Local Biometric Authentication for Secure Operator Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current cloud server authentication methods cannot verify the operator of a terminal device, leading to security risks in applications requiring stringent information security, such as financial payments and health monitoring.

Innovation Solution

An electronic device with a storage medium that stores default identification information, which is compared to to-be-authorized identification information using cryptographic hash functions and encryption algorithms, ensuring the operator is the registered user by matching encrypted data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If cloud server authentication is used to verify terminal device legality, then terminal device authentication is improved, but operator identity verification capability deteriorates

Engineering Contradiction:
Improveterminal device authenticationVSAvoidoperator identity verification
Core Design Contradiction:
ReliabilityVSMeasurement precision

Solution Approach 1:

The authentication system is segmented into two independent parts: terminal device authentication (handled by cloud server) and operator identity verification (handled by local biometric sensor). This segmentation allows each part to specialize in its function, with the terminal authentication ensuring device legality and the biometric verification ensuring operator identity, thereby resolving the contradiction between device authentication and operator verification capability

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Biometric information serves as an intermediary element that bridges terminal device authentication and operator identity verification. The system collects biometric data from the operator through local sensors, converts it to feature values, and compares these with pre-stored template data to verify operator identity independently of cloud server authentication, thus enabling precise operator verification while maintaining terminal authentication

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If cloud server authentication method is used, then device legality can be identified, but security risks increase due to inability to verify operator identity

Engineering Contradiction:
Improvedevice legality identificationVSAvoidsecurity risks
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary biometric verification locally before allowing access to sensitive operations. By collecting and processing biometric information in advance through local sensors and converting it to feature values for comparison with pre-stored templates, the system ensures operator identity is verified beforehand, preventing unauthorized access and reducing security risks associated with device legality identification alone

Inventive Principle:
Principle #10Preliminary action

3Measurement precision

If biometric information is collected and stored locally in the electronic device, then operator verification capability is improved, but device complexity increases

Engineering Contradiction:
Improveoperator verification capabilityVSAvoiddevice complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The system extracts only the essential biometric feature values from complete biometric information for storage and comparison. By processing raw biometric data through feature extraction algorithms and storing only the extracted feature values in local memory rather than complete biometric datasets, the system achieves precise operator verification while minimizing the complexity and storage requirements of the local biometric verification module

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS11533180B1Storage device and electronic device
Publication Date: 2022.12.20 SHANGHAI HARVEST INTELLIGENCE TECH CO LTD
  • US11533180B1 patent drawing
  • US11533180B1 patent drawing
  • US11533180B1 patent drawing

AI summary

Storage medium and electronic device are provided in the instant application. An executable computer program is stored in the storage medium. The executable computer program is executed by a processor, including: receive and store a default identification information in an electronic device. Receive an identification request and a to-be-authorized identification information collected by the electronic device. Receive the default identification information from the electronic device. Compare the to-be-authorized identification information with default identification information. if they are determined to be matched, the to-be-authorized identification information being true, otherwise the to-be-authorized identification information being false. When identification information is authenticated, the identification information can be collected real-time because the default identification information is stored in the electronic device in advance. Therefore, the operator of the electronic device is the registered user that can be ensure so that safety of verification can be improved effectively.