Dynamic Authentication Method Selection for Electronic Information Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing authentication systems lack the ability to dynamically determine and request alternative authentication methods when initial authentication attempts fail, leading to potential unauthorized access to electronic information.
Innovation Solution
An authentication processing apparatus that includes an authentication processing section, a storage section for authentication information, and a determination section that identifies and requests an alternative authentication method when initial authentication is unsuccessful, ensuring secure access to electronic information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a single authentication method is used, then the ease of operation is improved, but the reliability of authentication is worsened
Solution Approach 1:
The system dynamically adjusts the authentication process by initially using a simple authentication method for ease of operation, then transitioning to additional authentication methods when unauthorized access is detected. This dynamic adaptation resolves the contradiction by making the system easy to use under normal conditions while maintaining high security when needed.
Solution Approach 2:
The system changes the authentication parameters by switching from a single authentication method to multiple authentication methods based on the detected access attempt characteristics. This parameter change allows the system to maintain ease of operation for legitimate users while enhancing reliability for potential unauthorized access scenarios.
2Reliability
If multiple authentication methods are always required, then the reliability of authentication is improved, but the ease of operation is worsened
Solution Approach 1:
The system dynamically determines whether to require multiple authentication methods based on the specific access attempt. Instead of always requiring multiple methods, the system adapts its authentication requirements, maintaining high reliability when necessary while preserving ease of operation when the access attempt appears legitimate.
Solution Approach 2:
The system automatically detects potential unauthorized access attempts and independently determines when additional authentication methods are needed, without requiring user intervention to understand or configure the authentication process. This self-service approach maintains reliability while keeping the operation simple for users.
3Reliability
If additional authentication methods are requested upon failure, then the reliability is improved, but the loss of time is worsened
Solution Approach 1:
The system performs preliminary detection of unauthorized access attempts before requiring additional authentication methods. By detecting suspicious patterns in advance and only then requesting additional authentication, the system minimizes the time loss for legitimate users while maintaining high reliability for detecting and preventing unauthorized access.
Solution Approach 2:
The system uses feedback from the initial authentication attempt to determine whether additional authentication methods are necessary. This feedback mechanism allows the system to quickly reject clearly unauthorized attempts without requiring multiple authentication steps, thereby improving reliability while minimizing time loss.
Data Source
AI summary
An authentication processing apparatus, which includes: an authentication processing section that performs authentication using an authentication method selected from authentication methods provided; a storage section that stores authentication information indicating whether or not the authentication succeeds; a determination section that, when an operation on electronic information associated to one or more authentication methods is performed, determines whether the operation on the electronic information is permitted or not, on the basis of the one or more authentication methods associated to the electronic information and the stored authentication information; and an authentication request section that, when the determination section determines that the operation on the electronic information is not permitted, detects from among the one or more authentication methods associated to the electronic information an authentication methods for which it is not indicated in the authentication information that an authentication succeeds, and requests the authentication using the detected authentication method.


