Wearable Device Verified Session for Host Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile devices are often inaccessible when users receive calls or notifications, making it inconvenient to manage sensitive information securely.

Innovation Solution

A wearable electronic device can establish a verified session with a host device via wireless pairing, allowing access to sensitive information only when the wearable device is present and authenticated, using proximity sensors and cryptographic keys to ensure secure access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If mobile device is kept accessible for user operations, then ease of operation is improved, but security against unauthorized access deteriorates

Engineering Contradiction:
Improveaccessibility of mobile deviceVSAvoidsecurity of sensitive information
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

A wearable device acts as an intermediary between the user and the mobile device. The wearable device communicates with the mobile device to verify user presence and authenticate the user before allowing access to sensitive information. This intermediary mechanism enables the mobile device to remain physically accessible while maintaining security through the additional verification layer provided by the wearable device.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If access to sensitive information is restricted to authenticated users, then security is improved, but ease of operation deteriorates

Engineering Contradiction:
Improvesecurity of sensitive informationVSAvoidconvenience of accessing information
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The wearable device automatically performs authentication and verification functions without requiring explicit user actions. The mobile device automatically checks for the presence of the wearable device and verifies authentication status, enabling secure access to sensitive information without interrupting the user's workflow or requiring manual security checks.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Authentication and verification are performed in advance before the user attempts to access sensitive information. The wearable device establishes its presence and authentication status beforehand, so that when the user needs to access protected functionality, the security checks have already been completed, enabling seamless access.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If wearable device authentication is required for protected functionality, then security against unauthorized access is improved, but device complexity increases

Engineering Contradiction:
Improveprotection against unauthorized accessVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The wearable device serves multiple functions: it acts as a presence detector, an authentication mechanism, and a secure key storage device. By consolidating these functions into a single wearable device, the system avoids the need for multiple separate components, thereby reducing overall system complexity while maintaining robust security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12028711B2Controlling access to protected functionality of a host device using a wireless device
Publication Date: 2024.07.02 APPLE INC
  • US12028711B2 patent drawing
  • US12028711B2 patent drawing
  • US12028711B2 patent drawing

AI summary

A wearable device can establish a verified session with a host device (e.g., by establishing that the wearable device is present in the vicinity of the host device and is currently being worn). The existence of such a verified session can be used to control user access to sensitive information that may be stored in or otherwise accessible to a host device. For example, the host device and/or application programs executing thereon can be configured to restrict a user's ability to invoke program functionality that accesses sensitive information based on whether a verified session with a wearable device is currently in progress.