Local Biometric Authentication for Secure Operator Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current cloud server authentication methods cannot verify the operator of a terminal device, leading to security risks in applications requiring stringent information security, such as financial payments and health monitoring.
Innovation Solution
An electronic device with a storage medium that stores default identification information, which is compared to to-be-authorized identification information using cryptographic hash functions and encryption algorithms, ensuring the operator is the registered user by matching encrypted data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If cloud server authentication is used to verify terminal device legality, then terminal device authentication is improved, but operator identity verification capability deteriorates
Solution Approach 1:
The authentication system is segmented into two independent parts: terminal device authentication (handled by cloud server) and operator identity verification (handled by local biometric sensor). This segmentation allows each part to specialize in its function, with the terminal authentication ensuring device legality and the biometric verification ensuring operator identity, thereby resolving the contradiction between device authentication and operator verification capability
Solution Approach 2:
Biometric information serves as an intermediary element that bridges terminal device authentication and operator identity verification. The system collects biometric data from the operator through local sensors, converts it to feature values, and compares these with pre-stored template data to verify operator identity independently of cloud server authentication, thus enabling precise operator verification while maintaining terminal authentication
2Reliability
If cloud server authentication method is used, then device legality can be identified, but security risks increase due to inability to verify operator identity
Solution Approach 1:
The system performs preliminary biometric verification locally before allowing access to sensitive operations. By collecting and processing biometric information in advance through local sensors and converting it to feature values for comparison with pre-stored templates, the system ensures operator identity is verified beforehand, preventing unauthorized access and reducing security risks associated with device legality identification alone
3Measurement precision
If biometric information is collected and stored locally in the electronic device, then operator verification capability is improved, but device complexity increases
Solution Approach 1:
The system extracts only the essential biometric feature values from complete biometric information for storage and comparison. By processing raw biometric data through feature extraction algorithms and storing only the extracted feature values in local memory rather than complete biometric datasets, the system achieves precise operator verification while minimizing the complexity and storage requirements of the local biometric verification module
Data Source
AI summary
Storage medium and electronic device are provided in the instant application. An executable computer program is stored in the storage medium. The executable computer program is executed by a processor, including: receive and store a default identification information in an electronic device. Receive an identification request and a to-be-authorized identification information collected by the electronic device. Receive the default identification information from the electronic device. Compare the to-be-authorized identification information with default identification information. if they are determined to be matched, the to-be-authorized identification information being true, otherwise the to-be-authorized identification information being false. When identification information is authenticated, the identification information can be collected real-time because the default identification information is stored in the electronic device in advance. Therefore, the operator of the electronic device is the registered user that can be ensure so that safety of verification can be improved effectively.


