Dynamic Token Log Function for Authentication Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing dynamic token systems for identity authentication using dynamic passwords lack the ability for users to verify completed authentication sessions, leading to security deficiencies as the tokens power off after displaying the password, preventing users from confirming authentication status.
Innovation Solution
A dynamic token with a log function that generates and records a log corresponding to the dynamic password, allowing users to check the status of completed identity authentication sessions, enhancing security by enabling verification of authentication completion.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Use of energy by moving object
If the dynamic token power off automatically after displaying the dynamic password for a while, then the energy consumption is reduced, but the user cannot check any information related to completed identity authentication
Solution Approach 1:
The patent divides the token's functionality into separate modules: a display module for showing dynamic passwords and a log storage module for recording authentication information. This segmentation allows the display to remain active while the token is powered off, preserving authentication information without continuous energy consumption for full system operation.
Solution Approach 2:
The patent creates a copy of the authentication information by generating logs that are stored in the token's memory. These logs are duplicate records of authentication events that can be displayed later without requiring the original authentication session to remain active, enabling information preservation after power off.
2Device complexity
If the dynamic token does not record authentication logs, then the device complexity is reduced, but the security of identity authentication mechanism is compromised
Solution Approach 1:
The patent implements preliminary action by automatically generating and storing authentication logs at the moment of authentication completion. This pre-recording of information ensures that proof of authentication is already available before the user needs to verify it, eliminating the need for complex real-time verification systems while maintaining security.
Solution Approach 2:
The patent introduces an intermediary element - the authentication log - that serves as intermediate evidence between the authentication event and the user's verification. These logs act as a mediator that provides proof of authentication without requiring the original authentication session to be maintained, simplifying the system while enhancing security.
Data Source
AI summary
A dynamic token having a log function and a working method therefor. After the dynamic token determines that a key interrupt flag is set, a keyboard is scanned to obtain a first key value, and a currently pressed key is judged according to the first key value; if the currently pressed key is a first key, a dynamic password and a log corresponding to the dynamic password are generated; the dynamic password is stored in a display data buffer area, and the log is stored in a log storage area; key interrupt is enabled; and if the currently pressed key is a second key or a combination of a third key and a fourth key, the log is read from the log storage area, and the read log is stored in the display data buffer area. According to the present invention, by recording information related to the completed identity authentication by means of a dynamic token, a user can recheck whether the completed identity authentication is identity authentication completed by himself/herself, thereby improving the security of an identity authentication mechanism and the dynamic token which uses a dynamic password.


