FIDO and Windows Hello Fingerprint Sharing for Local Registration
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing FIDO devices do not support local system registration without a Microsoft account or network connection, and there is a lack of integration between FIDO device fingerprint usage and Windows Hello fingerprint usage, leading to independent and inconvenient fingerprint registration scenarios.
Innovation Solution
A method and system for implementing fingerprint sharing that integrates FIDO and Windows Hello operations by using a device with both WBF and FIDO ports, allowing for fingerprint verification, registration, and storage across both systems, enabling seamless compatibility and multiple fingerprint registration.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If FIDO device and Windows Hello use independent fingerprint registration scenarios, then each system can maintain its own registration mechanism, but user convenience deteriorates due to repeated registration requirements
Solution Approach 1:
The patent merges FIDO and Windows Hello fingerprint registration systems by enabling the FIDO device to recognize and use fingerprints registered through Windows Hello. The device stores fingerprint templates from both systems and uses a recognition mechanism to match fingerprints across systems, allowing unified authentication without requiring separate registration processes for each system.
Solution Approach 2:
The FIDO device is designed with multi-functionality to serve both FIDO and Windows Hello ecosystems. It includes dual ports (FIDO port and WBF port) for different authentication protocols, a unified fingerprint storage area that accommodates templates from both systems, and a recognition mechanism that can identify fingerprints regardless of their origin, making the device universally applicable to both authentication systems.
2Adaptability or versatility
If FIDO device does not support local system registration, then network dependency is reduced, but functionality is limited requiring Microsoft account
Solution Approach 1:
The FIDO device incorporates dual authentication pathways: it supports both FIDO cloud-based authentication and Windows Hello local authentication through its WBF port. This allows the device to function independently of Microsoft accounts for local system registration while maintaining FIDO capabilities for cloud-based operations, effectively providing universal authentication flexibility.
Solution Approach 2:
The patent introduces a fingerprint template storage area as an intermediary that bridges FIDO and Windows Hello systems. This storage area receives and stores fingerprint templates from both systems, enabling the device to perform local authentication using Windows Hello fingerprints while maintaining FIDO functionality, thus mediating between the two systems without requiring Microsoft account dependency.
3Reliability
If separate fingerprint registration systems are used for FIDO and Windows Hello, then system independence is maintained, but time consumption increases due to repeated registration
Solution Approach 1:
The patent combines FIDO and Windows Hello fingerprint registration into a unified system where the FIDO device stores and recognizes fingerprints from both systems. The device includes a recognition mechanism that identifies fingerprints regardless of whether they were registered through FIDO or Windows Hello, allowing users to authenticate using the same fingerprint for both systems without requiring separate registration processes.
Solution Approach 2:
The system performs preliminary action by storing fingerprint templates from both FIDO and Windows Hello in a unified storage area during the initial registration phase. This preliminary storage enables subsequent authentication to recognize and validate fingerprints from either system without requiring re-registration, thereby reducing time consumption while maintaining system independence.
Data Source
AI summary
The present disclosure discloses a method and system for implementing fingerprint sharing. When a device receives a fingerprint verifying instruction, starts to collect fingerprint information and determines whether the collected fingerprint information matches a stored fingerprint template, if yes, the device performs computation on the fingerprint template to obtain a fingerprint identification and returns the fingerprint identification to a terminal, the terminal inquires a database to determine whether user information is stored, if yes, the terminal prompts to replace a fingerprint and sends a fingerprint registering instruction, if no, the terminal prompts to input the fingerprint and sends a fingerprint registering instruction to the device; the device receives the fingerprint registering instruction, starts to collect fingerprint information and stores it, after compeleting collection, performs computation on the fingerprint template generated according to the stored fingerprint information to obtain a fingerprint identification and returns the fingerprint identification to the terminal.


