Cross-Device Biometric Login via Server Mediation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional login mechanisms using passwords are insecure due to phishing and viruses, and alternative methods like fingerprint login can be inconvenient or fail due to poor communication quality.
Innovation Solution
An operating system with an automatic login mechanism that uses biometric verification on a second electronic device to authenticate and perform a password-free login on a first electronic device, via direct or server-mediated communication, ensuring secure and convenient access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If password-based login mechanism is used, then login security is improved, but ease of operation deteriorates due to phishing and virus risks
Solution Approach 1:
The patent replaces the traditional password-based authentication mechanism with a biometric authentication system. The biometric sensor captures physiological characteristics (fingerprint, face, iris, etc.) and converts them into authentication credentials, substituting the mechanical act of typing passwords with automatic biometric verification, thereby eliminating phishing and keyboard logging risks while maintaining high security
Solution Approach 2:
The patent introduces a server device as an intermediary that mediates between the first electronic device and the second electronic device. The server receives biometric data, performs verification, and issues authentication credentials, acting as a trusted third party that enhances security while enabling seamless cross-device authentication without direct device-to-device password sharing
2Ease of operation
If fingerprint login mechanism is used, then ease of operation is improved, but reliability deteriorates due to poor communication quality or Bluetooth authentication failures
Solution Approach 1:
The patent creates a universal authentication system that works across multiple communication channels and device types. The biometric authentication mechanism is not limited to Bluetooth communication between mobile phones and computers but can operate through server-mediated networks, direct device communication, or various other channels, making the system adaptable to different communication qualities and device configurations
Solution Approach 2:
The patent changes the authentication parameter from device-specific biometric data to server-verified credential tokens. Instead of relying on direct Bluetooth communication between specific devices, the system transforms biometric data into standardized authentication credentials that can be verified by the server, changing the communication parameters to ensure reliable authentication across different device pairs and communication conditions
3Ease of operation
If biometric verification across devices is implemented, then ease of operation is improved with password-free login, but device complexity increases due to server mediation and inter-device communication
Solution Approach 1:
The patent extracts the complex biometric verification and credential issuance logic from individual electronic devices and places it in a dedicated server device. This extraction centralizes the computational complexity of biometric matching and credential management, allowing client devices to perform only simple credential presentation and verification, thereby reducing device complexity while enabling password-free login
Solution Approach 2:
The patent performs preliminary biometric verification and credential issuance actions on the server side before actual device access is needed. The server pre-verified biometric data and issued authentication credentials in advance, so that when users need to access devices, the complex verification has already been completed, simplifying the actual login process and distributing complexity to when it is most efficiently handled
Data Source
AI summary
An operating system with automatic login mechanism and an automatic login method are provided. The operating system includes a first electronic device, a second electronic device and a server device. The second electronic device includes a biometric sensor. When a login event of the first electronic is triggered, the first electronic device sends a login request to the second electronic device directly or via the server device, so that the second electronic device performs a biometric verification by the biometric sensor according to the login request. When the biometric verification is passed, the second electronic device sends a first login credential to the first electronic device directly or via the server device, so that the first electronic device performs an automatic login operation of the first electronic device according to the first login credential.


