Unified Authentication Gateway for Multi-Protocol Subscriber Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems require multiple logons for a subscriber to access the Internet using different Internet Protocol versions, such as IPv4 and IPv6, which can be inconvenient and inefficient.

Innovation Solution

A system that authenticates a subscriber using a single logon, allowing access to multiple Internet protocols by storing a subscriber identification and comparing it across different protocols, eliminating the need for multiple logon requests through the use of a gateway and web portal that manage connections and authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If multiple logons are required for different Internet Protocol versions, then authentication security is maintained, but user convenience and system efficiency deteriorate

Engineering Contradiction:
ImproveUser convenienceVSAvoidAuthentication process complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent merges multiple authentication processes into a single unified authentication event. When a subscriber authenticates using one Internet Protocol version (e.g., IPv4), the authentication result is combined and applied to multiple protocol versions (e.g., IPv6), eliminating the need for separate logons and reducing operational complexity

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The authentication system is designed with multi-functionality to handle multiple Internet Protocol versions through a single authentication mechanism. The gateway device authenticates subscribers universally across different protocol versions by comparing subscriber identifications, allowing one authentication to serve multiple protocol access needs

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Productivity

If multiple logon requests are processed for different protocols, then protocol-specific security is ensured, but processing time and system overhead increase

Engineering Contradiction:
ImproveAuthentication efficiencyVSAvoidAuthentication time
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The system performs preliminary authentication using the first Internet Protocol version before the subscriber needs to access using the second protocol. The authentication result and subscriber identification are stored in advance, so when the subscriber requests access via a different protocol, the pre-stored authentication data can be quickly retrieved and compared, significantly reducing authentication time

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The authentication system creates a copy of the subscriber identification from the first protocol authentication and uses it for verifying the second protocol access. Instead of requiring a complete new authentication process, the system copies and compares the stored subscriber identification against the new request, reducing processing time while maintaining security

Inventive Principle:
Principle #26Copying

Data Source

PatentUS8949952B2Multi-stack subscriber sign on
Publication Date: 2015.02.03 CISCO TECHNOLOGY INC
  • US8949952B2 patent drawing
  • US8949952B2 patent drawing
  • US8949952B2 patent drawing

AI summary

A system includes a multi-stack subscriber, a gateway, and a web portal. The web portal determines whether the subscriber is authenticated to access the Internet using a first Internet Protocol by receiving logon information from the subscriber. The subscriber requests to access the Internet using a second Internet Protocol. The gateway and/or the web portal determine whether the subscriber is authenticated to access the Internet using the second Internet Protocol without sending a second logon to the subscriber.