Virtual Authentication Module for Physical SIM Elimination

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The production and physical delivery of SIM cards for device authentication pose significant environmental and logistical burdens due to the need for manual or semi-automatic provisioning and the generation of waste, which existing solutions, such as electronic or virtual SIMs, do not adequately address.

Innovation Solution

A method and system for providing a virtual or software-based Authentication Module (AM) that uses a network node to compute and store authentication parameters using a device's identifier, authentication data, and encryption parameter, enabling secure authentication without the need for physical SIMs, and allowing for updates and authentication processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If physical SIM cards are produced and delivered to devices, then authentication capability is provided, but environmental burden and logistical complexity increase significantly

Engineering Contradiction:
Improveauthentication capabilityVSAvoidenvironmental burden
Core Design Contradiction:
ReliabilityVSObject-generated harmful factors

Solution Approach 1:

The patent replaces physical SIM cards with virtual authentication modules that are software-based copies of the authentication functionality. Instead of producing and delivering physical plastic cards, the system generates and installs virtual authentication credentials digitally, eliminating the need for physical manufacturing and distribution while maintaining authentication capability.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent substitutes the mechanical/physical SIM card system with an electronic/software-based authentication system. The physical insertion and extraction of SIM cards is replaced by digital provisioning and management of authentication credentials through software interfaces and network communication.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Reliability

If physical SIM cards are manually or semi-automatically provisioned, then authentication is enabled, but labor costs and provisioning time increase

Engineering Contradiction:
ImproveauthenticationVSAvoidprovisioning time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent enables automated self-provisioning of authentication modules where the system can automatically generate, distribute, and configure virtual authentication credentials without requiring manual human intervention. The devices can autonomously receive and install authentication modules through digital channels, eliminating the need for labor-intensive manual provisioning processes.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent allows authentication modules to be pre-generated and prepared in advance, then automatically distributed and installed on devices before they are needed for authentication. This preliminary preparation and digital pre-provisioning eliminates the need for on-demand manual provisioning, significantly reducing provisioning time and labor requirements.

Inventive Principle:
Principle #10Preliminary action

3Quantity of substance

If physical SIM cards are produced in large quantities, then authentication coverage increases, but waste generation increases

Engineering Contradiction:
Improveauthentication modulesVSAvoidwaste
Core Design Contradiction:
Quantity of substanceVSLoss of substance

Solution Approach 1:

The patent creates digital copies of authentication credentials that can be replicated infinitely without consuming additional physical materials. Each virtual authentication module is a software-based copy that can be generated and distributed electronically, allowing unlimited authentication coverage to be provided without producing any physical waste from manufacturing and disposing of plastic SIM cards.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS10263980B2Network node, device and methods for providing an authentication module
Publication Date: 2019.04.16 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US10263980B2 patent drawing
  • US10263980B2 patent drawing
  • US10263980B2 patent drawing

AI summary

The invention relates to a method, for providing an Authentication Module (AM) to a device. The method comprises computing an authentication parameter to be stored in the AM, using an identifier (ID) associated with the device, authentication data associated with the device and an encryption parameter associated with the device. The method also comprises providing the AM to the device. The invention also relates to a method, for updating an AM and to a method to authenticate a device using an AM. The invention further relates to a device and network node executing the methods.