Blockchain Identity Management for Secure Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for user authentication, such as those using bank cards, PINs, passwords, and SMS codes, are vulnerable to security breaches and do not provide a robust method for managing user identities effectively, leading to issues like identity theft.

Innovation Solution

The implementation of a blockchain-based identity management system that allows users to authenticate without usernames and passwords by using dynamic codes, biometrics, and secure envelopes of data, ensuring secure login and registration processes through verified user identities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication systems (username/password, bank card/PIN, SMS codes) are used, then user authentication can be performed, but security vulnerabilities and identity theft risks increase

Engineering Contradiction:
Improveauthentication securityVSAvoididentity theft risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a blockchain-based identity management system as an intermediary between users and service providers. The blockchain stores verified identity information and authentication records immutably, acting as a trusted mediator that eliminates the need for users to share sensitive credentials with multiple services, thereby reducing identity theft risk while maintaining authentication reliability

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates a digital copy of identity verification data on the blockchain that can be shared across multiple services without exposing the original sensitive information. Users can generate authentication proofs from their blockchain-stored identity data that service providers can verify without accessing underlying personal information, thus maintaining security while enabling authentication

Inventive Principle:
Principle #26Copying

2Reliability

If blockchain-based identity management is implemented, then authentication security is enhanced, but system complexity increases

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements self-service functionality where users independently manage their own identity data on the blockchain using mobile devices. The system automatically generates cryptographic key pairs, stores private keys securely in the user's device, and autonomously creates authentication proofs without requiring manual intervention from service providers or complex administrative infrastructure, thereby reducing operational complexity

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent creates a universal identity management system that can be used across multiple services and platforms. The blockchain-based identity store serves as a single source of truth that works with any service provider that implements the verification protocol, eliminating the need for separate authentication systems for each service and reducing overall system complexity through standardization

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If dynamic codes and biometrics are used for authentication, then security against breaches is improved, but ease of operation decreases

Engineering Contradiction:
Improvesecurity against breachesVSAvoidlogin convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent replaces traditional mechanical authentication methods (typing passwords, entering PINs) with biometric authentication (fingerprint, facial recognition). The biometric data is verified against the blockchain-stored identity record, providing strong security against breaches while maintaining ease of operation since users only need to provide their biological trait rather than memorize or write down credentials

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS11658961B2Method and system for authenticated login using static or dynamic codes
Publication Date: 2023.05.23 PING IDENTITY CORP
  • US11658961B2 patent drawing
  • US11658961B2 patent drawing
  • US11658961B2 patent drawing

AI summary

Method of authentication including sending a login web page to a first device of a user including a scannable code having an envelope ID and a login challenge. The envelope ID generated by an identity manager is associated with a first envelope of data including a session ID. A confirmation login request is received from a second device associated with the user, and includes a second envelope of data comprising the session ID, a user ID, and a seal of the user ID registering the user ID with the identity manager. The confirmation login request to the login challenge is verified using the session ID, and the user is verified using the user ID and seal. User login is authorized upon successful verification of the login challenge and user, and a communication session having the session ID is established between the web server and the first device.