Biometric ID Token Segmentation for Secure Multi-Application Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing ID tokens are inflexible and require new tokens for each new application, lacking the ability to trigger electronic user actions without reissuance, and do not efficiently integrate biometric data for secure, versatile usage.

Innovation Solution

A method and system for biometrically triggering user actions using an ID token personalized with biometric features, where the token is activated by detecting and comparing the user's biometric feature with the stored feature, allowing secure and flexible access to various applications without reissuance.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If an ID token is personalized with biometric data during production, then security is improved, but the token cannot be flexibly expanded for future applications

Engineering Contradiction:
ImprovesecurityVSAvoidflexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent divides the ID token's functionality into separate modules: a permanent core identity area that cannot be modified, and a flexible application area that can be dynamically updated with different user actions and permissions. This segmentation allows the token to maintain security through the immutable core while enabling adaptability through the modifiable application layer.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamic characteristics by allowing the ID token's application data to be updated and modified after issuance. The token can adapt to new applications and user needs by dynamically adding or changing permission sets, effectively transforming a static personalized token into a dynamic, evolving credential that maintains both security and flexibility.

Inventive Principle:
Principle #15Dynamics

2Reliability

If a new ID token is acquired for each new application, then application-specific security is improved, but device complexity and reissuance requirements increase

Engineering Contradiction:
Improveapplication-specific securityVSAvoidtoken management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent creates a universal ID token that can serve multiple applications simultaneously. The token contains a core identity that remains constant while supporting multiple different application modules and permission sets. This multi-functionality eliminates the need for separate tokens for different applications, reducing complexity while maintaining application-specific security through isolated permission validation.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If biometric data is stored in the ID token, then authentication reliability is improved, but the personalization process becomes more complex

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidpersonalization complexity
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent performs biometric data collection and processing during the initial token personalization phase, storing the biometric template in the token's secure memory. By completing the biometric integration beforehand during manufacturing or issuance, the system simplifies subsequent usage where only biometric verification is needed without repeating complex personalization procedures.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP3465511B1Biometric-based triggering of a useful action by means of an id token
Publication Date: 2020.06.24 BUNDESDRUCKEREI GMBH
  • EP3465511B1 patent drawingFigure 1

AI summary

The invention relates to a method for biometric-based triggering of a useful action by means of an ID token associated with a user, which ID token was personalized by the sensing and storing of a biometric characteristic in relation to personalization and was activated by the sensing of the corresponding characteristic in relation to activation, comprising: a) presenting the activated ID token to a device for triggering a useful action; b) sensing the corresponding biometric characteristic of the user in relation to the useful action; c) comparing the corresponding biometric characteristic sensed in relation to the useful action with the corresponding biometric characteristic of the user stored in relation to personalization; and d) if the comparison indicates that the corresponding biometric characteristic sensed in relation to the useful action adequately matches the corresponding biometric characteristic of the user stored in relation to personalization: triggering the useful action.