Unified Device Authentication via In-house Server Credential Association

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing device management systems require complex procedures and separate authentication processes for accessing home and out-of-house server apparatuses, leading to security vulnerabilities and increased operational complexity when managing target devices both within and outside the home.

Innovation Solution

A device management system that associates a device ID, user ID, and device password within the in-house server apparatus, allowing for simplified operation and enhanced security by using the user ID and password for both in-house and out-of-house access, with an additional second-stage authentication step to ensure only authorized access to the target device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If separate authentication processes are used for in-house and out-of-house server apparatuses, then security can be maintained for each system, but operational complexity increases and security vulnerabilities arise

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent combines separate authentication processes into a unified authentication mechanism. The in-house server apparatus and out-of-house server apparatus share common authentication credentials (user ID and password), eliminating the need for separate authentication processes while maintaining security through centralized credential management and periodic password updates.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The authentication system is designed to be universal, allowing the same user ID and password to authenticate access to both in-house and out-of-house server apparatuses. This multi-functional authentication approach simplifies operations while maintaining security through consistent credential validation across different systems.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Ease of operation

If device IDs are widely distributed for access, then ease of operation improves, but security risk increases due to potential unauthorized access

Engineering Contradiction:
Improvedevice access convenienceVSAvoidunauthorized access prevention
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent extracts the device ID from the authentication credential set, using it only for system identification and routing purposes. The actual authentication is performed using separate user ID and password credentials, which are not distributed as widely as device IDs. This separation allows device IDs to be freely distributed for operational convenience while maintaining security through restricted credential distribution.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The in-house server apparatus acts as an intermediary that validates authentication credentials before granting access to the target device. Even if device IDs are distributed widely, the intermediary server verifies user ID and password credentials, preventing unauthorized access while maintaining ease of operation through automated validation.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If frequent password updates are implemented, then security is enhanced, but operational burden increases

Engineering Contradiction:
ImprovesecurityVSAvoidpassword management convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements periodic password updates at predetermined intervals rather than requiring frequent changes. This periodic action maintains security through regular credential refreshment while reducing operational burden by establishing a predictable, manageable update schedule that users can anticipate and prepare for.

Inventive Principle:
Principle #19Periodic action

Data Source

PatentUS9380055B2Device control method, device management system, and in-house server apparatus connected to device management system
Publication Date: 2016.06.28 PIECE FUTURE PTE LTD
  • US9380055B2 patent drawing
  • US9380055B2 patent drawing
  • US9380055B2 patent drawing

AI summary

A method in the disclosure includes: receiving, from an information device, a device password which is used for controlling a target device via an in-house server apparatus and which is input on the information device using a setting screen; managing a device ID of the in-house server apparatus, a user ID, and the device password in association with one another; transmitting the device password to the in-house server apparatus to cause the in-house server apparatus to manage the device ID and the device password; transmitting, when login to an out-of-house server apparatus is authenticated, an authentication screen to the information device; receiving, from the information device, an input password that is input on the information device using the authentication screen; and when the received input password is identical to the device password that is associated with the user ID, approving a control of a target device by the information device.