Zero Sign-On Network Access via Pre-Provisioned Session Tokens

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile devices face inconvenience and time-consuming processes when transitioning between different network access points, requiring manual sign-on and re-entry of usernames and passwords for authentication.

Innovation Solution

A system that facilitates zero sign-on operations by pre-associating devices with trusted access points, using an Internet gateway controller and identity provider to provision authentication session tokens, allowing seamless connection to multiple access points without manual input of credentials.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If manual sign-on is required for each access point transition, then authentication security is maintained, but user convenience and connection speed deteriorate

Engineering Contradiction:
Improveuser convenienceVSAvoidconnection time
Core Design Contradiction:
Ease of operationVSLoss of time

Solution Approach 1:

The system performs preliminary authentication by pre-associating mobile devices with trusted access points and provisioning authentication session tokens before the device needs to connect. When a device transitions to a new access point, the pre-provisioned tokens enable automatic authentication without requiring manual sign-on, thus improving user convenience and reducing connection time while maintaining security through pre-established trust relationships

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If manual username and password entry is required, then authentication control is maintained, but operational complexity increases

Engineering Contradiction:
Improveauthentication processVSAvoidsign-on process
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system enables self-service authentication by automatically handling the authentication process without requiring manual user intervention. Mobile devices use pre-provisioned authentication session tokens to automatically authenticate to trusted access points, eliminating the need for users to manually enter usernames and passwords. This reduces operational complexity while maintaining authentication control through automated token-based verification

Inventive Principle:
Principle #25Self-service

3Ease of operation

If zero sign-on is implemented, then user convenience improves, but authentication security may deteriorate

Engineering Contradiction:
Improvesign-on processVSAvoidauthentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system introduces authentication session tokens as intermediary elements that mediate between the mobile device and the access point authentication process. These tokens are pre-provisioned and trusted, allowing zero sign-on operation while maintaining security. The tokens act as intermediaries that carry authentication information, enabling automatic authentication without direct manual credential entry, thus balancing convenience and security

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9225706B2Multiple access point zero sign-on
Publication Date: 2015.12.29 CABLE TELEVISION LAB INC
  • US9225706B2 patent drawing
  • US9225706B2 patent drawing
  • US9225706B2 patent drawing

AI summary

The ability to connect a device to the Internet or another type of network from various network access points in a convenient manner is contemplated. The device may be conveniently connected to the desired network without requiring user input of a username and password when connecting to the various network access points.