Biometric FIDO Authentication Key Selection for Nameless Login
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems face challenges in securely and efficiently managing user authentication in print systems, particularly in environments where user nameless authentication is required, without compromising security or convenience.
Innovation Solution
A communication device and system utilizing a FIDO authentication scheme with biometric authentication, enabling user selection of authentication keys and secure key management through a display interface, allowing for user nameless authentication and secure communication with a server.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If multiple user identification information and key information are stored in association with one biometric authentication information, then authentication flexibility and user management capability are improved, but device complexity and key management difficulty increase
Solution Approach 1:
The patent segments the authentication system into distinct components: biometric authentication information is separated from user identification information and key information. The controller manages multiple user identification information (first, second, third user identification information) and their corresponding key information independently, allowing flexible authentication while maintaining organized key management through structured storage and association relationships.
2Ease of operation
If user nameless authentication is implemented, then convenience and speed of authentication are improved, but security and user identification accuracy may be compromised
Solution Approach 1:
The patent introduces an intermediary mechanism where the controller acts as a mediator between biometric authentication and user identification. When biometric authentication succeeds, the controller retrieves and provides the associated user identification information to the authentication request destination. This intermediary process maintains security by ensuring proper user identification while enabling convenient nameless authentication through automatic user ID retrieval based on stored associations.
3Adaptability or versatility
If biometric authentication with multiple user identification information is supported, then user management versatility is improved, but authentication processing time and system complexity increase
Solution Approach 1:
The patent implements preliminary action by pre-storing multiple user identification information and their corresponding key information in association with biometric authentication information before authentication is needed. The controller maintains ready-to-use associations between biometric data and multiple user IDs, so during authentication, the system can quickly retrieve the appropriate user identification information without time-consuming searches or manual input, thus reducing authentication processing time while maintaining versatility.
Data Source
AI summary
A communication device may, under a specific state where a plurality of user identification information and a plurality of key information are stored in association with one biometric authentication information in a first memory, acquire two or more user names; display, on a display unit, a first selection screen; in response to sending an authentication request to a server, receive verification information from the server; in a case where authentication succeeds, a specific user name is selected on the first selection screen and the verification information is received from the server, acquire signature information created by encrypting the verification information by using a specific private key; and send the specific user identification information and the created signature information to the server.


