Identity Authentication via Encrypted Mediator Server Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

During identity authentication in communication networks, sensitive information such as identification card numbers and bank card information is exposed, posing severe security risks if intercepted by attackers.

Innovation Solution

An authentication access controller encrypts identity information using a public key and a protection nonce, sending it to a trusted authentication server for verification, ensuring confidentiality and authenticity through digital signatures and decryption using message encryption keys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If identity information is transmitted in plain text for authentication, then authentication can be performed, but sensitive information such as identification card numbers and bank card information is exposed to security risks

Engineering Contradiction:
Improveauthentication securityVSAvoidinformation exposure risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an authentication server as an intermediary between the access controller and the user. The authentication server receives authentication requests, verifies credentials, and returns authentication results without exposing sensitive identity information during transmission. This mediator architecture allows authentication to proceed while protecting sensitive data from exposure.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the authentication process into distinct components: credential submission, authentication verification, and result delivery. By separating these functions and using encrypted channels for each segment, the system maintains authentication reliability while minimizing information exposure at each stage of the process.

Inventive Principle:
Principle #1Segmentation

2Object-affected harmful factors

If encryption is used to protect identity information, then confidentiality is improved, but the complexity of the authentication system increases

Engineering Contradiction:
Improveinformation confidentialityVSAvoidauthentication system complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The authentication server acts as a centralized intermediary that manages encryption and decryption operations. By concentrating cryptographic functions in the authentication server rather than distributing them across all components, the system achieves strong confidentiality while centralizing complexity management, making the overall system more manageable despite the encryption requirements.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12537695B2Identity authentication method and apparatus, and storage medium, program and program product
Publication Date: 2026.01.27 CHINA IWNCOMM
  • US12537695B2 patent drawing
  • US12537695B2 patent drawing
  • US12537695B2 patent drawing

AI summary

Disclosed is an identity authentication method. By means of the method, confidentiality processing is performed on identity information of a requesting device, to prevent the identity information of the requesting device from being exposed during a transmission process, thereby ensuring that an attacker cannot obtain private information of the requesting device. Moreover, by means of introducing an authentication server, identity authentication performed on the requesting device by an authentication access controller is realized while ensuring the confidentiality of information related to an entity identity, so as to ensure that only legitimate users can access a network. Further disclosed are an identity authentication apparatus, a storage medium, a program, and a program product.