Digital Passport Application for Blockchain Service Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current digital ecosystems are service-centric, leading to user fatigue and security risks due to the proliferation of authentication mechanisms and identity overlap in cellular networks, hindering seamless access to blockchain-based services across different telecom operators.

Innovation Solution

A Digital Passport Application (DPA) stored on an embedded Subscriber Identity Module (eSIM) connects with an Edge Digital Gate (EDG) using multi-factor authentication, enabling user-centric access to blockchain-based services by binding physical and digital identities through private and public keys, allowing secure and privacy-controlled access across multiple services.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple authentication mechanisms are implemented for different services, then security is improved, but user fatigue and operational complexity increase

Engineering Contradiction:
ImprovesecurityVSAvoiduser fatigue
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a universal digital identity system that can be used across multiple services and telecom operators. The digital identity stored in eSIM serves as a single authentication credential that works for blockchain-based services, traditional telecom services, and cross-operator services, eliminating the need for multiple service-specific authentication mechanisms while maintaining security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent introduces an identity manager as an intermediary component that handles authentication requests. Instead of users directly interacting with multiple authentication mechanisms across different services, the identity manager mediates between the user's digital identity and various service providers, simplifying the user experience while maintaining robust security through centralized identity management.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If service-centric authentication systems are used, then service access is enabled, but user-centric control and privacy management are lost

Engineering Contradiction:
Improveservice accessVSAvoiduser-centric control
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent inverts the traditional service-centric authentication model by implementing a user-centric digital identity system. Instead of services requiring users to authenticate with service-specific credentials, the user's digital identity actively presents credentials to services. This inversion gives users control over their identity and authentication process while maintaining broad service accessibility.

Inventive Principle:
Principle #13The other way round (Inversion)

Solution Approach 2:

The patent implements self-service authentication where the digital identity stored in eSIM automatically handles authentication with services. The identity manager on the user device autonomously presents the digital identity to services without requiring user intervention for each authentication, enabling both user-centric control and seamless service access.

Inventive Principle:
Principle #25Self-service

3Adaptability or versatility

If digital identities are proliferated across multiple services, then service coverage is improved, but identity management complexity and security risks increase

Engineering Contradiction:
Improveservice coverageVSAvoididentity management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges multiple service-specific digital identities into a single unified digital identity stored in eSIM. Instead of managing separate identities for different services and operators, the system combines them into one identity that can be used across all services. This merging reduces identity management complexity from multiple identities to a single identity while maintaining broad service coverage.

Inventive Principle:
Principle #5Merging (Combining)

4Adaptability or versatility

If cross-operator services are enabled, then service versatility is improved, but authentication security and identity verification become more difficult

Engineering Contradiction:
Improveservice versatilityVSAvoidauthentication security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements a universal digital identity system that works across different telecom operators and services. The digital identity in eSIM is operator-agnostic and can be used for authentication with any service provider that recognizes the identity system, enabling cross-operator service access while maintaining consistent security through a standardized authentication approach.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11310225B2Access to telecom blockchain-based services with digital passport
Publication Date: 2022.04.19 HEWLETT PACKARD ENTERPRISE DEV LP
  • US11310225B2 patent drawing
  • US11310225B2 patent drawing
  • US11310225B2 patent drawing

AI summary

The disclosure relates to user-centric access to blockchain-based services accessed through a telecom network. User devices may each include a Digital Passport Application (“DPA”), which may be stored at an eSIM of the user device. The DPA may be directed to and anchor to an Edge Digital Gate (“EDG”) entitled to provide access to blockchain-based services. The DPA may store a digital persona that digitally represents an entity such as a user or machine so that the DPA may access and interact with blockchain-based services on behalf of the entity. For instance, the digital persona may bind a physical identity of the entity with a digital identity through a private key of the entity. The private key may be used to digitally signed the access token. The digital persona may further link the digital identity with one or more (typically multiple) virtual identities each associated with a blockchain-based service.