Credential Management for Scalable Multi-Client Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional authentication techniques are inefficient and unscalable, limiting organizations with multiple users from effectively utilizing social media and networks, as they require each user to have individual accounts, restricting access and stifling organizational use.

Innovation Solution

A credential and authentication management system that allows multiple clients to access a single account by using a credential management module to store and manage authentication data, enabling multi-client access without the need for individual accounts, using a platform that integrates with cloud computing to facilitate scalable data networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If conventional authentication techniques are used, then each user must have individual accounts, but this restricts organizational use and reduces productivity

Engineering Contradiction:
Improveorganizational use efficiencyVSAvoidauthentication complexity
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The system segments authentication into two levels: organization-level authentication (single account) and user-level identification (device identifiers). This allows the organization to authenticate once while enabling multiple users to access different devices under the same organizational account, resolving the contradiction between individual account requirements and organizational efficiency.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces device identifiers (UDID, IMEI, MAC addresses) as intermediaries between users and the authentication system. These identifiers serve as mediators that link multiple devices to a single organizational account, enabling seamless authentication without requiring individual user accounts while maintaining security and tracking capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If multiple individual accounts are required for each user, then account security is maintained, but system complexity increases and scalability is reduced

Engineering Contradiction:
Improvemulti-client supportVSAvoidauthentication system complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The system implements a universal organizational account that serves multiple functions: authentication, device identification, and user tracking. This single account structure can accommodate unlimited users and devices, providing multi-functionality that eliminates the need for separate individual accounts while reducing system complexity and improving adaptability.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent merges multiple authentication elements (organizational credentials, device identifiers, user profiles) into a unified authentication framework. By combining these elements into a single account system, the patent reduces complexity while enabling versatile multi-client support across various devices and platforms.

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If conventional single-client accounts are used, then account security is simplified, but access efficiency for multiple users deteriorates

Engineering Contradiction:
Improveaccess efficiencyVSAvoidaccount security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system dynamically manages authentication sessions by associating device identifiers with organizational accounts in real-time. This dynamic approach allows the system to track which devices are currently accessing the account, enabling efficient multi-user access while maintaining security through active session monitoring and the ability to revoke access when needed.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11546331B2Credential and authentication management in scalable data networks
Publication Date: 2023.01.03 SPREDFAST INC
  • US11546331B2 patent drawing
  • US11546331B2 patent drawing
  • US11546331B2 patent drawing

AI summary

Credential and authentication management in scalable data networks is described, including detecting a request from an extension installed on a browser to access a data network, initiating another request from the extension to a server to retrieve authentication data to access the data network, transferring from the server to the extension the authentication data and an instruction to the extension to generate a further request, transmitting the further request to the data network from the browser, the request comprising the authentication data from the server without manual input of the authentication data, presenting an overlay on the browser, the overlay being configured to indicate a login status associated with the data network, and monitoring a cookie and data transferred between the data network and the browser at an application layer or data layer after access to the data network has been provided to the browser in response to the request.