IC Card Authentication Apparatus Issue Count Comparison

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing IC card authentication systems are vulnerable to security breaches when reissued cards are used by unauthorized individuals, as they do not require PIN entry, compromising confidential information.

Innovation Solution

An IC card authentication apparatus and method that includes an IC card reader, memory for storing user information, and a processing unit for comparing card identification information and issue counts, requiring PIN entry if the card has been reissued, thereby enhancing security without the need for an authentication server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If user authentication is performed only by matching card identification information without PIN code entry, then operability and convenience are improved, but security is compromised when reissued cards are used by unauthorized individuals

Engineering Contradiction:
ImproveoperabilityVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary comparison of the IC card issue count stored in the card with the registered issue count in the authentication apparatus before proceeding to PIN code authentication. This preliminary check allows the system to identify reissued cards and trigger additional security measures (PIN code entry) only when necessary, rather than requiring PIN entry for all authentication attempts.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If server-based authentication is implemented to ensure security during IC card reissue, then security is improved, but system complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication apparatus performs self-authentication by comparing the IC card issue count stored in the card with the registered issue count in its own memory. This eliminates the need for external server-based authentication systems, achieving enhanced security through a standalone, simple comparison mechanism that does not require complex network infrastructure or server resources.

Inventive Principle:
Principle #25Self-service

3Reliability

If PIN code entry is required for all IC card authentication, then security is improved, but ease of operation deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidconvenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system applies different authentication requirements to different situations: for first-time card usage or cards with matching issue counts, only card ID matching is required (simpler authentication); for reissued cards where the issue count differs, PIN code entry is required (stricter authentication). This localized approach to authentication strength optimizes both security and convenience based on the specific context.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS8341731B2IC card authentication apparatus, IC card authentication method, and recording medium having IC card authentication program recorded thereon
Publication Date: 2012.12.25 KONICA MINOLTA BUSINESS TECH INC
  • US8341731B2 patent drawing
  • US8341731B2 patent drawing
  • US8341731B2 patent drawing

AI summary

An IC card is recognized by an IC card reader. Data is obtained from the recognized IC card. Card ID included in the obtained data is compared with card ID stored in a user registration information DB. If it is determined that the same card ID exists, an IC card issue count included in the obtained data is compared with an IC card issue count stored in the user registration information DB, and it is determined whether the counts are the same. If it is determined that the issue counts are not the same, a PIN code entry window appears so that the entered PIN code is compared with a PIN code in the user registration information DB. If it is determined that the PIN codes are the same, authentication success is displayed.