Intelligent Hardware Authentication via Private Key Signing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing identity authentication methods are inefficient as users need to manually input information, making network operations complex and time-consuming.
Innovation Solution
An identity authentication method that utilizes intelligent hardware to sign to-be-signed information using an application private key, with the authentication server verifying the signature result to authorize the performance of target operations, eliminating the need for manual input.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If manual input of user account and password is used for identity authentication, then the authentication process can be completed, but the operations become complex and inefficient
Solution Approach 1:
The intelligent hardware device performs self-service authentication by automatically signing the to-be-signed information with its private key and returning the signature result to the authentication server, eliminating the need for manual user input and significantly improving authentication efficiency while reducing operation complexity
Solution Approach 2:
The intelligent hardware device acts as an intermediary between the user and the authentication server, handling the complex cryptographic operations and signature verification processes, thereby simplifying the user's interaction to just presenting the hardware device for authentication
2Speed
If intelligent hardware is used to sign to-be-signed information, then authentication speed is improved, but device complexity increases
Solution Approach 1:
The intelligent hardware device performs preliminary actions by pre-generating and storing private keys, and pre-configuring the signature algorithm, so that during actual authentication it can quickly sign the to-be-signed information without needing to perform complex key management operations in real-time, thus improving speed while managing complexity
Solution Approach 2:
The patent extracts the complex cryptographic operations (key generation, signing, verification) from the general authentication system and concentrates them in the specialized intelligent hardware device, allowing the rest of the system to remain simple while achieving fast authentication through dedicated hardware capabilities
Data Source
AI summary
An identity authentication method includes sending, by a third-party application client, an operation request to a third-party application server, in response to receiving a first operation indication for requesting to perform a target operation, the operation request requesting the third-party application server to perform the target operation, and receiving, by the third-party application client, to-be-signed information from an authentication server via the third-party application server, in response to the operation request being sent, the to-be-signed information comprising a challenge random number. The method further includes forwarding, by the third-party application client, the to-be-signed information that is received, to intelligent hardware, and receiving, by the third-party application client, a first signature result from the intelligent hardware, the first signature result being obtained by signing the to-be-signed information that is forwarded, using an application private key corresponding to a third-party application.


