Wireless Terminal Authentication via Certificate Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users cannot verify the authenticity or authorization of wireless terminal devices before providing digital identity credentials, leading to potential unauthorized access to sensitive information.

Innovation Solution

A system where third-party entities register their wireless terminal devices with digital credential issuers and certificate authorities to obtain certificates that authorize the devices to receive specific user information, allowing users' devices to verify the authenticity and authorization of requests before sharing credentials.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If users wirelessly transmit digital identity credentials to third-party devices, then convenience of identity verification is improved, but security risk of unauthorized access increases

Engineering Contradiction:
Improveconvenience of identity verificationVSAvoidsecurity risk of unauthorized access
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary authentication of the wireless terminal device before allowing credential transmission. The user's device verifies the terminal's certificate and authorization status in advance, ensuring only authorized devices can receive credentials. This preliminary security check prevents unauthorized access while maintaining convenience for legitimate use cases.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

A certificate authority and verification system acts as an intermediary between the user and the wireless terminal device. The terminal obtains certificates from authorized entities, and the user's device verifies these certificates through the established authentication framework. This intermediary layer enables secure credential sharing without requiring direct trust between user and terminal.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If users manually verify terminal authorization before sharing credentials, then security is improved, but user experience and efficiency deteriorate

Engineering Contradiction:
Improvesecurity of credential sharingVSAvoidefficiency of credential transfer
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The wireless terminal device automatically presents its certificate and authorization credentials to the user's device. The authentication process occurs automatically without requiring manual verification steps from the user. The system handles certificate validation, authorization checking, and secure credential transfer through automated protocols, maintaining both security and efficiency.

Inventive Principle:
Principle #25Self-service

3Reliability

If a centralized authentication system is implemented, then security control is improved, but system complexity increases

Engineering Contradiction:
Improvesecurity controlVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a universal certificate-based authentication framework that can be applied across multiple wireless terminal devices and credential types. The same authentication mechanisms work for different kinds of digital credentials (driver's licenses, passports, etc.) and different terminal devices. This universal approach provides comprehensive security control without requiring separate complex systems for each use case.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11546174B2Wireless terminal authentication
Publication Date: 2023.01.03 APPLE INC
  • US11546174B2 patent drawing
  • US11546174B2 patent drawing
  • US11546174B2 patent drawing

AI summary

A device for wireless terminal authentication may include at least one processor configured to receive, from a wireless terminal device, a request for user information, the request comprising a certificate corresponding to the wireless terminal device. The at least one processor may be further configured to verify the certificate based at least in part on a public key stored on the electronic device. The at least one processor may be further configured to, when the certificate is verified, determine whether the certificate indicates that the wireless terminal device is authorized to receive the requested user information. The at least one processor may be further configured to transmit, to the wireless terminal device, the requested user information when the certificate indicates that the wireless terminal device is authorized to receive the requested user information.