Authentication System Intermediary Verification Device

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication technologies lack assurance of each process, as different management entities often handle distinct authentication subprocesses, making it difficult for the verification side to validate the authenticity of these subprocesses, particularly in open network environments, which can compromise the trustworthiness of the overall authentication process.

Innovation Solution

An authentication system comprising multiple authentication entity devices that execute separate subprocesses and a verification device capable of verifying the contents of these subprocesses through a confidential information memory module, authenticator generation, and specific context output, ensuring that each subprocess is validated and trusted.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple authentication entity devices execute separate authentication subprocesses, then the adaptability and versatility of the authentication system is improved, but the reliability of the authentication process deteriorates because it becomes difficult to verify the authenticity of subprocesses managed by different entities

Engineering Contradiction:
Improveauthentication system flexibilityVSAvoidauthentication process trustworthiness
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces an intermediary verification device that acts as a mediator between multiple authentication entity devices and the verification side. This intermediary collects authentication results from different entities, verifies them against predetermined criteria, and provides a unified verification outcome. This resolves the contradiction by maintaining system flexibility while ensuring reliability through centralized verification of distributed authentication processes.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements a feedback mechanism where authentication results from multiple entity devices are collected and verified against predetermined verification criteria. The verification device provides feedback on whether the authentication results meet the required standards, enabling the system to maintain reliability while accommodating multiple authentication entities with different management structures.

Inventive Principle:
Principle #23Feedback

2Ease of operation

If different management entities handle distinct authentication subprocesses, then the ease of operation and device independence is improved, but the difficulty of detecting and measuring authentication validity increases

Engineering Contradiction:
Improvedevice independenceVSAvoidauthentication validity verification
Core Design Contradiction:
Ease of operationVSDifficulty of detecting and measuring

Solution Approach 1:

The verification device serves as an intermediary that simplifies the detection and measurement of authentication validity. Instead of requiring the verification side to directly assess multiple independent authentication processes, the intermediary consolidates verification results and provides a unified validity assessment, reducing the complexity of detecting and measuring authentication authenticity across multiple independent entities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent merges multiple authentication results from different management entities into a single verification outcome. By combining the verification functions and consolidating results, the system maintains device independence while simplifying the detection and measurement process for the verification side.

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If authentication subprocesses are distributed across multiple entity devices, then the productivity and processing capability are improved, but the loss of information regarding authentication assurance increases

Engineering Contradiction:
Improveauthentication processing capabilityVSAvoidauthentication assurance information
Core Design Contradiction:
ProductivityVSLoss of information

Solution Approach 1:

The intermediary verification device prevents loss of authentication assurance information by collecting and preserving authentication results from multiple entity devices. It maintains the necessary information about each subprocess outcome and verifies them against predetermined criteria, ensuring that no critical authentication assurance information is lost despite the distributed nature of the authentication processes.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent establishes predetermined verification criteria in advance, which serves as a preliminary framework for assessing authentication results. This preliminary action ensures that when authentication subprocesses are distributed across multiple entities, the verification side has pre-defined standards to assess authenticity, preventing information loss about authentication assurance.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS7770207B2System, apparatus, program, and method for authentication
Publication Date: 2010.08.03 KK TOSHIBA
  • US7770207B2 patent drawing
  • US7770207B2 patent drawing
  • US7770207B2 patent drawing

AI summary

According to an aspect of the invention, a management of each authentication subprocess assures the each authentication subprocess, and assurance contents can be verified by verification side, so that trustworthiness of the whole authentication process can be improved. An authentication system includes authentication entity devices which separately execute authentication subprocesses P1 and P2 and a verification device which verifies the executed contents of each of the authentication subprocesses P1 and P2. The entity device includes a confidential information management unit which manages confidential information, an authenticator generating unit which generates an authenticator using the confidential information, and a context generating unit which generates a specific context pursuant to a specific format from the authenticator and the executed contents.