Digital Skeleton Key for Computing Device Registration
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional computing device registration and authentication methods face challenges such as password forgetfulness, security vulnerabilities due to weak passwords, and unauthorized access when using device fingerprints in shared environments.
Innovation Solution
A method utilizing a 'skeleton key' system that registers and authenticates computing devices using user-selected fingerprintable devices, generating a digital skeleton key from device fingerprints for secure registration and authentication without requiring complex password memorization, allowing the use of obsolete or non-essential devices for added security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a user creates a very long and complex password, then the password strength is improved, but the ease of operation deteriorates because the user must write or store the password on a document
Solution Approach 1:
The patent uses device fingerprints as a copyable representation of the computing device's identity, replacing the need for users to memorize complex passwords. The device fingerprint is automatically generated from hardware characteristics and can be stored on the device itself, eliminating the need for external storage or memorization while maintaining strong authentication.
2Ease of operation
If a user chooses a password which is not very strong to make it easier to remember, then the ease of operation is improved, but the security deteriorates because the password may be easily discovered by hackers
Solution Approach 1:
The patent replaces the mechanical system of user-created passwords with an automated system that generates device fingerprints based on hardware characteristics. This substitution eliminates the trade-off between password strength and memorability, as the device fingerprint is automatically generated and stored, providing strong security without requiring user memorization.
3Reliability
If a device fingerprint of the computing device is used as a password, then the password strength is improved, but the security deteriorates in shared environments since a different user may access the user account by being granted access to the computing device
Solution Approach 1:
The patent segments the authentication process into two distinct components: device fingerprint verification (confirming the physical device) and user credential verification (confirming the user's identity). This segmentation allows the system to distinguish between device access and user account access, preventing unauthorized users from accessing accounts even when they have physical access to the device.
Solution Approach 2:
The patent introduces an intermediary authentication mechanism that acts as a mediator between the device fingerprint and user account access. The system uses the device fingerprint as an intermediary layer that must be verified first, followed by user-specific credentials, creating a two-factor authentication system that prevents direct access to user accounts through device access alone.
4Ease of operation
If conventional password authentication is used, then the ease of operation is maintained, but the security deteriorates due to password forgetfulness and weak password choices
Solution Approach 1:
The patent implements a self-service authentication system where the computing device automatically generates and manages its own fingerprint credentials without requiring user intervention for password creation or memorization. The device uses its own hardware characteristics to create the authentication credential, eliminating the need for users to manage complex passwords while maintaining strong security.
Data Source
AI summary
A method for registering a computing device to a user account using at least one user-selected fingerprintable device externally accessible to the computing device including transmitting a registration information request to the computing device, receiving at least one device fingerprint of the at least one user-selected fingerprintable device accessible by the computing device, and primary identification data of the computing device, generating a skeleton key, recording the primary identification data, and associating the skeleton key and the primary identification data with the user account. A method for authenticating the computing device including transmitting an authentication information request to the computing device, receiving an encrypted identification data from the computing device, decrypting the encrypted identification data using a skeleton key associated with the user account, comparing the decrypted identification data with a primary identification data associated with the user account, and authenticating the computing device.


