Credential Manager Automating Password Generation And Storage

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users often struggle with managing numerous usernames and passwords, leading to security vulnerabilities due to weak or reused passwords, and difficulties in remembering complex, randomly generated passwords.

Innovation Solution

A system that automatically generates unique, strong passwords for each network site, separates users from password management, and stores passwords centrally, accessible across devices via knowledge-based questions or master passwords, while providing secure authentication and account creation processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users manually manage their own usernames and passwords, then they have direct control over their credentials, but they struggle to remember complex passwords and tend to use weak or reused passwords

Engineering Contradiction:
Improvepassword strengthVSAvoidpassword management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a password management service as an intermediary between users and network sites. This service automatically generates, stores, and manages passwords on behalf of users, eliminating the need for users to directly handle complex password strings. The intermediary resolves the contradiction by taking over password management tasks while maintaining strong security through automated generation and secure storage mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system enables self-service through automated password generation and management. The password management service automatically creates strong passwords, stores them securely, and retrieves them when needed without requiring user intervention. This self-service approach resolves the contradiction by automating the tedious aspects of password management while maintaining high security standards.

Inventive Principle:
Principle #25Self-service

2Ease of operation

If users use the same username and password across multiple web sites, then they simplify their credential management, but they create security vulnerabilities through password reuse

Engineering Contradiction:
Improvecredential managementVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments password management by creating unique passwords for each network site or service. Instead of using a single password across multiple platforms, the system generates distinct passwords for each destination, thereby segmenting the credential space. This resolves the contradiction by maintaining simple user interaction (single point of control) while ensuring security through password uniqueness.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system changes the parameter of password uniqueness by generating different passwords for different network sites. Rather than keeping the password parameter constant across services, the system varies this parameter for each destination, thereby maintaining ease of management through centralized control while improving security through password differentiation.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If users create strong, randomly generated passwords, then they improve security, but they increase the difficulty of remembering and managing credentials

Engineering Contradiction:
Improvepassword strengthVSAvoidpassword recall
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The password management service acts as an intermediary that handles the recall and retrieval of strong passwords. Users no longer need to remember complex password strings directly; instead, the intermediary system stores these passwords securely and provides them automatically when needed. This resolves the contradiction by maintaining strong password generation while eliminating the recall burden through automated retrieval.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system creates and stores copies of strong passwords in a secure database. Rather than requiring users to remember the actual password strings, the system maintains copies in a protected repository and retrieves them as needed. This copying mechanism resolves the contradiction by preserving password strength while transferring the recall function from human memory to machine storage.

Inventive Principle:
Principle #26Copying

4Adaptability or versatility

If users manually create accounts on each network site, then they maintain control over their information, but they experience excessive abandonment rates when faced with multiple account requirements

Engineering Contradiction:
Improveaccount creation flexibilityVSAvoidaccount creation efficiency
Core Design Contradiction:
Adaptability or versatilityVSProductivity

Solution Approach 1:

The patent implements a universal account management system that can create and manage accounts across multiple network sites through a single interface. This multi-functional approach allows users to interact with various services through one centralized account system, thereby resolving the contradiction by providing both flexibility in account creation and high efficiency through automation and centralization.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system performs preliminary account creation actions automatically when users first interact with a network site. Rather than requiring users to manually create accounts at each destination, the system proactively handles account setup in advance, storing necessary credentials and configuring access. This preliminary action resolves the contradiction by maintaining user control while dramatically improving account creation efficiency.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10362019B2Managing security credentials
Publication Date: 2019.07.23 AMAZON TECH INC
  • US10362019B2 patent drawing
  • US10362019B2 patent drawing
  • US10362019B2 patent drawing

AI summary

Disclosed are various embodiments for managing security credentials. In one embodiment, network content for a network site is obtained in response to a user request. A connection with a remote computing device that stores and manages security credentials for accessing network sites is authenticated using a master security credential and answers to knowledge-based questions. A security credential associated with the network site is provided to the client from the remote computing device based at least in part on the answers. Access to the network site is authenticated according to the security credential.