Continuous Biometric Authentication for Remote Network Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for authenticating employees accessing company networks, especially in work-from-home scenarios over public internet networks, are vulnerable to data theft due to potential unauthorized access and incur additional costs from dedicated connection channels.
Innovation Solution
A continuous authentication and authorization method that uses a remote server to authenticate user credentials and initiates secondary biometric authentication via devices like digital cameras for continuous monitoring, ensuring only authorized users access the network without dedicated channels.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional credential-based authentication is used, then ease of operation is improved, but security reliability deteriorates due to potential unauthorized access
Solution Approach 1:
The system performs preliminary biometric authentication (facial recognition) before granting access to the network. The server captures and verifies the user's facial biometric data against stored templates, ensuring that only authorized individuals can establish a connection. This preliminary verification step prevents unauthorized access before it can occur.
Solution Approach 2:
The system implements continuous feedback through periodic biometric verification during the active session. The server periodically requests updated biometric data from the client device and compares it against the authenticated user's profile. This continuous feedback mechanism detects and responds to potential unauthorized access in real-time, maintaining security throughout the entire session duration.
2Reliability
If dedicated connection channels are provided for secure access, then security reliability is improved, but company expenditure increases
Solution Approach 1:
The system makes the user's personal device (smartphone or tablet) multi-functional by enabling it to serve as both a communication device and a secure authentication terminal. The device's existing camera and processing capabilities are leveraged for biometric verification, eliminating the need for dedicated hardware appliances or specialized connection channels. This universal approach allows secure authentication using resources the user already possesses.
Solution Approach 2:
The system utilizes the user's own device resources (camera, processor, storage) to perform authentication functions that would traditionally require dedicated company-provided hardware. The client device itself performs biometric capture, initial processing, and maintains secure communication with the server, reducing the company's infrastructure requirements and associated costs.
Data Source
AI summary
A method and system for continuously authenticating a user working from a remote location is provided. The method includes providing user an interface to login through his login credentials to company domain. The login credentials are authenticated by a company's remote server. Once the user is authenticated the server pushes user's secondary authentication details to user's device and invokes a secondary authentication system. The secondary authentication system may include a webcam that initiates once user is logged in and continuously monitors biometric parameters for continued authentication of the user.

