Wireless Access Control With Relay Attack Intent Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing access control systems using wireless communication are susceptible to relay attacks, where unauthorized access can occur without the user's knowledge or consent, as they do not require direct physical proximity or confirmation.
Innovation Solution
The system enhances security by using a mobile device to securely communicate with access controls through encrypted credentials, validating user intent and proximity, and detecting potential relay attacks through signal strength and latency checks, ensuring that access is only granted when the user is physically close and actively attempting to access the control.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If wireless communication protocols like Bluetooth are used to enable access control without direct physical proximity, then ease of operation is improved, but security is worsened due to susceptibility to relay attacks
Solution Approach 1:
The patent introduces an intermediary verification mechanism that acts as a mediator between the mobile device and access control system. This intermediary layer validates the authenticity of wireless communications by checking signal characteristics and confirming user intent, thereby preventing relay attacks while maintaining wireless convenience
Solution Approach 2:
The system implements feedback mechanisms that monitor communication signals in real-time, analyzing signal strength, latency, and other characteristics to detect potential relay attacks. The system provides feedback to the user about the authenticity of the connection and adjusts access control decisions based on this feedback
2Productivity
If automated access control without confirmation steps is implemented, then productivity is improved, but security is worsened due to unauthorized access without user knowledge
Solution Approach 1:
The system performs preliminary verification actions before granting access, such as validating signal characteristics, checking user context, and confirming intent through subtle indicators. This preliminary action ensures that automated access control remains secure while maintaining high productivity by not requiring explicit user confirmation for each access event
Solution Approach 2:
The system incorporates self-service security mechanisms that automatically detect and respond to potential threats without user intervention. The access control system monitors its own communications, detects anomalies, and makes security decisions autonomously, maintaining both productivity and security
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A method of secure access through a wireless connection is provided. The method includes detecting availability of an access control wirelessly by a mobile device. A predicted intent is determined of a user of the mobile device to have the access control open a lock. The method determines whether a relay attack is detected. Based on detection of the relay attack, a prompt to confirm an intent of the user of the mobile device to have the access control open a lock is determined. Based on nondetection of the relay attack, a lock actuator is activated through the access control to open the lock responsive to a credential based on affirmatively confirming the intent or the predicted intent.