Biometric Authentication Linkage Without Certification Server
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing electronic devices that rely on biometric information for authentication are limited in their ability to connect and authenticate with other devices lacking biometric recognition modules, leading to restricted performance and security concerns.
Innovation Solution
An electronic device equipped with a biometric recognition module that facilitates connection and authentication with external devices through wireless communication, enabling registration, authentication, and secure data transfer using a combination of public-key and symmetric-key authentication schemes without exposing symmetric keys, and allowing devices without biometric sensors to utilize biometric information for secure linkages.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If electronic devices use biometric information for authentication, then security is improved, but devices without biometric recognition modules cannot be authenticated
Solution Approach 1:
The patent introduces a certification server as an intermediary that stores biometric information and issues certificates. Devices without biometric sensors can still be authenticated by obtaining certificates from the server, which are then verified by other devices. This mediator enables cross-device authentication while maintaining security standards.
Solution Approach 2:
The patent creates a copy of biometric authentication capability through certification. Instead of requiring the actual biometric sensor in each device, the system generates digital certificates that replicate the authentication function. These certificates can be stored and verified across different device types, enabling universal authentication without biometric hardware.
2Ease of operation
If biometric authentication is implemented, then user convenience is improved, but connection between devices with different authentication capabilities is limited
Solution Approach 1:
The patent creates a universal authentication framework where the certification server provides multi-functional support for both biometric and non-biometric devices. The system can handle different authentication methods (biometric verification, certificate validation) through a single unified platform, enabling seamless connection between diverse devices without requiring separate solutions for each device type.
3Speed
If devices share authentication information directly, then connection speed is improved, but security is compromised due to key exposure
Solution Approach 1:
The patent extracts the sensitive biometric information and symmetric keys from the direct device-to-device communication path. Instead of sharing keys between devices, the system pulls authentication credentials from a secure certification server. Devices only exchange public keys and certificate information, while the server handles the sensitive verification processes, eliminating key exposure risks while maintaining fast connection establishment.
Data Source
AI summary
Disclosed are a method and an apparatus for connecting electronic devices based on biometric information without a certification server. An electronic device includes a wireless communication unit configured to perform wireless communication with an external device; a biometric recognition module; a memory; and a processor connected to the wireless communication unit, the biometric recognition module, and the memory. The processor is configured to register, in the external device, authentication information for authenticating the external device through the electronic device, establish a communication connection with the external device through the wireless communication unit, receive a request for authenticating the electronic device from the external device in response to the communication connection, acquire biometric information corresponding to a user of the electronic device using the biometric recognition module in response to the authentication request, perform device authentication for the user based on at least the biometric information, encrypt authentication information when the authentication is successfully performed, and transmit the encrypted authentication information to the external device.


