Card Issuing Server IC Chip Authentication Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing card issuing systems fail to efficiently verify the legitimacy of IC chips and prevent unauthorized access before accessing card information stored on them, as they lack a mechanism to verify the IC chip in advance and detect card information stored on the chip.
Innovation Solution
A card issuing system that includes an information processing terminal with an IC chip, a service providing server, and a card issuing server connected via a network, where the service providing server creates and transmits an authentication ticket to the card issuing server for verification, allowing the card issuing server to verify the IC chip and access authentication information stored on the IC chip, ensuring secure access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If mutual authentication among three parties is performed using one-time password, then authentication security is improved, but the card issuing server cannot verify the IC chip in advance and detect card information stored on the chip
Solution Approach 1:
The patent introduces a preliminary IC chip verification stage before the main authentication process. The card issuing server first verifies the IC chip's legitimacy and detects card information through a verification request, only proceeding to mutual authentication if the chip verification passes. This preliminary action enables advance verification while maintaining security.
Solution Approach 2:
The authentication process is segmented into distinct phases: (1) IC chip verification phase where the server verifies chip legitimacy and detects card information, (2) mutual authentication phase where three parties authenticate using one-time passwords. This segmentation allows the server to perform chip verification before full authentication, resolving the contradiction between security and verification capability.
2Device complexity
If the card issuing server performs authentication only at the time of request transmission, then system complexity is reduced, but the holding period of the token becomes long and system load increases
Solution Approach 1:
The patent performs IC chip verification as a preliminary action before the main authentication process. By verifying the chip's legitimacy and detecting card information in advance through the verification request, the system reduces the token holding period and prevents unauthorized access before full authentication occurs, thereby improving system efficiency without significantly increasing complexity.
3Reliability
If access authentication information is stored in the IC chip, then authentication security is improved, but unauthorized access to the IC chip becomes more difficult to prevent
Solution Approach 1:
The patent implements preliminary verification where the card issuing server checks the IC chip's legitimacy and verifies access authentication information before allowing any card information access. This preliminary action creates a security barrier that prevents unauthorized access attempts, maintaining the security benefits of stored authentication information while actively countering unauthorized access risks.
Solution Approach 2:
The card issuing server acts as an intermediary between the client terminal and the IC chip. It verifies the chip's legitimacy and checks access authentication information before permitting access to card information. This intermediary role strengthens the security of stored authentication information while preventing unauthorized access through proactive verification.
Data Source
AI summary
The present invention provides a service providing server including an authentication ticket creating unit for encrypting access authentication information and creating an authentication ticket, and an authentication ticket transmitting unit for transmitting the authentication ticket to a card issuing server; where the card issuing server includes an authentication ticket verifying unit for decrypting the authentication ticket and verifying the authentication ticket, a verification result notifying unit for notifying the verification result of the authentication ticket to the service providing server, a connection information transmitting unit for transmitting connection information for connecting to the card issuing server to the service providing server along with the verification result of the authentication ticket, and an authentication information verifying unit for comparing and verifying the access authentication information of the authentication ticket and access authentication information stored in the IC chip of the information processing terminal.


