Centralized Tokenization Authentication for IoT Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current payment systems face challenges in managing authentication across multiple devices and merchants, leading to increased security risks and user inconvenience, as users need to authenticate with each merchant separately for tokenization.

Innovation Solution

A system that allows users to authenticate multiple Internet of Things (IoT) devices and merchants from a single interface, using a tokenization service provider to generate and manage tokens, enabling centralized authentication and tokenization, thereby reducing the need for repeated user authentication across different platforms.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users authenticate with each merchant separately for tokenization, then security is improved through individual authentication, but user convenience deteriorates due to repeated authentication requirements

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent combines multiple authentication operations into a single centralized authentication process. The authentication system aggregates authentication requests from multiple merchants and devices into one unified authentication event, where the user authenticates once and the authentication result is shared across all participating merchants and devices, eliminating repeated authentication while maintaining security through centralized verification

Inventive Principle:
Principle #5Merging (Combining)

2Adaptability or versatility

If users associate payment card information with multiple devices and merchants, then versatility is improved, but authentication management complexity increases

Engineering Contradiction:
Improvedevice and merchant compatibilityVSAvoidauthentication management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent creates a universal authentication system that functions across multiple devices and merchants through a single interface. The centralized authentication system provides multi-functional capability by handling authentication for various device types (mobile devices, IoT devices, wearables) and merchant platforms simultaneously, allowing users to manage all authentications through one unified system rather than separate management for each device or merchant

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent introduces a centralized authentication system as an intermediary between users and multiple merchants/devices. This intermediary layer receives authentication requests from any merchant or device, processes them through a unified authentication mechanism, and returns results to all parties involved, simplifying the complex many-to-many authentication relationships into a manageable centralized process

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If tokens are provisioned to multiple devices, then ease of operation is improved, but security risk increases due to potential token compromise

Engineering Contradiction:
Improvetoken accessibilityVSAvoidtoken misuse risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent performs preliminary authentication and device verification before provisioning tokens to multiple devices. The centralized authentication system evaluates each device's trustworthiness and authentication credentials in advance, establishing a security framework before token distribution. This preliminary action ensures that only authenticated and authorized devices receive tokens, reducing the risk of token compromise while maintaining broad accessibility

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11580531B2Systems and methods for minimizing user interactions for cardholder authentication
Publication Date: 2023.02.14 MASTERCARD INT INC
  • US11580531B2 patent drawing
  • US11580531B2 patent drawing
  • US11580531B2 patent drawing

AI summary

A method and system include providing a user interface associated with an issuer of an account; receiving, at the user interface, a request to generate a token associated with a user account; generating at least one token associated with the user account; authenticating one or more elements associated with the user account, wherein authentication may be one of prior to and subsequent to the generation of the at least one token; and receiving the at least one token. Numerous other aspects are provided.