Centralized Authentication Server for Multi-App User Management
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The increasing number of applications requiring user registration burdens users with multiple login information sets and poses security risks due to decentralized user management, which can lead to data theft.
Innovation Solution
An authentication and authorization method and server that generates user and application tokens to centrally manage user information and permissions, allowing applications to invoke APIs securely without needing individual user management mechanisms.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If each application implements its own user management mechanism, then each application can independently manage user information, but users need to remember multiple sets of login information and the security risk increases
Solution Approach 1:
The patent merges user management functionality into a centralized authentication server that multiple applications share. Instead of each application having its own user management database, all applications use the same authentication server to verify user credentials and manage user information, thereby reducing the number of login credentials users need to remember while maintaining security through centralized control
Solution Approach 2:
The authentication server provides universal user management services to multiple different applications. A single user account registered with the authentication server can be used across multiple applications that integrate with this server, making the user management system multi-functional and applicable to various applications simultaneously
2Adaptability or versatility
If each application has its own user management database, then each application can manage user data independently, but the risk of user data being stolen by hackers increases
Solution Approach 1:
The patent combines multiple application-specific user management databases into a single centralized authentication server. This consolidation reduces the number of vulnerable data storage points from multiple to one, thereby reducing the overall attack surface and the risk of data theft while still allowing each application to access and manage user data through the centralized system
3Reliability
If users register for each application, then each application can verify user identity, but the burden on user memory increases with multiple login information sets
Solution Approach 1:
The authentication server provides universal identity verification services that work across multiple applications. A single user registration with the authentication server creates one set of login credentials that can be used to verify identity across all applications that integrate with this server, eliminating the need for users to create and remember separate login credentials for each application
Data Source
AI summary
The embodiments of the disclosure provide a method for authentication and authorization and the authentication server. The disclosure provides a user management mechanism required by multiple applications, so each of the applications does not need to have its own user management mechanism. In this manner, the security mechanism can be provided by the authentication server to improve the security of the user data.

