Authentication Server Notification Control for SSO

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In multitenant service systems, notifications during service use are not effectively managed, leading to user confusion when multiple services cooperate using Single Sign On (SSO), as notifications are often unintentionally displayed, disrupting the seamless operational feel.

Innovation Solution

An authentication server system that differentiates between authentication systems, omitting notification display when SSO is used, ensuring notifications are only shown if the user has explicitly logged in through a traditional authentication method, thereby maintaining the seamless user experience.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If notification information is displayed for all authentication methods, then important notifications are ensured to be delivered to users, but the seamless user experience of SSO is disrupted by unnecessary notification displays

Engineering Contradiction:
Improvenotification delivery reliabilityVSAvoiduser experience smoothness
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies local quality by differentiating notification display behavior based on the authentication method used. For SSO authentication, notifications are suppressed to maintain seamless user experience, while for traditional authentication methods, notifications are displayed to ensure important information delivery. This localized adjustment of notification policy resolves the contradiction between reliable notification delivery and smooth user experience.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system dynamically adjusts notification display behavior based on the detected authentication method. The notification control unit determines whether to display notifications by identifying if SSO authentication was used, and accordingly enables or disables notification display. This dynamic adaptation allows the system to maintain seamless SSO operation while ensuring notification delivery for traditional authentication methods.

Inventive Principle:
Principle #15Dynamics

2Loss of time

If SSO authentication is implemented across multiple services, then login time and labor are reduced, but notification control becomes complex due to need to distinguish authentication methods

Engineering Contradiction:
Improvelogin timeVSAvoidauthentication system complexity
Core Design Contradiction:
Loss of timeVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary authentication server that mediates between the SSO authentication process and the notification control function. The authentication server receives authentication results from the SSO system, determines the authentication method used, and controls notification display accordingly. This intermediary layer simplifies the overall system by centralizing the authentication method detection and notification control logic, preventing complexity from propagating throughout the entire system.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Loss of information

If traditional authentication method is used, then notification display is appropriate for informing users, but login process requires more time and manual input

Engineering Contradiction:
Improvenotification information deliveryVSAvoidlogin time
Core Design Contradiction:
Loss of informationVSLoss of time

Solution Approach 1:

The system applies local quality by associating notification display with specific authentication methods. Traditional authentication methods that require manual input are paired with notification display to ensure information delivery, while SSO methods are paired with notification suppression to maintain speed. This localized pairing resolves the contradiction between information delivery and login time by matching notification behavior to the appropriate authentication context.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS9350724B2Authentication server system for performing control of notifications during service use, control method, and storage medium
Publication Date: 2016.05.24 CANON KK
  • US9350724B2 patent drawing
  • US9350724B2 patent drawing
  • US9350724B2 patent drawing

AI summary

When authentication processing is performed without requesting a user to input authentication information and receiving the authentication information in response to authentication processing performed in another authentication server system having successfully been performed, a notification is not issued to a terminal to be operated by the user.