Trust Agents Dynamic Security State Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile computing devices face frequent authentication interruptions, which can be inconvenient for users but compromise security when settings are adjusted to minimize interruptions, making it difficult to manage and determine the appropriate authentication methods in use.

Innovation Solution

Implementing trust agents that receive signals from various sensors to determine a device's trusted or untrusted state, allowing for dynamic management of security measures such as lock screens and application access, enabling or disabling security based on the combined state determinations from multiple trust agents.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If authentication prompts are frequently displayed to maintain security, then security is improved, but user convenience deteriorates due to frequent interruptions

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system dynamically adjusts authentication requirements based on the determined security state. When the device is in a secure environment (trusted state), authentication prompts are reduced or eliminated. When the security state changes (untrusted state), authentication requirements are enforced. This dynamic adaptation resolves the contradiction by making security measures flexible rather than static.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the parameter of authentication frequency based on the security state determination. In trusted states, the authentication frequency parameter is reduced or set to zero. In untrusted states, the authentication frequency parameter is increased to ensure security. This parameter adjustment allows the system to optimize both security and user convenience under different conditions.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If multiple forms of authentication are used to improve security, then security is improved, but system complexity increases making it difficult to manage

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system merges multiple authentication methods (biometric, PIN, password, location-based) into a unified authentication framework managed by a single trust agent manager. This manager coordinates all authentication forms and presents a unified interface to users, reducing management complexity while maintaining the security benefits of multiple authentication methods.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The trust agent manager serves as a universal component that handles all types of authentication methods through a single interface. Rather than requiring separate management systems for each authentication type, the multi-functional trust agent manager can determine security state based on any combination of authentication methods, simplifying the overall system architecture.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Ease of operation

If users can disable security measures to reduce interruptions, then user convenience is improved, but security deteriorates as unauthorized access becomes possible

Engineering Contradiction:
Improveuser convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system implements feedback by continuously monitoring security state determinations from trust agents and automatically adjusting authentication requirements. Users don't need to manually disable security measures because the system automatically determines when security measures should be applied or relaxed based on real-time security state feedback, eliminating the need for users to choose between convenience and security.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS11693974B2Trust agents
Publication Date: 2023.07.04 GOOGLE LLC
  • US11693974B2 patent drawing
  • US11693974B2 patent drawing
  • US11693974B2 patent drawing

AI summary

Systems and techniques are provided for trust agents. Trust agents may be enabled. A state determination may be received from each of the enabled trust agents. The state determination may indicate either a trusted state or an untrusted state. The received state determinations may be combined to determine a security state. A security measure may be enabled or disabled based on the determined security state.