Distributed Trusted Device Network for Secure Digital Identity
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current digital communication systems lack secure authentication and traceability, relying on centralized authorities with single keys that are vulnerable to misuse and do not effectively map to real-life identities or social structures, leading to limitations in trust establishment and relation management.
Innovation Solution
A method involving a network of trusted devices where each device establishes relationships with a witness device, which confirms the originality of input data and facilitates secure transactions by using multiple keys for each relation, allowing for real-life identity mapping and secure communication through policies and data referral methods, enabling digital identities to evolve and support legal properties.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a centralized authority with a single key is used for authentication, then the system structure is simple, but the security and trust establishment are vulnerable to misuse
Solution Approach 1:
The patent divides the centralized authentication authority into multiple distributed trusted devices, each holding a portion of the authentication key. This segmentation prevents single-point failure and misuse while maintaining security through distributed verification. Each trusted device independently verifies transactions, eliminating the vulnerability of a single centralized key.
Solution Approach 2:
The patent introduces trusted devices as intermediary entities between communicating parties. These intermediaries verify the originality of data and establish trust without requiring direct trust between all parties. The trusted devices act as mediators that facilitate secure transactions while distributing the trust function across multiple entities.
2Reliability
If multiple keys and trusted devices are used for each relation, then the authentication security and traceability are improved, but the device complexity increases
Solution Approach 1:
The patent implements a universal trusted device framework where the same trusted devices can verify multiple types of transactions and support different communication relations. The trusted devices perform multiple functions including authentication, traceability, and relation management, reducing the need for separate specialized components for each function.
Solution Approach 2:
The patent dynamically manages the number and configuration of trusted devices based on the specific transaction requirements. The system can adapt the level of trust verification needed for different transactions, using more trusted devices for high-security scenarios and fewer for routine transactions, thereby optimizing the balance between security and complexity.
3Reliability
If digital identities are linked to real-life identities with multiple keys, then the traceability and legal property support are improved, but the ease of operation and identity management becomes more complex
Solution Approach 1:
The patent enables digital identities to self-manage their relationships with trusted devices and real-life identities. The system automatically establishes and maintains links between digital and real identities through the trusted device framework, reducing the manual intervention needed for identity management while preserving traceability and legal property attributes.
Data Source
AI summary
The present disclosure relates to an improved method for digital communication and, in particular, an improved method for digital communication in terms of improved authentication and traceability. More specifically, the present disclosure relates to a method of performing a transaction between a first device and a second device wherein the first device having an established trusted communication relation with a first trusted device and the second device having an established trusted communication relation with a second trusted device, the first and the second trusted device each having an established trusted communication relation with a fourth trusted device, the first and the second device being aware of a policy for the transaction specifying a role definition for the first and the second devices.


