Multi-seed One-time Password Token Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current dynamic tokens are limited to a single seed, making them inconvenient and wasteful, as users cannot update seed data once activated, and are restricted to a single application method.

Innovation Solution

A multi-seeded dynamic token method that allows users to power on, initialize, and manage multiple seeds, enabling seed data updates and flexible usage by processing interrupts, key presses, and light sensor data to generate OTPs based on user choices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a dynamic token stores only one seed, then the device complexity is reduced, but the adaptability and user convenience deteriorate because users cannot update seed data once activated

Engineering Contradiction:
Improveseed management flexibilityVSAvoidseed storage structure
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the seed storage by dividing it into multiple seed storage units, each capable of storing separate seed data. This allows the dynamic token to manage multiple seeds simultaneously, enabling users to update and switch between different seed data without increasing overall device complexity significantly.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The dynamic token is designed with multi-functional capability to store and manage multiple seeds, allowing it to serve different authentication purposes with different seed data. This universal design enables the same device to adapt to various security requirements without needing multiple separate tokens.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If a dynamic token allows multiple seeds, then the adaptability and security are improved, but the device complexity increases

Engineering Contradiction:
Improveauthentication securityVSAvoidseed management system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

By segmenting seed data into separate storage units with individual management, the system isolates security risks. If one seed is compromised, others remain secure. This segmentation approach enhances authentication security while keeping each storage unit's complexity manageable through standardized structures.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary management mechanism that handles seed selection, storage, and retrieval operations. This intermediary layer abstracts the complexity of managing multiple seeds, presenting a simplified interface to users while maintaining robust security protocols internally.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If a dynamic token is activated with fixed seed data, then the manufacturing process is simplified, but the ease of operation deteriorates because users cannot update seeds

Engineering Contradiction:
Improveseed update capabilityVSAvoidinitialization process
Core Design Contradiction:
Ease of operationVSEase of manufacture

Solution Approach 1:

The dynamic token is pre-configured with multiple empty or default seed storage units during manufacturing, preparing the structure in advance for future seed updates. This preliminary setup simplifies the manufacturing process while enabling easy seed updates later, as the storage infrastructure is already in place.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements a dynamic seed management system that allows seed data to be updated and changed after activation. The system transitions from a static, fixed-seed model to a dynamic, flexible model where seeds can be modified, enhancing ease of operation without significantly complicating the initial manufacturing process.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS10255421B2Working method for multi-seed one-time password
Publication Date: 2019.04.09 FEITIAN TECHNOLOGIES CO LTD
  • US10255421B2 patent drawing
  • US10255421B2 patent drawing
  • US10255421B2 patent drawing

AI summary

Disclosed is a working method for a multi-seed one-time password, which falls within the field of information security. The method comprises: powering and initializing a one-time password, opening a total interrupt, initializing the state of a system, and then entering a sleep mode; when the one-time password detects the interrupt, awakening the one-time password from the sleep mode, and entering an interrupt processing flow; after the interrupt processing flow is ended, checking each awakening flag; and executing a processing flow corresponding to the set awakening flag. According to the present invention, a user can burn seed data into the one-time password by operating the one-time password, and can update the seed data in the one-time password. In addition, according to the present invention, the one-time password is capable of storing and managing a plurality of seeds. In a process of using the one-time password, a one-time command can be generated using the corresponding seed data according to the selection from the user, which is convenient for the user to use. In addition, the reliability and security of the seed data are guaranteed by means of binding between a unique identifier of the one-time password and the seed data.