Mobile Authentication Function Activation via Time-Relation Check
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing authentication methods for online transactions lack simplicity and security, particularly when using low-complexity mobile devices, and are vulnerable to fraudulent activities.
Innovation Solution
An authentication method that activates a normally inactive authentication function on a mobile device, which is checked by an authentication device via a mobile communications network, ensuring the function is active at the time of user identification transmission, and automatically deactivates after verification, thereby reducing complexity and enhancing security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional authentication methods are used, then security is maintained, but device complexity increases
Solution Approach 1:
The patent extracts the authentication function from the mobile device's permanent operations, making it a separate, optionally activatable component. This allows the authentication capability to be removed or deactivated when not needed, reducing the effective complexity of the device while maintaining security when authentication is required.
Solution Approach 2:
The authentication function transitions from a static, always-present component to a dynamic, state-changing component that can be activated and deactivated. This dynamic behavior allows the system to have low complexity during normal operation while providing high security when needed, resolving the contradiction between constant security and variable complexity.
2Reliability
If authentication function is always active, then security is enhanced, but energy consumption increases
Solution Approach 1:
Instead of continuous authentication function operation, the patent implements periodic or on-demand activation. The authentication function is activated only when needed for specific transactions, remaining inactive otherwise. This periodic action pattern significantly reduces energy consumption while maintaining security effectiveness.
Solution Approach 2:
The user activates the authentication function in advance of the actual authentication need, allowing it to be ready when required but not continuously running. This preliminary activation approach ensures security is available when needed while avoiding the energy waste of continuous operation.
3Device complexity
If authentication function is simplified, then device complexity is reduced, but ease of operation decreases
Solution Approach 1:
The authentication function is designed to be self-contained and self-managing once activated. It handles its own activation, operation, and deactivation without requiring complex user configuration or management. This self-service approach simplifies the device architecture while maintaining ease of operation through automatic management.
Solution Approach 2:
The user performs a single preliminary action to activate the authentication function, after which the system automatically manages the authentication process. This preliminary activation simplifies ongoing operation, as the complex authentication handling is automated once initiated.
Data Source
Figure 1~4
Figure 5~6
Figure 7~9
AI summary
A method of authenticating a user to a transaction at a terminal (10), wherein a user identification is transmitted from the terminal (10) to a transaction partner (12) via a first communication channel (14), and an authentication device (18) uses a second communication channel (20) for checking an authentication function that is implemented in a mobile device (16) of the user, and, as a criterion for deciding whether the authentication to the transaction shall be granted or denied, the authentication device (18) checks whether a predetermined time relation exists between the transmission of the user identification and a response from the second communication channel, characterized in that the authentication function is normally inactive and is activated by the user only preliminarily for the transaction, said response from the second communication channel (20) includes the information that the authentication function is active, and the authentication function is automatically deactivated.