UPnP Terminal Device Authorization via Intermediary Mediator

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In UPnP device systems, control points lacking access rights cannot proactively apply for or obtain the necessary permissions to manage devices, hindering user operations.

Innovation Solution

A terminal device is designed to receive right application requests from control devices with no access rights, notify an administrator control device to assign rights, and subsequently receive and execute right assignment commands, enabling control points to proactively apply for and obtain the required permissions by querying and sending necessary information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a control point without administrator rights attempts to manage a UPnP device, then the device security is compromised, but the control point cannot proactively apply for access rights

Engineering Contradiction:
ImproveAbility of control point to apply for access rightsVSAvoidDevice security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an intermediary authorization mechanism where the terminal device acts as a mediator between the control point and the administrator. The control point sends a right application request to the terminal device, which then notifies the administrator control device. This intermediary process allows control points to proactively apply for rights while maintaining security through administrator verification and approval.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements preliminary action by allowing control points to query required right information before formally applying for rights. The terminal device provides right information to control points in advance, enabling them to prepare proper authorization requests. This preliminary query and information provision process occurs before the actual right assignment, streamlining the authorization workflow.

Inventive Principle:
Principle #10Preliminary action

2Productivity

If control points can proactively apply for rights, then user operations are facilitated, but the authorization process becomes more complex

Engineering Contradiction:
ImproveUser operation efficiencyVSAvoidAuthorization process complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent implements self-service by enabling control points to autonomously query right information and submit right application requests without manual administrator intervention for each step. The terminal device automatically processes these requests by notifying the administrator control device and receiving right assignment commands. This self-service mechanism improves user operation efficiency while the automated processing keeps the authorization process manageable.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent segments the authorization process into distinct modular steps: right information querying, right application request submission, administrator notification, and right assignment command execution. Each step is handled by specific modules (querying module, application sending module, notification module, assignment module), which processes the authorization workflow in discrete, manageable segments, reducing overall process complexity.

Inventive Principle:
Principle #1Segmentation

3Reliability

If the terminal device notifies the administrator control device for right assignment, then access control security is maintained, but the authorization time is extended

Engineering Contradiction:
ImproveAccess control securityVSAvoidAuthorization time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements feedback mechanisms where the terminal device provides right information to control points in response to queries, and the administrator control device receives notifications and sends right assignment commands back to the terminal device. This structured feedback loop ensures security through administrator verification while enabling efficient information flow that reduces unnecessary delays in the authorization process.

Inventive Principle:
Principle #23Feedback

Data Source

PatentEP2658207B1Authorization method and terminal device
Publication Date: 2017.10.25 HUAWEI DEVICE CO LTD
  • EP2658207B1 patent drawing
  • EP2658207B1 patent drawing
  • EP2658207B1 patent drawing

AI summary

Embodiments of the present invention provide an authorization method and a terminal device. The authorization method includes: receiving, by a terminal device, a right application request from a control device having no access right; notifying, by the terminal device, a control device having an administrator right to assign a right to the control device having no access right; receiving, by the terminal device, a right assignment command from the control device having an administrator right and assigning a right to the control device having no access right. With the embodiments of the present invention, a control device having no access right applies for a right proactively to obtain authorization for performing a management operation to be performed on a terminal device, thereby facilitating an operation of a user.