Intelligent Hardware Authentication via Private Key Signing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing identity authentication methods are inefficient as users need to manually input information, making network operations complex and time-consuming.

Innovation Solution

An identity authentication method that utilizes intelligent hardware to sign to-be-signed information using an application private key, with the authentication server verifying the signature result to authorize the performance of target operations, eliminating the need for manual input.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If manual input of user account and password is used for identity authentication, then the authentication process can be completed, but the operations become complex and inefficient

Engineering Contradiction:
Improveauthentication efficiencyVSAvoidoperation complexity
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The intelligent hardware device performs self-service authentication by automatically signing the to-be-signed information with its private key and returning the signature result to the authentication server, eliminating the need for manual user input and significantly improving authentication efficiency while reducing operation complexity

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The intelligent hardware device acts as an intermediary between the user and the authentication server, handling the complex cryptographic operations and signature verification processes, thereby simplifying the user's interaction to just presenting the hardware device for authentication

Inventive Principle:
Principle #24Intermediary (Mediator)

2Speed

If intelligent hardware is used to sign to-be-signed information, then authentication speed is improved, but device complexity increases

Engineering Contradiction:
Improveauthentication speedVSAvoidhardware complexity
Core Design Contradiction:
SpeedVSDevice complexity

Solution Approach 1:

The intelligent hardware device performs preliminary actions by pre-generating and storing private keys, and pre-configuring the signature algorithm, so that during actual authentication it can quickly sign the to-be-signed information without needing to perform complex key management operations in real-time, thus improving speed while managing complexity

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent extracts the complex cryptographic operations (key generation, signing, verification) from the general authentication system and concentrates them in the specialized intelligent hardware device, allowing the rest of the system to remain simple while achieving fast authentication through dedicated hardware capabilities

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS10637668B2Authentication method, system and equipment
Publication Date: 2020.04.28 TENCENT TECHNOLOGY (SHENZHEN) CO LTD
  • US10637668B2 patent drawing
  • US10637668B2 patent drawing
  • US10637668B2 patent drawing

AI summary

An identity authentication method includes sending, by a third-party application client, an operation request to a third-party application server, in response to receiving a first operation indication for requesting to perform a target operation, the operation request requesting the third-party application server to perform the target operation, and receiving, by the third-party application client, to-be-signed information from an authentication server via the third-party application server, in response to the operation request being sent, the to-be-signed information comprising a challenge random number. The method further includes forwarding, by the third-party application client, the to-be-signed information that is received, to intelligent hardware, and receiving, by the third-party application client, a first signature result from the intelligent hardware, the first signature result being obtained by signing the to-be-signed information that is forwarded, using an application private key corresponding to a third-party application.