Dynamic Token Log Function for Authentication Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing dynamic token systems for identity authentication using dynamic passwords lack the ability for users to verify completed authentication sessions, leading to security deficiencies as the tokens power off after displaying the password, preventing users from confirming authentication status.

Innovation Solution

A dynamic token with a log function that generates and records a log corresponding to the dynamic password, allowing users to check the status of completed identity authentication sessions, enhancing security by enabling verification of authentication completion.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Use of energy by moving object

If the dynamic token power off automatically after displaying the dynamic password for a while, then the energy consumption is reduced, but the user cannot check any information related to completed identity authentication

Engineering Contradiction:
Improveenergy consumptionVSAvoidauthentication information
Core Design Contradiction:
Use of energy by moving objectVSLoss of information

Solution Approach 1:

The patent divides the token's functionality into separate modules: a display module for showing dynamic passwords and a log storage module for recording authentication information. This segmentation allows the display to remain active while the token is powered off, preserving authentication information without continuous energy consumption for full system operation.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a copy of the authentication information by generating logs that are stored in the token's memory. These logs are duplicate records of authentication events that can be displayed later without requiring the original authentication session to remain active, enabling information preservation after power off.

Inventive Principle:
Principle #26Copying

2Device complexity

If the dynamic token does not record authentication logs, then the device complexity is reduced, but the security of identity authentication mechanism is compromised

Engineering Contradiction:
Improvedevice complexityVSAvoidauthentication security
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent implements preliminary action by automatically generating and storing authentication logs at the moment of authentication completion. This pre-recording of information ensures that proof of authentication is already available before the user needs to verify it, eliminating the need for complex real-time verification systems while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary element - the authentication log - that serves as intermediate evidence between the authentication event and the user's verification. These logs act as a mediator that provides proof of authentication without requiring the original authentication session to be maintained, simplifying the system while enhancing security.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10162949B2Dynamic token having log function and working method therefor
Publication Date: 2018.12.25 FEITIAN TECHNOLOGIES CO LTD
  • US10162949B2 patent drawing
  • US10162949B2 patent drawing
  • US10162949B2 patent drawing

AI summary

A dynamic token having a log function and a working method therefor. After the dynamic token determines that a key interrupt flag is set, a keyboard is scanned to obtain a first key value, and a currently pressed key is judged according to the first key value; if the currently pressed key is a first key, a dynamic password and a log corresponding to the dynamic password are generated; the dynamic password is stored in a display data buffer area, and the log is stored in a log storage area; key interrupt is enabled; and if the currently pressed key is a second key or a combination of a third key and a fourth key, the log is read from the log storage area, and the read log is stored in the display data buffer area. According to the present invention, by recording information related to the completed identity authentication by means of a dynamic token, a user can recheck whether the completed identity authentication is identity authentication completed by himself/herself, thereby improving the security of an identity authentication mechanism and the dynamic token which uses a dynamic password.