Adaptive Authentication System for Dynamic Security-Access Trade-off

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing access control systems often compromise between security and user convenience, as stricter security measures can make authentication processes more cumbersome and time-consuming, especially when multiple authentication parameters are required.

Innovation Solution

An authentication system that dynamically adjusts security criteria based on time intervals, allowing for varying levels of authentication complexity depending on the time of day, such as requiring only a token during peak hours and additional biometric data during less busy times, to balance security and convenience.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If stricter security rules are applied at security gates, then security level is improved, but authentication time and user inconvenience increase

Engineering Contradiction:
Improvesecurity levelVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements dynamic authentication schemes that adapt to different time intervals. During peak hours (high-traffic periods), the system applies simplified authentication schemes with fewer parameters. During off-peak hours, it applies stricter authentication schemes with more parameters. This temporal dynamics resolves the contradiction by making security requirements flexible rather than fixed, allowing the system to maintain high security when needed while reducing authentication time during busy periods.

Inventive Principle:
Principle #15Dynamics

2Reliability

If multiple authentication parameters are required, then security level is improved, but ease of operation deteriorates

Engineering Contradiction:
Improvesecurity levelVSAvoidauthentication convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments the authentication process into multiple schemes based on time intervals. Each scheme contains a specific set of authentication parameters appropriate for that time period. During peak hours, users are presented with a segmented, simplified scheme requiring fewer parameters. During off-peak hours, a more comprehensive segmented scheme is applied. This segmentation allows the system to maintain high security requirements while improving ease of operation during busy periods by presenting only the necessary subset of authentication parameters.

Inventive Principle:
Principle #1Segmentation

3Ease of operation

If simplified authentication is applied during peak hours, then ease of operation is improved, but security level may deteriorate

Engineering Contradiction:
Improveauthentication convenienceVSAvoidsecurity level
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies periodic authentication schemes that switch between simplified and strict modes based on predetermined time intervals. During peak hours (e.g., morning and evening commute times), simplified schemes are periodically applied to improve ease of operation. During off-peak hours, stricter schemes are periodically applied to enhance security. This periodic alternation resolves the contradiction by ensuring that security is not compromised during simplified authentication periods, as the system cycles through appropriate security levels matching the temporal context.

Inventive Principle:
Principle #19Periodic action

Data Source

PatentEP3483842B1Authentication system for authenticating a person, method for authenticating and computer program product
Publication Date: 2025.01.01 BUNDESDRUCKEREI GMBH
  • EP3483842B1 patent drawingFigure 1
  • EP3483842B1 patent drawingFigure 2
  • EP3483842B1 patent drawingFigure 3a~3b

AI summary

The invention relates to an authentication system 100 for authenticating a person at different time intervals within a predetermined time interval group A, B, C. Each predetermined time interval is assigned a different authentication scheme. The authentication system 100 comprises a detection device 101 configured to detect at least one personal characteristic of a person at a given time interval within the time interval group ABC. The authentication system 100 further comprises a processor 103 configured to authenticate the person based on the authentication scheme assigned to the current time interval. The invention further relates to a method for authenticating a person and a computer program product.