Mobile ID Person-to-Person Authentication via Server Intermediary
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing mobile ID scheme is limited to web service authentication and document signing, lacking mechanisms for person-to-person identity verification, which is complex and difficult to implement for inter-device authentication.
Innovation Solution
A system and method that enables person-to-person authorization of personal data using the mobile ID scheme by integrating a common service across operators, allowing mobile devices to securely authenticate and share personal information between users through a server-based architecture and public key infrastructure.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If mobile ID scheme is used for web service authentication and document signing, then security and trustworthiness are improved, but the system cannot perform person-to-person identity verification
Solution Approach 1:
The mobile ID system is extended to perform multiple functions: it now supports both traditional web service authentication/document signing AND new person-to-person identity verification. The server-based architecture enables the same mobile ID infrastructure to serve diverse authentication scenarios without compromising security.
Solution Approach 2:
A server is introduced as an intermediary between users to enable person-to-person verification. The server receives authentication requests from mobile devices, verifies identities using the mobile ID scheme, and returns verification results. This mediator allows direct user verification while maintaining the security benefits of the existing mobile ID infrastructure.
2Adaptability or versatility
If authentication service is implemented in mobile devices for direct user verification, then person-to-person authentication is enabled, but device complexity and implementation difficulty increase significantly
Solution Approach 1:
The complex authentication service logic is extracted from mobile devices and relocated to a dedicated server. Mobile devices only need to send simple authentication requests and receive verification results, dramatically reducing device complexity while enabling person-to-person authentication capability.
Solution Approach 2:
The server acts as an intermediary that handles all complex authentication processing. Instead of implementing sophisticated authentication services in each mobile device, the system uses a centralized server to manage verification logic, reducing implementation difficulty while maintaining full authentication functionality.
3Ease of operation
If centralized server-based authentication is implemented, then person-to-person verification becomes simple, but service availability depends on server accessibility
Solution Approach 1:
User identities and authentication credentials are pre-configured in the system before verification is needed. The server has advance knowledge of user identities through the mobile ID registration process, enabling rapid verification without complex real-time computations, thus simplifying the verification process while maintaining reliability.
Data Source
AI summary
An additional service that authenticates personal information of a second person by using the mobile identification service in response to a first person requesting authentication is provided. As a result, the authenticated personal information of the second person is shown to the first person.


