Train Data Input via Physical Token Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Manual data input by unauthorized or unqualified train drivers in train control systems can lead to errors and delays, compromising safety and efficiency in train operations.
Innovation Solution
A system utilizing a server and client computer with a physical token for cryptographic authentication, reducing manual data entry and ensuring only authorized drivers can initiate train movement by transmitting data securely to the on-board computer using wireless communication, incorporating multi-factor authentication and storing driver qualifications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If manual data input is used by train drivers, then the system is simple to operate, but errors and unauthorized input occur compromising safety
Solution Approach 1:
The system enables self-service by automatically providing train data to the on-board computer through wireless transmission from the server, eliminating the need for manual driver input. The driver simply needs to authenticate using the physical token, and the system handles data transmission automatically, improving both reliability and ease of operation.
Solution Approach 2:
The patent replaces the mechanical manual input process with an automated electronic system. Instead of drivers manually entering data through the DMI interface, the system uses wireless communication to transmit data automatically after authentication, reducing human error and unauthorized input while maintaining operational simplicity.
2Productivity
If manual data entry is required, then system complexity is low, but delays occur in train schedule
Solution Approach 1:
The system performs preliminary action by pre-authenticating the driver and pre-transmitting the train data to the on-board computer before the train journey begins. This ensures that all data is ready and validated in advance, eliminating delays during the actual departure and improving schedule efficiency.
Solution Approach 2:
The patent introduces an intermediary authentication system using physical tokens that mediate between the driver and the data transmission process. This intermediary layer verifies driver authorization and triggers automatic data transmission, adding complexity to the authentication process but streamlining the overall data input workflow and reducing schedule delays.
3Loss of time
If data is transmitted wirelessly to on-board computer, then manual input time is reduced, but data security requirements increase
Solution Approach 1:
The system performs preliminary authentication of the driver using the physical token before initiating data transmission. This pre-validation ensures that only authorized drivers can receive and access train data, maintaining security while enabling rapid wireless transmission once authentication is complete, thus reducing overall data input time.
Solution Approach 2:
The patent uses the physical token as an intermediary security element that verifies driver authorization before allowing wireless data transmission. This intermediary authentication mechanism ensures data security is maintained while the actual data transmission occurs quickly through wireless communication, balancing security requirements with time efficiency.
Data Source
AI summary
A system comprising: a server computer; a client computer; and a physical token, which is assigned to a train driver, wherein the server computer is configured to store data that is to be provided to an on-board computer of a train in order to allow the train to start its movement along a track, and to transmit the data to the client computer, the client computer is configured to display the data, the physical token is configured to store cryptographic data, and, when the physical token is presented by the train driver to a token interface at the client computer, to use the cryptographic data to perform a cryptographic operation to authenticate the train driver, and at least one of the server computer and the client computer is configured to transmit the data to the on-board computer via a wireless transmitter in response to acceptance of the data by the train driver that includes the authentication of the train driver based on the cryptographic operation performed by the physical token.