Decentralized Identity Token Verification via Blockchain Consensus
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Trusted third party devices for user authentication can fail or be insecure, leading to authentication failures and potential impersonation, as they may go offline or fail to properly secure user identities.
Innovation Solution
A system and method where computing devices generate and transmit identity tokens based on user data, using blockchain technology to create and verify identity and activity chains, allowing for secure authentication without relying on a trusted third party, by using consensus algorithms and cryptographic hashing to ensure token immutability and security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a trusted third party device is used to authenticate users, then user authentication can be performed, but the system becomes vulnerable to failures when the third party device goes offline or is compromised
Solution Approach 1:
The patent extracts the trusted third party from the authentication system and replaces it with a decentralized network of computing devices. Each device independently verifies identity tokens using consensus algorithms, eliminating the single point of failure while maintaining authentication functionality. The identity token itself contains all necessary verification information, removing the need for external verification authorities.
Solution Approach 2:
The authentication system is segmented into independent computing devices that each maintain copies of the identity chain. Instead of relying on a centralized third party, multiple distributed nodes perform verification, providing redundancy and fault tolerance. The identity token is segmented to include verification data that can be independently validated by any network participant.
2Reliability
If user identity data is stored centrally in a trusted third party device, then authentication can be performed, but security is compromised if the device is breached
Solution Approach 1:
The patent extracts sensitive identity data from centralized storage and embeds it within cryptographic identity tokens distributed across the network. The actual identity data never resides in a single vulnerable location; instead, verified tokens are distributed to multiple computing devices, eliminating the honeypot effect of centralized databases.
Solution Approach 2:
The identity chain is replicated across multiple computing devices in the network. Each device maintains a copy of the verified identity tokens, ensuring that no single device holds all the data. This distributed copying approach provides both redundancy and security, as compromising one device does not expose the entire system.
3Reliability
If identity tokens are verified by multiple computing devices using consensus algorithms, then security is improved, but verification time increases
Solution Approach 1:
The identity tokens are pre-verified and signed by authorized entities before being introduced to the network. The identity chain is established in advance with cryptographic signatures that enable rapid verification. This preliminary action eliminates the need for time-consuming real-time consensus validation of basic identity claims, allowing devices to quickly verify tokens against pre-established trust anchors.
Data Source
AI summary
Aspects of the disclosure relate to a system and method for cryptographically transmitting and storing identity tokens and/or activity data among spatially distributed computing devices. The system may comprise a plurality of chains, such as an identity chain and an activity chain. In some aspects, identity data associated with a user may be used to generate an identity token for the user. The identity token may be transmitted to a plurality of computing devices for verification. Based on a verification of the identity token, the identity token may be stored in the identity chain. A request to perform an activity may also be received, and identity data associated with the user may be received in order to authenticate the user. The computing device may generate, based on the received identity data, an identity token for the user.


