Cumulative Signature Verification for Data Transmission Path Authenticity

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In network systems, users cannot verify the transmission path of received data due to the deletion of intermediate processing entities' electronic signatures and certificates after verification, making it impossible to ensure the authenticity of the transmission path.

Innovation Solution

A data transmission path checking system that includes authentication means, data transmission means, data relay means, and data receiving means, which cumulatively add signature information and authenticity information to the data, allowing the user to verify the transmission path.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If intermediate processing entities delete electronic signatures and certificates after verification, then verification efficiency is improved, but transmission path traceability is lost

Engineering Contradiction:
Improveverification efficiencyVSAvoidtransmission path information
Core Design Contradiction:
ProductivityVSLoss of information

Solution Approach 1:

The patent introduces an authentication station as an intermediary that issues authentication certificates to both the data transmission source and relay subjects. This mediator enables the receiving apparatus to verify transmission path information without requiring intermediate entities to retain original signatures and certificates, thus resolving the contradiction between verification efficiency and path traceability.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If transmission path information is included as metadata, then path checking capability is improved, but information authenticity cannot be secured

Engineering Contradiction:
Improvepath checking capabilityVSAvoidinformation authenticity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the mechanical approach of including raw transmission path metadata with a cryptographic verification system. The receiving apparatus verifies the authenticity of transmission path information by checking authentication certificates issued by the authentication station, substituting unverified metadata with cryptographically secured verification mechanisms.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If all intermediate processing entities retain signature information, then transmission path verification is enabled, but data size and processing complexity increase

Engineering Contradiction:
Improvetransmission path verificationVSAvoiddata size and processing complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the essential verification function from the intermediate processing entities by introducing authentication certificates. Instead of requiring all intermediaries to retain and process complete signature information, the system extracts only the necessary authentication credentials needed for verification, reducing data size and processing complexity while maintaining verification capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS20250150283A1Data transmission path checking system, data transmission path checking method, data relay system, and data receiving apparatus
Publication Date: 2025.05.08 NEC CORP
  • US20250150283A1 patent drawing
  • US20250150283A1 patent drawing
  • US20250150283A1 patent drawing

AI summary

An authentication unit can transmit electronic certificates. A data transmission unit adds a signature and an electronic certificate to data and transmits the obtained data to a first data relay unit. The first data relay unit adds a signature and an electronic certificate to the received data and transmits the obtained data to a second data relay unit. The second data relay unit adds a signature and an electronic certificate to the received data and transmits the obtained data to a data receiving unit. The data receiving unit verifies, between the data receiving unit and the authentication unit, the electronic certificates cumulatively added to the received data, and checks a transmission path of the data based on the electronic signatures that have been cumulatively added.