Card Issuing Server IC Chip Authentication Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing card issuing systems fail to efficiently verify the legitimacy of IC chips and prevent unauthorized access before accessing card information stored on them, as they lack a mechanism to verify the IC chip in advance and detect card information stored on the chip.

Innovation Solution

A card issuing system that includes an information processing terminal with an IC chip, a service providing server, and a card issuing server connected via a network, where the service providing server creates and transmits an authentication ticket to the card issuing server for verification, allowing the card issuing server to verify the IC chip and access authentication information stored on the IC chip, ensuring secure access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If mutual authentication among three parties is performed using one-time password, then authentication security is improved, but the card issuing server cannot verify the IC chip in advance and detect card information stored on the chip

Engineering Contradiction:
Improveauthentication securityVSAvoidIC chip verification capability
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The patent introduces a preliminary IC chip verification stage before the main authentication process. The card issuing server first verifies the IC chip's legitimacy and detects card information through a verification request, only proceeding to mutual authentication if the chip verification passes. This preliminary action enables advance verification while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The authentication process is segmented into distinct phases: (1) IC chip verification phase where the server verifies chip legitimacy and detects card information, (2) mutual authentication phase where three parties authenticate using one-time passwords. This segmentation allows the server to perform chip verification before full authentication, resolving the contradiction between security and verification capability.

Inventive Principle:
Principle #1Segmentation

2Device complexity

If the card issuing server performs authentication only at the time of request transmission, then system complexity is reduced, but the holding period of the token becomes long and system load increases

Engineering Contradiction:
Improveauthentication system complexityVSAvoidsystem processing efficiency
Core Design Contradiction:
Device complexityVSProductivity

Solution Approach 1:

The patent performs IC chip verification as a preliminary action before the main authentication process. By verifying the chip's legitimacy and detecting card information in advance through the verification request, the system reduces the token holding period and prevents unauthorized access before full authentication occurs, thereby improving system efficiency without significantly increasing complexity.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If access authentication information is stored in the IC chip, then authentication security is improved, but unauthorized access to the IC chip becomes more difficult to prevent

Engineering Contradiction:
Improveauthentication securityVSAvoidunauthorized access risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary verification where the card issuing server checks the IC chip's legitimacy and verifies access authentication information before allowing any card information access. This preliminary action creates a security barrier that prevents unauthorized access attempts, maintaining the security benefits of stored authentication information while actively countering unauthorized access risks.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The card issuing server acts as an intermediary between the client terminal and the IC chip. It verifies the chip's legitimacy and checks access authentication information before permitting access to card information. This intermediary role strengthens the security of stored authentication information while preventing unauthorized access through proactive verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8433908B2Card issuing system, card issuing server, card issuing method and program
Publication Date: 2013.04.30 FELICA NETWORKS INC
  • US8433908B2 patent drawing
  • US8433908B2 patent drawing
  • US8433908B2 patent drawing

AI summary

The present invention provides a service providing server including an authentication ticket creating unit for encrypting access authentication information and creating an authentication ticket, and an authentication ticket transmitting unit for transmitting the authentication ticket to a card issuing server; where the card issuing server includes an authentication ticket verifying unit for decrypting the authentication ticket and verifying the authentication ticket, a verification result notifying unit for notifying the verification result of the authentication ticket to the service providing server, a connection information transmitting unit for transmitting connection information for connecting to the card issuing server to the service providing server along with the verification result of the authentication ticket, and an authentication information verifying unit for comparing and verifying the access authentication information of the authentication ticket and access authentication information stored in the IC chip of the information processing terminal.