Blockchain Identity Binder for Source Attribution Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Permission-based blockchain systems lack effective source attribution security, leading to potential fraudulent impersonation and data theft due to inadequate verification of originators and recipients.

Innovation Solution

Implementing a blockchain identity binder that cryptographically binds a signature-verification public key and data encryption public key to the identity of their respective holders, with a registration authority validating identity binding requests to ensure authenticity, thereby enhancing security through source authentication and confidentiality.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If permission-based blockchain systems use source attribution data to provide control amongst participants, then control and management capability is improved, but security against fraudulent impersonation deteriorates

Engineering Contradiction:
Improvecontrol capabilityVSAvoidsource attribution security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a registration authority as an intermediary that issues digital certificates binding participant identities to their public keys. This intermediary validates and authenticates participant identities before they can participate in the blockchain network, thereby preventing fraudulent impersonation while maintaining the control capabilities provided by source attribution data.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements preliminary identity verification and binding through digital certificates before participants engage in blockchain transactions. The registration authority performs identity authentication and binds identities to public keys in advance, ensuring that only authenticated participants can transact, thus preventing security issues before they occur.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If blockchain systems implement comprehensive identity verification, then security is improved, but system complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the complex identity verification and management functions into a separate registration authority component. This allows the core blockchain system to focus on transaction processing while the registration authority handles identity management, reducing the complexity burden on the main blockchain system while maintaining comprehensive security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent uses digital certificates as copies of identity information that can be verified without requiring access to the original identity data. The certificates contain essential verification information that can be independently validated, simplifying the verification process while maintaining security.

Inventive Principle:
Principle #26Copying

Data Source

PatentEP3520356B1Methods and apparatus for providing blockchain participant identity binding
Publication Date: 2022.11.02 ENTRUST INC
  • EP3520356B1 patent drawingFigure 1
  • EP3520356B1 patent drawingFigure 2
  • EP3520356B1 patent drawingFigure 3

AI summary

A method and apparatus provides a blockchain that includes one or more blocks that contain a cryptographic binding of a signature-verification public key and/or a data encryption public key to the identity of the holder of the corresponding private key. The binding is performed by one or more key binding entities, referred to herein as a blockchain identity binder. Originators and recipients use the identity binding data to secure block chain transactions.