Dynamic Credential Verification Using Alternate Trustees
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The process of verifying the authenticity of electronic documents is hindered when the entity that issued the credential becomes unavailable over time, leading to untrusted and useless credentials.
Innovation Solution
A computer-implemented method that dynamically verifies the authenticity of credentials by determining current trustees, assessing their trustworthiness, and using alternate trustees as necessary to confirm the credential's authenticity at the point of use.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If credentials are verified statically from originally issued credentials, then verification simplicity is maintained, but reliability deteriorates when the issuing entity becomes unavailable
Solution Approach 1:
The system performs preliminary actions by pre-establishing a network of alternate trustees and pre-configuring credential structures with multiple trust paths before the issuing entity becomes unavailable. This ensures verification can proceed without real-time interaction with the original issuer.
Solution Approach 2:
Alternate trustees act as intermediaries between the credential holder and the verifying entity. When the original issuing entity is unavailable, these intermediary trustees can validate credential authenticity, maintaining verification reliability without requiring direct access to the original issuer.
2Reliability
If credentials remain valid indefinitely from original issuance, then ease of use is improved, but security deteriorates due to increased risk of tampering over time
Solution Approach 1:
The credential verification system transitions from static verification to dynamic verification. The system can adaptively select among multiple trustees based on current trust assessments, and the verification process can be adjusted in real-time based on the credential's age, type, and risk profile.
Solution Approach 2:
The system changes verification parameters dynamically based on credential characteristics. For example, newer credentials may require fewer verification steps while older credentials trigger more rigorous multi-trustee verification, optimizing both security and efficiency.
3Reliability
If multiple alternate trustees are implemented, then reliability is improved, but device complexity increases
Solution Approach 1:
The credential data structure is designed with universal multi-functionality to accommodate multiple trustees. The same credential format supports both single-trustee and multi-trustee verification scenarios, allowing the system to scale reliability without requiring fundamentally different credential structures.
Data Source
AI summary
A computer-implemented method, according to one embodiment, includes: receiving a request to verify authenticity of a credential that indicates that an associated holder has a set of certified attributes. In response to determining that the credential has not been compromised, current trustees that are associated with the credential are determined. Additionally, a determination is made as to whether the current trustees are trusted. In response to determining that one or more of the current trustees are not trusted, alternate trustees of the credential are determined. Moreover, these alternate trustees are used as updated current trustees to confirm authenticity of the credential.


