Hash Tree Device Authentication System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing device authentication methods rely on weak password schemes and third-party services, which are limiting in security and resource utilization, and often require complex password management and hardware-based recovery processes.

Innovation Solution

A hash tree-based authentication system where unique passwords are hashed and stored as leaf nodes, with internal and root nodes generated for efficient verification, allowing anonymous proof of ownership and reducing reliance on easy-to-remember passwords across multiple systems without imposing hardware-based recovery penalties.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional password schemes are used for device authentication, then ease of operation is improved, but security is worsened

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces traditional mechanical password-based authentication with a cryptographic hash tree system. Instead of relying on human-memorable passwords, the system uses cryptographic hash functions to generate authentication tokens, substituting weak human-dependent authentication with strong mathematical-based authentication that provides both security and ease of use.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent changes the fundamental parameter of authentication from human-readable passwords to cryptographic hash values. By transforming passwords through hash functions and organizing them in a tree structure, the system maintains ease of operation while dramatically improving security through cryptographic strength.

Inventive Principle:
Principle #35Parameter changes

2Device complexity

If third-party password management services are used, then password management complexity is reduced, but resource usage and external dependencies increase

Engineering Contradiction:
Improvepassword management complexityVSAvoidresource usage
Core Design Contradiction:
Device complexityVSUse of energy by moving object

Solution Approach 1:

The patent enables devices to perform authentication autonomously using locally-stored hash tree structures. Each device can independently verify authentication without requiring external password management services, eliminating external dependencies while maintaining simple operation through automated cryptographic verification.

Inventive Principle:
Principle #25Self-service

3Reliability

If hardware-based recovery processes are implemented, then security is improved, but device complexity and cost increase

Engineering Contradiction:
ImprovesecurityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the recovery functionality from hardware-based solutions and implements it through software-based hash tree structures. By storing authentication data in a hierarchical hash format, the system enables password recovery through cryptographic computation rather than hardware intervention, reducing device complexity while maintaining security.

Inventive Principle:
Principle #2Taking out (Extraction)

4Reliability

If unique strong passwords are required for each device, then security is improved, but ease of operation and password management worsen

Engineering Contradiction:
ImprovesecurityVSAvoidpassword management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent merges multiple unique device passwords into a single hierarchical hash tree structure. Instead of managing separate passwords for each device, the system combines all authentication credentials into one organized structure that can be verified efficiently, improving ease of operation while maintaining the security of unique strong passwords for each device.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS11405195B2Device authentication
Publication Date: 2022.08.02 HEWLETT PACKARD DEVELOPMENT COMPANY LP
  • US11405195B2 patent drawing
  • US11405195B2 patent drawing
  • US11405195B2 patent drawing

AI summary

A method related to authenticating a device may include accessing a plurality of hash values, wherein the plurality of hash values corresponds to a plurality of passwords of a plurality of devices. The method may also include generating a hash value corresponding to the device and authenticating the device by providing the plurality of hash values and the hash value to an authentication system.