Multi-Terminal Login Authentication for Service Setting Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication methods, such as those described in Patent Literature 1, are insufficient in preventing fraudulent use by malicious third parties who obtain user IDs and passwords, as they do not adequately secure against unauthorized access and changes to service settings.

Innovation Solution

A service providing system that includes authentication means for each user terminal, setting means for adjusting service settings based on authentication execution, and providing means to manage access and settings based on possession authentication using NFC and image verification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If only login authentication using user ID and password is implemented, then ease of operation is improved, but security deteriorates because fraudulent use cannot be sufficiently suppressed when credentials are compromised

Engineering Contradiction:
Improvelogin convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs possession authentication in advance by notifying users of login attempts and requiring confirmation before granting access. This preliminary verification step prevents fraudulent login even when user ID and password are compromised, as the malicious third party cannot complete the authentication without the legitimate user's confirmation.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system introduces a notification and confirmation mechanism as an intermediary between credential verification and service access. The notification is sent to the user's terminal, and the user's confirmation acts as a mediator that must approve the login attempt, adding an additional security layer that blocks fraudulent access attempts.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If possession authentication is executed for each user terminal, then security is improved, but device complexity increases due to additional authentication components

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The notification device serves multiple functions: it authenticates possession of the terminal, confirms user intent for login, and provides a security layer against fraudulent access. By making the notification device universal and integrating it into existing user terminals, the system avoids adding separate dedicated authentication hardware, thereby reducing overall device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system utilizes the user's own terminal device to perform possession authentication through notification and confirmation. The terminal itself serves as the authentication mechanism by being capable of receiving notifications and sending confirmation signals, eliminating the need for external authentication hardware and simplifying the system architecture.

Inventive Principle:
Principle #25Self-service

3Adaptability or versatility

If service settings can be changed without permission to facilitate fraudulent use, then adaptability is improved, but security deteriorates because unauthorized changes enable fraudulent activities

Engineering Contradiction:
Improveservice configuration flexibilityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs possession authentication in advance before allowing service settings to be changed. By notifying the user and requiring confirmation before permitting configuration modifications, the system ensures that only authorized users can adapt service settings, preventing malicious third parties from making unauthorized changes even if they obtain login credentials.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12524536B2Service providing system, service providing method and program
Publication Date: 2026.01.13 RAKUTEN GROUP INC
  • US12524536B2 patent drawing
  • US12524536B2 patent drawing
  • US12524536B2 patent drawing

AI summary

A service providing system provides a service allowed to be logged in to from each of a plurality of user terminals. At least one processor is configured to execute predetermined authentication for each of the user terminals under a state in which the service has been logged in to from the user terminal. The at least one processor performs a setting relating to the service for each of the user terminals based on whether the authentication has been executed from the user terminal. The service is provided to each of the user terminals based on the setting of the user terminal.