Instant Messaging Data Classification and Dual Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In instant messaging systems, users face difficulties in accessing various services due to the need for multiple second authentications, which increases security but complicates user access and requires remembering multiple passwords.

Innovation Solution

Classifying data into confidential and non-confidential categories, allowing non-confidential data access after a first authentication and requiring a second authentication only for confidential data, thereby simplifying user access while maintaining security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If second authentication is performed for every non-instant messaging service data access, then security of the service is improved, but user operation convenience deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoiduser operation convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments data into confidential data and non-confidential data based on security sensitivity. The authentication mechanism is also segmented: first authentication for basic service access, and second authentication only when accessing confidential data. This segmentation resolves the contradiction by applying strong security only where necessary while maintaining ease of operation for non-sensitive operations.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies different authentication requirements to different types of data based on their security characteristics. Non-confidential data allows access after first authentication only, while confidential data requires second authentication. This local differentiation of security measures resolves the contradiction by optimizing security strength to match the actual sensitivity of each data type.

Inventive Principle:
Principle #3Local quality

2Reliability

If second authentication is configured for all services, then security requirements are met, but system complexity increases

Engineering Contradiction:
Improvesecurity requirementsVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication system is segmented into two levels: first authentication for general service access and second authentication only for confidential data access. The patent introduces a data type identification mechanism that segments data into confidential and non-confidential categories, allowing the system to apply appropriate authentication complexity only where needed, thereby reducing overall system complexity while meeting security requirements.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements partial authentication action by applying second authentication only to confidential data rather than all service data. This partial application of the more complex authentication mechanism reduces the overall burden on the system and users while still meeting security requirements for sensitive information.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS8484748B2Method and device for classifying and processing data in instant messaging system
Publication Date: 2013.07.09 TENCENT TECHNOLOGY (SHENZHEN) CO LTD
  • US8484748B2 patent drawing
  • US8484748B2 patent drawing
  • US8484748B2 patent drawing

AI summary

The embodiment of this invention provides a method for classifying and processing data in an instant messaging system, which includes: classifying the data of every service included in the instant messaging system into confidential data and non-confidential data; obtaining and processing the non-confidential data of every service after a first authentication is passed successfully; and obtaining and processing the confidential data of every service after a second authentication is passed successfully. The embodiment of this invention also provides a device for classifying and processing data in an instant messaging system. According to the embodiment of the present invention, the security requirements of the instant messaging system are met, and the user is facilitated to use various services provided by the instant messaging system.