Unified Authentication for Mobile Devices Across Cellular and Wi-Fi Networks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Mobile devices face inefficiencies when moving between different communication networks, such as 3G or LTE and Wi-Fi, as they require separate authentication processes for each network, leading to increased signaling traffic and user inconvenience.
Innovation Solution
A unified authentication procedure is implemented, where authentication credentials are stored on a first network, and automatically pushed to a second network based on location information, allowing seamless authentication without additional signaling between networks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If separate authentication procedures are performed for each communication network, then network security is maintained, but signaling traffic increases and user convenience deteriorates
Solution Approach 1:
The patent performs authentication in advance when a mobile device accesses a first communication network, stores the authentication information, and pushes it to a repository of a second communication network before the device actually moves to that network. This preliminary authentication action eliminates the need for repeated authentication signaling when the device transitions between networks, thereby reducing signaling traffic while maintaining security.
2Reliability
If separate authentication procedures are performed for each communication network, then network security is maintained, but authentication time increases
Solution Approach 1:
The system performs authentication in advance and stores the authentication information in a repository accessible by multiple networks. When the mobile device moves to a second network, the pre-stored authentication information is immediately available, eliminating the need for time-consuming re-authentication processes while maintaining security requirements.
Solution Approach 2:
The patent creates a copy of the authentication information obtained from the first network and stores it in a repository of the second network. This copying mechanism allows the mobile device to be authenticated to the second network without performing a complete authentication sequence, significantly reducing authentication time while preserving security through controlled information distribution.
3Stability of the object's composition
If authentication credentials are manually transferred between networks, then authentication continuity is achieved, but device complexity and user operation difficulty increase
Solution Approach 1:
The system automatically performs authentication credential transfer between networks without requiring user intervention. The network infrastructure itself manages the authentication information storage, retrieval, and propagation between different network repositories, making the complex authentication continuity process transparent and effortless for the end user.
Solution Approach 2:
The patent introduces an automatic credential push mechanism as an intermediary between authentication systems of different networks. This intermediary automatically transfers authentication information from the first network to the second network repository, eliminating the need for manual user operations while ensuring authentication continuity across network boundaries.
Data Source
AI summary
Aspects of the subject disclosure may include, for example, a method comprising authenticating, by a server comprising a processor, a communication device to a first communication network, in accordance with authentication information stored in a first repository of the first communication network. The method also comprises determining, by the server, that a second communication network is accessible to the communication device. The method further comprises providing, by the server, the authentication information to a second repository of the second communication network in accordance with the determining, wherein the providing is performed independently of a request from the second communication network. Other embodiments are disclosed.


