Digital Passport Application for Blockchain Service Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current digital ecosystems are service-centric, leading to user fatigue and security risks due to the proliferation of authentication mechanisms and identity overlap in cellular networks, hindering seamless access to blockchain-based services across different telecom operators.
Innovation Solution
A Digital Passport Application (DPA) stored on an embedded Subscriber Identity Module (eSIM) connects with an Edge Digital Gate (EDG) using multi-factor authentication, enabling user-centric access to blockchain-based services by binding physical and digital identities through private and public keys, allowing secure and privacy-controlled access across multiple services.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If multiple authentication mechanisms are implemented for different services, then security is improved, but user fatigue and operational complexity increase
Solution Approach 1:
The patent implements a universal digital identity system that can be used across multiple services and telecom operators. The digital identity stored in eSIM serves as a single authentication credential that works for blockchain-based services, traditional telecom services, and cross-operator services, eliminating the need for multiple service-specific authentication mechanisms while maintaining security.
Solution Approach 2:
The patent introduces an identity manager as an intermediary component that handles authentication requests. Instead of users directly interacting with multiple authentication mechanisms across different services, the identity manager mediates between the user's digital identity and various service providers, simplifying the user experience while maintaining robust security through centralized identity management.
2Adaptability or versatility
If service-centric authentication systems are used, then service access is enabled, but user-centric control and privacy management are lost
Solution Approach 1:
The patent inverts the traditional service-centric authentication model by implementing a user-centric digital identity system. Instead of services requiring users to authenticate with service-specific credentials, the user's digital identity actively presents credentials to services. This inversion gives users control over their identity and authentication process while maintaining broad service accessibility.
Solution Approach 2:
The patent implements self-service authentication where the digital identity stored in eSIM automatically handles authentication with services. The identity manager on the user device autonomously presents the digital identity to services without requiring user intervention for each authentication, enabling both user-centric control and seamless service access.
3Adaptability or versatility
If digital identities are proliferated across multiple services, then service coverage is improved, but identity management complexity and security risks increase
Solution Approach 1:
The patent merges multiple service-specific digital identities into a single unified digital identity stored in eSIM. Instead of managing separate identities for different services and operators, the system combines them into one identity that can be used across all services. This merging reduces identity management complexity from multiple identities to a single identity while maintaining broad service coverage.
4Adaptability or versatility
If cross-operator services are enabled, then service versatility is improved, but authentication security and identity verification become more difficult
Solution Approach 1:
The patent implements a universal digital identity system that works across different telecom operators and services. The digital identity in eSIM is operator-agnostic and can be used for authentication with any service provider that recognizes the identity system, enabling cross-operator service access while maintaining consistent security through a standardized authentication approach.
Data Source
AI summary
The disclosure relates to user-centric access to blockchain-based services accessed through a telecom network. User devices may each include a Digital Passport Application (“DPA”), which may be stored at an eSIM of the user device. The DPA may be directed to and anchor to an Edge Digital Gate (“EDG”) entitled to provide access to blockchain-based services. The DPA may store a digital persona that digitally represents an entity such as a user or machine so that the DPA may access and interact with blockchain-based services on behalf of the entity. For instance, the digital persona may bind a physical identity of the entity with a digital identity through a private key of the entity. The private key may be used to digitally signed the access token. The digital persona may further link the digital identity with one or more (typically multiple) virtual identities each associated with a blockchain-based service.


