Cardholder Authentication Device for Online Payments
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems require users to provide additional authentication credentials for online payment transactions, even after accessing a private network, which hampers the purchasing experience without providing additional fraud detection benefits.
Innovation Solution
A cardholder authentication computing device that leverages pre-authentication data from private networks to authenticate users for online payment transactions, reducing the need for additional credentials and enhancing fraud detection by utilizing pre-existing authentication data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If additional authentication credentials are required for online payment transactions after private network access, then fraud detection capability is improved, but user experience and transaction efficiency deteriorate
Solution Approach 1:
The system performs authentication in advance when the user accesses the private network. The authentication computing device receives pre-authentication data from the private network indicating the user has already been authenticated, and then uses this pre-existing authentication to clear the online payment transaction without requiring additional credentials.
Solution Approach 2:
The authentication computing device serves multiple functions: it authenticates users for private network access and also authenticates users for online payment transactions. By leveraging the pre-authentication data from the private network access, the same authentication mechanism is reused for payment transactions, eliminating the need for separate authentication processes.
2Reliability
If additional authentication credentials are required for online payment transactions, then fraud detection capability is improved, but transaction processing time increases
Solution Approach 1:
Authentication is performed in advance during private network access. The authentication computing device stores pre-authentication data that can be quickly retrieved and used for subsequent online payment transactions, eliminating the need for time-consuming re-authentication processes.
Solution Approach 2:
The system uses a copy of the pre-authentication data from the private network to verify the user's identity for payment transactions. Instead of requiring the user to provide credentials again, the system retrieves and validates the previously obtained authentication information, significantly reducing processing time.
3Reliability
If redundant authentication processes are implemented, then security is improved, but authentication complexity increases
Solution Approach 1:
The authentication computing device implements a universal authentication mechanism that handles both private network access and online payment transactions. By recognizing and reusing pre-authentication data, the system maintains security across different contexts without requiring separate authentication processes for each function.
Solution Approach 2:
The authentication computing device acts as an intermediary between the private network and the online payment system. It receives pre-authentication data from the private network and uses this information to clear authentication for payment transactions, simplifying the overall authentication architecture while maintaining security.
Data Source
AI summary
A cardholder authentication computing device for authenticating user computing devices during online payment transactions are provided. The cardholder authentication computing device leverages pre-authentication of a user by a private network to facilitate authentication of a user in the context of an online payment transaction between the user and a merchant. During the course of an online payment transaction, the cardholder authentication computing device may receive an authentication request messages containing pre-authentication data from a merchant computing device. The cardholder authentication computing device then authenticates the user based, in part, on the pre-authentication data. In certain embodiments, the cardholder authentication computing device may also determine whether one or more partner services apply to transactions between the user and the merchant based on the user's affiliation with the organization.


