Mobile ID Person-to-Person Authentication via Server Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing mobile ID scheme is limited to web service authentication and document signing, lacking mechanisms for person-to-person identity verification, which is complex and difficult to implement for inter-device authentication.

Innovation Solution

A system and method that enables person-to-person authorization of personal data using the mobile ID scheme by integrating a common service across operators, allowing mobile devices to securely authenticate and share personal information between users through a server-based architecture and public key infrastructure.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If mobile ID scheme is used for web service authentication and document signing, then security and trustworthiness are improved, but the system cannot perform person-to-person identity verification

Engineering Contradiction:
Improvetrustworthiness of authenticationVSAvoidcapability for person-to-person verification
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The mobile ID system is extended to perform multiple functions: it now supports both traditional web service authentication/document signing AND new person-to-person identity verification. The server-based architecture enables the same mobile ID infrastructure to serve diverse authentication scenarios without compromising security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

A server is introduced as an intermediary between users to enable person-to-person verification. The server receives authentication requests from mobile devices, verifies identities using the mobile ID scheme, and returns verification results. This mediator allows direct user verification while maintaining the security benefits of the existing mobile ID infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If authentication service is implemented in mobile devices for direct user verification, then person-to-person authentication is enabled, but device complexity and implementation difficulty increase significantly

Engineering Contradiction:
Improveperson-to-person authentication capabilityVSAvoidcomplexity of authentication service implementation
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The complex authentication service logic is extracted from mobile devices and relocated to a dedicated server. Mobile devices only need to send simple authentication requests and receive verification results, dramatically reducing device complexity while enabling person-to-person authentication capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The server acts as an intermediary that handles all complex authentication processing. Instead of implementing sophisticated authentication services in each mobile device, the system uses a centralized server to manage verification logic, reducing implementation difficulty while maintaining full authentication functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If centralized server-based authentication is implemented, then person-to-person verification becomes simple, but service availability depends on server accessibility

Engineering Contradiction:
Improvesimplicity of verification processVSAvoidservice availability independence
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

User identities and authentication credentials are pre-configured in the system before verification is needed. The server has advance knowledge of user identities through the mobile ID registration process, enabling rapid verification without complex real-time computations, thus simplifying the verification process while maintaining reliability.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8943567B2Authentication of personal data over telecommunications system
Publication Date: 2015.01.27 TELIASONERA AB
  • US8943567B2 patent drawing
  • US8943567B2 patent drawing
  • US8943567B2 patent drawing

AI summary

An additional service that authenticates personal information of a second person by using the mobile identification service in response to a first person requesting authentication is provided. As a result, the authenticated personal information of the second person is shown to the first person.