Multi-App Communication System Automatic MFA Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional two-factor authentication protocols require user engagement, which is inefficient and prone to errors, especially when dealing with multiple third-party resources, and do not adequately mitigate risks of unauthorized access.

Innovation Solution

A multi-app communication system that automatically validates multi-factor confirmation messages without user engagement by communicating with a verified third-party multi-factor authentication resource to identify and validate the message code, enabling seamless access to third-party resources during an authenticated session.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional two-factor authentication protocols are used, then user security is improved, but user engagement is required which reduces system efficiency and increases error potential

Engineering Contradiction:
Improveuser securityVSAvoidsystem efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system automatically validates multi-factor confirmation messages without requiring user engagement. The multi-app communication system queries the third-party authentication resource to identify and validate the message code, enabling the system to serve itself in the authentication process rather than requiring manual user intervention.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system performs preliminary validation of multi-factor confirmation messages during the authenticated session. By automatically querying and validating the message code before granting access to third-party resources, the system prepares the authentication state in advance, eliminating the need for subsequent manual user engagement.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If manual multi-factor authentication is required for each third-party resource, then security is maintained, but user engagement increases leading to more errors and reduced efficiency

Engineering Contradiction:
ImprovesecurityVSAvoiduser engagement
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system automatically handles the authentication process by querying the third-party authentication resource to identify and validate the multi-factor confirmation message code. This self-service approach eliminates manual user engagement while maintaining security validation.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system combines multiple authentication interactions into a single automated process. By merging the validation of multi-factor confirmation messages across multiple third-party resources into one unified automated workflow, the system reduces the number of separate user engagements required while maintaining security.

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If automatic validation of multi-factor confirmation messages is implemented, then system efficiency is improved, but the complexity of the authentication system increases

Engineering Contradiction:
Improvesystem efficiencyVSAvoidauthentication system complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The multi-app communication system acts as an intermediary between the client device and third-party authentication resources. It automatically queries and validates multi-factor confirmation messages by communicating with the third-party authentication resource, handling the complexity of automated validation internally while presenting a simplified interface to users.

Inventive Principle:
Principle #24Intermediary (Mediator)

4Measurement precision

If users must manually enter multi-factor codes for each third-party resource, then authentication accuracy is maintained, but time consumption increases

Engineering Contradiction:
Improveauthentication accuracyVSAvoidtime consumption
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The system performs preliminary automatic validation of multi-factor confirmation messages during the authenticated session. By querying and validating the message code in advance through the third-party authentication resource, the system eliminates the time required for manual code entry while maintaining authentication accuracy through automated validation.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system automatically retrieves and validates the multi-factor confirmation message code without requiring manual user input. The automated querying and validation process maintains authentication accuracy by verifying the code through the third-party authentication resource while eliminating the time consumption associated with manual entry.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS12184651B2Methods, systems, and apparatuses for improved multi-factor authentication in a multi-app communication system
Publication Date: 2024.12.31 SALESFORCE INC
  • US12184651B2 patent drawing
  • US12184651B2 patent drawing
  • US12184651B2 patent drawing

AI summary

Embodiments of the present disclosure relate to verifying a third-party resource by automatically validating multi-factor message codes associated with the third-party resource to enable access to functionality associated with the third-party resource via a multi-app communication system. An example embodiment includes a multi-app communication system including at least one processor and at least one memory. The embodiment multi-app communication system is configured to receive a sign-in request from a multi-app communication system application executed on a client device, and cause transmission of a multi-factor confirmation message to a verified third-party multi-factor authentication resource. The embodiment multi-app communication system is further configured query the verified third-party multi-factor authentication resource to identify the multi-factor confirmation message, and enable access to the third-party resource.