Client Side Authentication Redirection via Password Generation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In complex computing environments, users face frustration and security risks due to the need to remember multiple passwords, leading to weak password practices and increased IT workload, while existing security measures often create new vulnerabilities despite efforts to enhance network security.

Innovation Solution

A method that generates a user-specific password using private algorithms and attributes, allowing for streamlined access across various platforms and applications, with customizable security rules and the ability to remember only one password, while preventing password exposure and enhancing security through complex password generation and registration processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users are required to remember multiple passwords for different systems and applications, then security coverage is improved, but user convenience deteriorates and weak password practices emerge

Engineering Contradiction:
Improvesecurity coverageVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a password generation service as an intermediary between the user and multiple systems. The user enters a single master password, and the service automatically generates and manages passwords for all required systems using cryptographic algorithms. This mediator eliminates the need for users to manually remember multiple passwords while maintaining security through automated password generation and rotation.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements self-service by automatically generating, storing, and rotating passwords for multiple systems without requiring user intervention. The password generation service autonomously manages the password lifecycle including creation, storage in secure keystores, and automatic rotation based on security policies, freeing users from the burden of manual password management.

Inventive Principle:
Principle #25Self-service

2Reliability

If users are required to remember multiple passwords, then security monitoring is improved, but IT workload increases due to forgotten passwords and help-desk calls

Engineering Contradiction:
Improvesecurity monitoringVSAvoidIT workload
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The password generation service provides self-service capabilities that automatically handle password management tasks including generation, storage, and rotation. This eliminates the need for IT staff to manually reset forgotten passwords or manage password policies across multiple systems, significantly reducing help-desk calls and IT workload while maintaining security monitoring.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements feedback mechanisms where the password generation service automatically monitors password usage, detects security events, and triggers appropriate responses. The service provides real-time feedback on password status, expiration, and security events to both users and IT administrators, enabling automated security monitoring without increasing manual IT workload.

Inventive Principle:
Principle #23Feedback

3Reliability

If strong security systems are implemented, then network security is improved, but new vulnerabilities are created through complex authentication requirements

Engineering Contradiction:
Improvenetwork securityVSAvoidnew vulnerabilities
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a password generation service as an intermediary that implements strong security through centralized control and automated password generation using cryptographic algorithms. This mediator prevents weak password practices by automatically generating strong passwords and implementing security policies, while reducing vulnerabilities associated with complex user-managed authentication by centralizing password management in a secure, automated system.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8397077B2Client side authentication redirection
Publication Date: 2013.03.12 PISTOLSTAR
  • US8397077B2 patent drawing
  • US8397077B2 patent drawing
  • US8397077B2 patent drawing

AI summary

A device, method and system for authentication by a user are disclosed herein. The exemplary method may authenticate a user password entered by a user. User specific attributes may be accessed and used to produce a generated password. The generated password may be produced using an algorithm and the user attributes. The generated password may be used to log onto a resource for the user.