Biometric Access Control for Virtual Desktops

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in accessing their remote computing resources due to the risk of losing portable devices, complex password management, and the need for specific devices to access virtual desktops, which limits flexibility and security.

Innovation Solution

A system that uses biometric authentication to control access to cloud-hosted virtual desktops, allowing users to access their virtual computing devices from any device by providing biometric credentials, eliminating the need for complex passwords and specific devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If users carry portable computing devices to work, then accessibility and flexibility are improved, but the risk of losing company assets and confidential information increases

Engineering Contradiction:
ImproveaccessibilityVSAvoidrisk of loss
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system separates the computing resources (virtual desktop) from the access device (portable device). The virtual desktop remains securely hosted on remote servers while users access it from various portable devices. This segmentation allows users to benefit from portable device flexibility without the security risks of storing company assets locally on portable devices.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces biometric authentication as an intermediary mechanism between the user and the virtual desktop access. Instead of relying on passwords that users might write down or store insecurely, the system uses biometric data (fingerprint, facial recognition, etc.) as a secure intermediary that verifies user identity without exposing sensitive information or requiring users to carry secure physical tokens.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If complex password requirements are implemented, then security is improved, but authorized users are blocked from accessing their own accounts

Engineering Contradiction:
ImprovesecurityVSAvoidaccess convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system replaces the mechanical password entry system with a biometric authentication system. Instead of requiring users to manually enter complex passwords, the system uses automated biometric verification (fingerprint scanning, facial recognition, iris detection, etc.) to authenticate users. This substitution maintains high security while dramatically improving ease of operation, as biometric authentication is naturally more convenient than remembering and typing complex passwords.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The biometric authentication system enables users to authenticate themselves using their own unique biological characteristics without requiring external assistance or memorization of credentials. The system automatically captures and verifies biometric data, providing a self-service authentication mechanism that is both secure and convenient for authorized users.

Inventive Principle:
Principle #25Self-service

3Reliability

If access is restricted to specific desktop computing devices, then security is improved, but flexibility and portability are reduced

Engineering Contradiction:
ImprovesecurityVSAvoiddevice flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The system implements universal access to the virtual desktop across multiple device types and platforms. Users can access their virtual desktop from any portable device (smartphones, tablets, laptops, wearables) in addition to traditional desktops. The biometric authentication system and cloud-based virtual desktop architecture enable this multi-device accessibility while maintaining security, as authentication is device-agnostic and the virtual desktop is hosted remotely rather than tied to specific hardware.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12164614B2Biometric based access control for DaaS
Publication Date: 2024.12.10 ORACLE INT CORP
  • US12164614B2 patent drawing
  • US12164614B2 patent drawing
  • US12164614B2 patent drawing

AI summary

Systems, methods, and other embodiments associated with configuring and controlling access to virtual desktops are described. In one embodiment, a method includes configuring a virtual desktop for a registered user, wherein the virtual desktop includes at least allocated virtual computing devices and is accessible by a desktop as a service (DaaS). Biometric access credentials are assigned to the virtual desktop for obtaining remote access to the virtual desktop, wherein the biometric access credentials are based at least in part on registered biometric data that was collected from and specific to the registered user. Access to the virtual desktop is controlled by a server based on biometric authentication that grants or prohibits access to the virtual desktop based on a user's biometric data.