Biometric Authentication Using Personal Terminal Data

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication systems in shared environments, such as hospitals, face security risks due to the sharing of login/password pairs and the impracticality of centralized biometric databases, which violate privacy regulations and are cumbersome to implement.

Innovation Solution

A method that uses a user's personal terminal to temporarily store and transmit reference biometric and alphanumeric authentication data to client equipment for biometric recognition, allowing secure authentication without a centralized database, utilizing short-range wireless connections and encryption to ensure privacy and security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a centralized biometric database is implemented, then biometric authentication can be performed, but it violates privacy regulations and is cumbersome to implement

Engineering Contradiction:
Improveauthentication securityVSAvoidcentralized database complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts biometric reference data from the centralized database concept and places it locally on the user's personal terminal device. This allows biometric authentication to be performed without requiring a centralized biometric database, thus maintaining authentication security while avoiding the complexity and privacy violations associated with centralized storage.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The authentication system is segmented into distributed components: the personal terminal stores biometric reference data locally, the client equipment performs authentication processing, and no centralized biometric database is required. This segmentation eliminates the need for complex centralized infrastructure while maintaining security and compliance.

Inventive Principle:
Principle #1Segmentation

2Ease of operation

If login/password pairs are shared among users, then ease of access is improved, but security is compromised

Engineering Contradiction:
Improveaccess convenienceVSAvoidauthentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the mechanical/password-based authentication system with a biometric authentication system. Instead of relying on users to securely manage and not share password credentials, the system uses unique biometric characteristics (fingerprint, face, iris) that cannot be shared or stolen, thus maintaining ease of use while dramatically improving security.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If biometric data is stored on each workstation, then authentication can be performed, but it requires case-by-case recording which is very long and cumbersome

Engineering Contradiction:
Improveauthentication capabilityVSAvoiddata recording time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces the user's personal terminal as an intermediary device that stores biometric reference data. During authentication, the terminal communicates with the client equipment to verify biometric data without requiring manual case-by-case recording on each workstation. This eliminates the time-consuming setup process while maintaining authentication capability.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12141255B2Method for authenticating a user on client equipment
Publication Date: 2024.11.12 IDEMIA PUBLIC SECURITY FRANCE
  • US12141255B2 patent drawing
  • US12141255B2 patent drawing

AI summary

A method of authenticating a user on client equipment, the user equipped with a personal terminal, the method wherein it comprises implementing by data processing means in said client equipment the following steps: (a) When said user's personal terminal is in proximity to said client equipment, receiving from the terminal and temporarily storing on data storage means in the client equipment: —a reference biometric data item of the user; and—at least one alphanumeric user authentication data item; stored on the data storage means in the terminal; (b) Identifying said user via biometric recognition from a candidate biometric data item of the user and the reference biometric data item(s) stored on the data storage means in the client equipment; (c) Using at least one alphanumeric authentication data item of the identified user stored on the data storage means in the client equipment, for authentication of said user.