Biometric FIDO Authentication Key Selection for Nameless Login

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems face challenges in securely and efficiently managing user authentication in print systems, particularly in environments where user nameless authentication is required, without compromising security or convenience.

Innovation Solution

A communication device and system utilizing a FIDO authentication scheme with biometric authentication, enabling user selection of authentication keys and secure key management through a display interface, allowing for user nameless authentication and secure communication with a server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple user identification information and key information are stored in association with one biometric authentication information, then authentication flexibility and user management capability are improved, but device complexity and key management difficulty increase

Engineering Contradiction:
Improveauthentication flexibilityVSAvoidkey management difficulty
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the authentication system into distinct components: biometric authentication information is separated from user identification information and key information. The controller manages multiple user identification information (first, second, third user identification information) and their corresponding key information independently, allowing flexible authentication while maintaining organized key management through structured storage and association relationships.

Inventive Principle:
Principle #1Segmentation

2Ease of operation

If user nameless authentication is implemented, then convenience and speed of authentication are improved, but security and user identification accuracy may be compromised

Engineering Contradiction:
Improveauthentication convenienceVSAvoiduser identification accuracy
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an intermediary mechanism where the controller acts as a mediator between biometric authentication and user identification. When biometric authentication succeeds, the controller retrieves and provides the associated user identification information to the authentication request destination. This intermediary process maintains security by ensuring proper user identification while enabling convenient nameless authentication through automatic user ID retrieval based on stored associations.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If biometric authentication with multiple user identification information is supported, then user management versatility is improved, but authentication processing time and system complexity increase

Engineering Contradiction:
Improveuser management versatilityVSAvoidauthentication processing time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by pre-storing multiple user identification information and their corresponding key information in association with biometric authentication information before authentication is needed. The controller maintains ready-to-use associations between biometric data and multiple user IDs, so during authentication, the system can quickly retrieve the appropriate user identification information without time-consuming searches or manual input, thus reducing authentication processing time while maintaining versatility.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12592816B2Communication device, non-transitory computer-readable recording medium storing computer-readable instructions for communication device, and method executed by communication device for authentication
Publication Date: 2026.03.31 BROTHER KOGYO KK
  • US12592816B2 patent drawing
  • US12592816B2 patent drawing
  • US12592816B2 patent drawing

AI summary

A communication device may, under a specific state where a plurality of user identification information and a plurality of key information are stored in association with one biometric authentication information in a first memory, acquire two or more user names; display, on a display unit, a first selection screen; in response to sending an authentication request to a server, receive verification information from the server; in a case where authentication succeeds, a specific user name is selected on the first selection screen and the verification information is received from the server, acquire signature information created by encrypting the verification information by using a specific private key; and send the specific user identification information and the created signature information to the server.