing systems do not ensure that the device is properly associated with the intended user's account.

Innovation Solution

A method involving a server-based authentication process where the vehicle telematics device must perform specific actions within a specified time window, such as transmitting vehicle data or generating a data signature, to verify its association with the correct account, thereby preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If no authentication mechanism is implemented, then the device can be easily associated with any account, but the system becomes vulnerable to unauthorized access and data theft

Engineering Contradiction:
Improveaccount association securityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system performs preliminary actions by establishing a time window for authentication before finalizing the account association. The telematics device must complete specific actions (transmitting data packets, generating signatures) within this predetermined time frame, which prevents unauthorized associations while maintaining a manageable authentication process.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The authentication mechanism implements feedback by requiring the telematics device to transmit data packets or generate signatures that are verified by the remote server. The server provides feedback on whether the authentication is successful, and only upon successful verification is the account association finalized, ensuring security without excessive complexity.

Inventive Principle:
Principle #23Feedback

2Reliability

If a time window authentication mechanism is implemented, then unauthorized access is prevented, but the authentication process requires specific actions within a time limit

Engineering Contradiction:
Improvedevice association securityVSAvoidauthentication operation simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The authentication process utilizes the telematics device's existing operational capabilities to perform self-service authentication. The device uses its normal data transmission and processing functions to generate authentication signatures or transmit data packets within the time window, eliminating the need for separate authentication hardware or complex user interactions while maintaining security.

Inventive Principle:
Principle #25Self-service

3Object-affected harmful factors

If authentication data must be obtained within a specified time window, then security against unauthorized access is improved, but the authentication process becomes more complex

Engineering Contradiction:
Improveunauthorized access vulnerabilityVSAvoidauthentication system complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The authentication system changes parameters by utilizing the time window as a dynamic parameter rather than a static authentication credential. The system monitors whether data transmission or signature generation occurs within the specified time frame, and this temporal parameter change provides security without requiring complex authentication protocols or additional security infrastructure.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS9208624B2Time window authentication for vehicle telematics device
Publication Date: 2015.12.08 ZUBIE
  • US9208624B2 patent drawing
  • US9208624B2 patent drawing
  • US9208624B2 patent drawing

AI summary

One embodiment is directed to a method of authenticating a vehicle telematics device. The method includes receiving, at a server, identifying information for a vehicle telematics device and receiving, at the server, information identifying an account to which the vehicle telematics device is to be associated. The method also includes authenticating the vehicle telematics device by finalizing an association between the vehicle telematics device and the account if data that is specified for authentication is received at the server from the vehicle telematics device and if that data is obtained by the vehicle telematics device within a time window that is specified for authentication.