Blockchain Authentication via Cryptographic Challenge-Response
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current user authentication methods, such as Knowledge Based Authentication, are cumbersome and insecure, especially with the increasing number of intelligent devices connected to the internet, necessitating a secure system for user identification and authentication across various devices and services.
Innovation Solution
A blockchain-based authentication system using a processor-implemented method that involves obtaining and storing identity information and credentials with a blockchain, creating a public-private key pair on a hardware-based cryptographic processor, and responding to cryptographic challenges to verify user identity, ensuring secure authentication through a blockchain-compatible public-private key pair.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If Knowledge Based Authentication is used, then user authentication can be performed, but security is compromised as answers can be purchased online
Solution Approach 1:
The patent replaces the mechanical/Knowledge Based Authentication system with a cryptographic challenge-response system using public-private key pairs. Instead of relying on users to remember answers, the system uses cryptographic proofs where the user's device generates and verifies cryptographic challenges, eliminating the security vulnerability of purchasable answers while maintaining operational ease through automated cryptographic verification.
Solution Approach 2:
The patent introduces a blockchain-based intermediary system that stores and verifies credential information. The blockchain acts as a trusted mediator between the user and the service provider, holding verified identity information and credential status without exposing sensitive data. This intermediary layer enables secure authentication by allowing verification of credentials without direct access to private keys or sensitive personal information.
2Adaptability or versatility
If multiple intelligent devices are connected to the internet, then new capabilities are opened, but security problems increase for user identification and authentication
Solution Approach 1:
The patent implements a universal authentication system based on blockchain credentials that can be used across multiple intelligent devices and services. The user's identity and credentials are stored once on the blockchain and can be verified by any service provider that accepts the blockchain authentication standard. This multi-functional approach allows the same cryptographic credentials to secure access across smartphones, smart home devices, computers, and other internet-connected devices, providing consistent security without requiring device-specific authentication mechanisms.
3Reliability
If traditional authentication methods are used, then user identification can be performed, but the system is cumbersome and not secure
Solution Approach 1:
The patent implements self-service authentication where the user's device autonomously generates cryptographic challenges, signs them with private keys, and verifies responses without requiring complex manual verification processes. The blockchain network automatically verifies credential validity and maintains authentication records. This self-service approach eliminates the need for human operators to verify identities manually, reducing system complexity while enhancing security through automated cryptographic verification.
Data Source
AI summary
An embodiment herein provides a processor implemented method for blockchain-based authentication of a user using a user device, that includes (i) obtaining an identify information associated with an identity document of the user; (ii) storing the identity information, and a set of credentials, with a blockchain to link the identity information with the set of credentials for the user; (iii) obtaining a cryptographic challenge from a relying party device when a record that includes a user identity information of the user and the set of credentials associated with the user identity information for the user device is found to be stored with the blockchain; and (iv) transmitting a response to the cryptographic challenge to the relying party device. The relying party device checks whether the response matches with a predetermined correct response or not. The relying party device authenticates the user only if the response matches with the predetermined correct response.


