Digital Credential Authentication via Distributed Ledger

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for digital credential management lack secure and efficient methods for verifying user identities and granting access, often resulting in data theft and misrepresentation of personal information during information transfer.

Innovation Solution

A system utilizing a distributed ledger for secure storage and verification of digital credentials, employing cryptography and smart contracts to authenticate user identities and authorize access, ensuring the legitimacy and revocation of credentials.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If digital credentials are distributed to users for authentication, then user identity verification capability is improved, but security against data theft and misrepresentation deteriorates

Engineering Contradiction:
Improveidentity verification capabilityVSAvoiddata theft and misrepresentation
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a distributed ledger as an intermediary between credential issuers and verifiers. The ledger stores cryptographic proofs and credential metadata immutably, allowing verification without direct trust between parties. This mediator prevents misrepresentation by providing a shared source of truth and blocks data theft through cryptographic security mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces traditional mechanical authentication systems (physical badges, cards) with cryptographic digital credentials. These credentials use public-key cryptography and zero-knowledge proofs to verify identity without exposing sensitive information. The substitution eliminates physical vulnerabilities while maintaining authentication reliability through mathematical security.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Ease of operation

If traditional authentication systems are used for building entry, then ease of operation is maintained, but security against credential misuse deteriorates

Engineering Contradiction:
Improvebuilding entry convenienceVSAvoidcredential authentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent creates digital copies of physical credentials that can be stored and presented electronically. Users receive mobile device applications containing cryptographic credentials that replicate the authentication function of physical badges. These digital copies enable contactless entry while incorporating security features like remote revocation and usage tracking that prevent credential misuse.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent implements dynamic credential validation through the distributed ledger system. Credentials can be activated, deactivated, or revoked in real-time based on user status changes. The system dynamically adjusts authentication requirements and monitors credential usage patterns, providing both ease of operation for legitimate users and enhanced security against misuse through adaptive control.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11627000B2Digital credentials for employee badging
Publication Date: 2023.04.11 WORKDAY INC
  • US11627000B2 patent drawing
  • US11627000B2 patent drawing
  • US11627000B2 patent drawing

AI summary

A system for credential authentication comprises an interface configured to receive a create indication to create a badge credential representing an employee badge and receive a claim indication from an authentication device to claim the badge credential, and a processor configured to provide the badge credential to the authentication device in response to the claim indication, receive a proof response from the authentication device comprising the badge credential and a lock identifier, validate the proof response using a distributed ledger, and provide a token for unlocking a lock associated with the lock identifier to the authentication device.