Identity Authentication via Encrypted Mediator Server Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
During identity authentication in communication networks, sensitive information such as identification card numbers and bank card information is exposed, posing severe security risks if intercepted by attackers.
Innovation Solution
An authentication access controller encrypts identity information using a public key and a protection nonce, sending it to a trusted authentication server for verification, ensuring confidentiality and authenticity through digital signatures and decryption using message encryption keys.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If identity information is transmitted in plain text for authentication, then authentication can be performed, but sensitive information such as identification card numbers and bank card information is exposed to security risks
Solution Approach 1:
The patent introduces an authentication server as an intermediary between the access controller and the user. The authentication server receives authentication requests, verifies credentials, and returns authentication results without exposing sensitive identity information during transmission. This mediator architecture allows authentication to proceed while protecting sensitive data from exposure.
Solution Approach 2:
The patent segments the authentication process into distinct components: credential submission, authentication verification, and result delivery. By separating these functions and using encrypted channels for each segment, the system maintains authentication reliability while minimizing information exposure at each stage of the process.
2Object-affected harmful factors
If encryption is used to protect identity information, then confidentiality is improved, but the complexity of the authentication system increases
Solution Approach 1:
The authentication server acts as a centralized intermediary that manages encryption and decryption operations. By concentrating cryptographic functions in the authentication server rather than distributing them across all components, the system achieves strong confidentiality while centralizing complexity management, making the overall system more manageable despite the encryption requirements.
Data Source
AI summary
Disclosed is an identity authentication method. By means of the method, confidentiality processing is performed on identity information of a requesting device, to prevent the identity information of the requesting device from being exposed during a transmission process, thereby ensuring that an attacker cannot obtain private information of the requesting device. Moreover, by means of introducing an authentication server, identity authentication performed on the requesting device by an authentication access controller is realized while ensuring the confidentiality of information related to an entity identity, so as to ensure that only legitimate users can access a network. Further disclosed are an identity authentication apparatus, a storage medium, a program, and a program product.


